fedoraproject

5,423 tracked vulnerabilities.

CVE-2019-9948 CRITICAL
Python 2.x < 2.7.17 - Path Traversal via local_file URI Scheme
Mar 23, 2019
CVSS 9.1
EPSS 0.12
CVE-2019-3871 MEDIUM
PowerDNS Authoritative Server < 4.0.7 and < 4.1.7 - Denial of Service via HTTP Connector Remote Backend
Mar 21, 2019
CVSS 6.5
EPSS 0.13
CVE-2019-3858 MEDIUM
libssh2 < 1.8.1 - Out-of-bounds Read via SFTP Packet
Mar 21, 2019
CVSS 5.0
EPSS 0.06
CVE-2019-3855 HIGH
libssh2 < 1.8.1 - Remote Code Execution via Integer Overflow in Packet Handling
Mar 21, 2019
CVSS 8.8
EPSS 0.09
CVE-2019-9903 MEDIUM
Poppler 0.74.0 - Stack Consumption via Crafted PDF File
Mar 21, 2019
CVSS 6.5
EPSS 0.02
CVE-2019-9898 CRITICAL
PuTTY < 0.71 - Use of Insufficiently Random Values in Cryptographic Operations
Mar 21, 2019
CVSS 9.8
EPSS 0.04
CVE-2019-9897 HIGH
PuTTY < 0.71 - Denial of Service via Terminal Input
Mar 21, 2019
CVSS 7.5
EPSS 0.03
CVE-2019-9895 CRITICAL
PuTTY < 0.71 - Buffer Overflow via Server-to-Client Forwarding
Mar 21, 2019
CVSS 9.8
EPSS 0.03
CVE-2019-9894 HIGH
PuTTY < 0.71 - Remote Code Execution via RSA Key Exchange
Mar 21, 2019
CVSS 7.5
EPSS 0.02
CVE-2019-7222 MEDIUM
Linux kernel <4.20.5 - Info Disclosure
Mar 21, 2019
CVSS 5.5
EPSS 0.01
CVE-2019-7221 HIGH
Linux kernel <4.20.5 - Use After Free
Mar 21, 2019
CVSS 7.8
EPSS 0.01
CVE-2019-6778 HIGH
QEMU 3.0.0 - Heap-Based Buffer Overflow in slirp/tcp_subr.c tcp_emu
Mar 21, 2019
CVSS 7.8
EPSS 0.01
CVE-2019-6501 MEDIUM
QEMU 3.1 - Out-of-bounds Read and Write in SCSI Inquiry Reply Handler
Mar 21, 2019
CVSS 5.5
EPSS 0.01
CVE-2019-6454 MEDIUM
systemd - Denial of Service via Crafted D-Bus Message
Mar 21, 2019
CVSS 5.5
EPSS 0.02
CVE-2019-6116 HIGH
Artifex Ghostscript < 9.26 - Remote Code Execution via Ephemeral Procedure System Operator Access
Mar 21, 2019
CVSS 7.8
EPSS 0.41
CVE-2019-5885 HIGH
Matrix Synapse <0.34.0.1 - Privilege Escalation
Mar 21, 2019
CVSS 7.5
EPSS 0.02
CVE-2019-3862 HIGH
libssh2 < 1.8.1 - Out-of-bounds Read via SSH_MSG_CHANNEL_REQUEST Packet Parsing
Mar 21, 2019
CVSS 7.3
EPSS 0.08
CVE-2019-3859 CRITICAL
libssh2 < 1.8.1 - Out-of-bounds Read in _libssh2_packet_require and _libssh2_packet_requirev
Mar 21, 2019
CVSS 9.1
EPSS 0.06
CVE-2019-3833 HIGH
openwsman <= 2.6.9 - Unauthenticated Denial of Service via Malicious HTTP Request
Mar 14, 2019
CVSS 7.5
EPSS 0.15
CVE-2019-3816 HIGH
openwsman <= 2.6.9 - Unauthenticated Arbitrary File Disclosure via Working Directory Misconfiguration
Mar 14, 2019
CVSS 7.5
EPSS 0.15
CVE-2019-9741 MEDIUM
Go 1.11.5 - CRLF Injection
Mar 13, 2019
CVSS 6.1
EPSS 0.02
CVE-2019-9705 MEDIUM
Vixie Cron < 3.0pl1-133 - Denial of Service via Large Crontab File
Mar 12, 2019
CVSS 5.5
EPSS 0.00
CVE-2019-9704 MEDIUM
Vixie Cron < 3.0pl1-133 - Denial of Service via Large Crontab File
Mar 12, 2019
CVSS 5.5
EPSS 0.00
CVE-2019-9687 CRITICAL
PoDoFo 0.9.6 - Heap-Based Buffer Overflow in PdfString::ConvertUTF16toUTF8
Mar 11, 2019
CVSS 9.8
EPSS 0.02
CVE-2019-9658 MEDIUM
checkstyle < 8.18 - XML External Entity Injection
Mar 11, 2019
CVSS 5.3
EPSS 0.04