fedoraproject
5,423 tracked vulnerabilities.
CVE-2019-9948
CRITICAL
Python 2.x < 2.7.17 - Path Traversal via local_file URI Scheme
Mar 23, 2019
CVSS 9.1
EPSS 0.12
CVE-2019-3871
MEDIUM
PowerDNS Authoritative Server < 4.0.7 and < 4.1.7 - Denial of Service via HTTP Connector Remote Backend
Mar 21, 2019
CVSS 6.5
EPSS 0.13
CVE-2019-3858
MEDIUM
libssh2 < 1.8.1 - Out-of-bounds Read via SFTP Packet
Mar 21, 2019
CVSS 5.0
EPSS 0.06
CVE-2019-3855
HIGH
libssh2 < 1.8.1 - Remote Code Execution via Integer Overflow in Packet Handling
Mar 21, 2019
CVSS 8.8
EPSS 0.09
CVE-2019-9903
MEDIUM
Poppler 0.74.0 - Stack Consumption via Crafted PDF File
Mar 21, 2019
CVSS 6.5
EPSS 0.02
CVE-2019-9898
CRITICAL
PuTTY < 0.71 - Use of Insufficiently Random Values in Cryptographic Operations
Mar 21, 2019
CVSS 9.8
EPSS 0.04
CVE-2019-9897
HIGH
PuTTY < 0.71 - Denial of Service via Terminal Input
Mar 21, 2019
CVSS 7.5
EPSS 0.03
CVE-2019-9895
CRITICAL
PuTTY < 0.71 - Buffer Overflow via Server-to-Client Forwarding
Mar 21, 2019
CVSS 9.8
EPSS 0.03
CVE-2019-9894
HIGH
PuTTY < 0.71 - Remote Code Execution via RSA Key Exchange
Mar 21, 2019
CVSS 7.5
EPSS 0.02
CVE-2019-7222
MEDIUM
Linux kernel <4.20.5 - Info Disclosure
Mar 21, 2019
CVSS 5.5
EPSS 0.01
CVE-2019-7221
HIGH
Linux kernel <4.20.5 - Use After Free
Mar 21, 2019
CVSS 7.8
EPSS 0.01
CVE-2019-6778
HIGH
QEMU 3.0.0 - Heap-Based Buffer Overflow in slirp/tcp_subr.c tcp_emu
Mar 21, 2019
CVSS 7.8
EPSS 0.01
CVE-2019-6501
MEDIUM
QEMU 3.1 - Out-of-bounds Read and Write in SCSI Inquiry Reply Handler
Mar 21, 2019
CVSS 5.5
EPSS 0.01
CVE-2019-6454
MEDIUM
systemd - Denial of Service via Crafted D-Bus Message
Mar 21, 2019
CVSS 5.5
EPSS 0.02
CVE-2019-6116
HIGH
Artifex Ghostscript < 9.26 - Remote Code Execution via Ephemeral Procedure System Operator Access
Mar 21, 2019
CVSS 7.8
EPSS 0.41
CVE-2019-5885
HIGH
Matrix Synapse <0.34.0.1 - Privilege Escalation
Mar 21, 2019
CVSS 7.5
EPSS 0.02
CVE-2019-3862
HIGH
libssh2 < 1.8.1 - Out-of-bounds Read via SSH_MSG_CHANNEL_REQUEST Packet Parsing
Mar 21, 2019
CVSS 7.3
EPSS 0.08
CVE-2019-3859
CRITICAL
libssh2 < 1.8.1 - Out-of-bounds Read in _libssh2_packet_require and _libssh2_packet_requirev
Mar 21, 2019
CVSS 9.1
EPSS 0.06
CVE-2019-3833
HIGH
openwsman <= 2.6.9 - Unauthenticated Denial of Service via Malicious HTTP Request
Mar 14, 2019
CVSS 7.5
EPSS 0.15
CVE-2019-3816
HIGH
openwsman <= 2.6.9 - Unauthenticated Arbitrary File Disclosure via Working Directory Misconfiguration
Mar 14, 2019
CVSS 7.5
EPSS 0.15
CVE-2019-9741
MEDIUM
Go 1.11.5 - CRLF Injection
Mar 13, 2019
CVSS 6.1
EPSS 0.02
CVE-2019-9705
MEDIUM
Vixie Cron < 3.0pl1-133 - Denial of Service via Large Crontab File
Mar 12, 2019
CVSS 5.5
EPSS 0.00
CVE-2019-9704
MEDIUM
Vixie Cron < 3.0pl1-133 - Denial of Service via Large Crontab File
Mar 12, 2019
CVSS 5.5
EPSS 0.00
CVE-2019-9687
CRITICAL
PoDoFo 0.9.6 - Heap-Based Buffer Overflow in PdfString::ConvertUTF16toUTF8
Mar 11, 2019
CVSS 9.8
EPSS 0.02
CVE-2019-9658
MEDIUM
checkstyle < 8.18 - XML External Entity Injection
Mar 11, 2019
CVSS 5.3
EPSS 0.04
Products
fedora 5,353
extra_packages_for_enterprise_linux 76
389_directory_server 39
sssd 19
fedora_core 8
389_administration_server 1
anaconda 1
arm_installer 1
commons 1
coolkey 1
crypto-utils 1
fedmsg 1
fedora_linux_kernel 1
python-fedora 1
sectool 1
selinux-policy 1
spin-kickstarts 1
supybot-fedora 1
unbound 1
Quick Filters