fedoraproject
5,423 tracked vulnerabilities.
CVE-2014-1491
Mozilla Network Security Services < 3.15.4 - Inadequate Encryption Strength in Diffie-Hellman Key Exchange
Feb 06, 2014
EPSS 0.05
CVE-2014-1490
Mozilla Firefox < 24.3 - Use-After-Free via Session Ticket Replacement in Resumption Handshake
Feb 06, 2014
EPSS 0.04
CVE-2014-1487
HIGH
Firefox < 27.0 - Origin Validation Error via Web Workers Error Messages
Feb 06, 2014
CVSS 7.5
EPSS 0.02
CVE-2014-1486
CRITICAL
Firefox < 27.0 - Remote Code Execution via imgRequestProxy Use-After-Free
Feb 06, 2014
CVSS 9.8
EPSS 0.07
CVE-2014-1482
HIGH
Firefox < 27.0 - Out-of-bounds Write via Crafted Image Data
Feb 06, 2014
CVSS 8.8
EPSS 0.06
CVE-2014-1481
HIGH
Mozilla Firefox < 27.0 - Window Object Restriction Bypass via Native Getter Method Inconsistency
Feb 06, 2014
CVSS 7.5
EPSS 0.04
CVE-2014-1479
HIGH
Mozilla Firefox <27 - Info Disclosure
Feb 06, 2014
CVSS 7.5
EPSS 0.05
CVE-2014-1477
CRITICAL
Firefox < 27.0 - Remote Code Execution or Denial of Service
Feb 06, 2014
CVSS 9.8
EPSS 0.06
CVE-2014-0019
socat 1.3.0.0-1.7.2.2 and 2.0.0-b1-2.0.0-b6 - Stack-Based Buffer Overflow via Long Server Name in PROXY-CONNECT Address
Feb 04, 2014
EPSS 0.00
CVE-2014-0010
Moodle < 2.2.11, 2.3.x < 2.3.11, 2.4.x < 2.4.8, 2.5.x < 2.5.4, 2.6.x < 2.6.1 - Cross-Site Request Forgery
Jan 20, 2014
EPSS 0.01
CVE-2013-7488
HIGH
perl-Convert-ASN1 <0.28 - Infinite Loop
Apr 07, 2020
CVSS 7.5
EPSS 0.04
CVE-2013-4572
HIGH
MediaWiki <1.19.9, <1.20.8, <1.21.3 - Auth Bypass
Feb 06, 2020
CVSS 7.5
EPSS 0.02
CVE-2013-0294
MEDIUM
pyrad < 2.1 - Use of Insufficiently Random Values in RADIUS Authenticator and Password Hash Generation
Jan 28, 2020
CVSS 5.9
EPSS 0.03
CVE-2013-1895
HIGH
py-bcrypt < 0.3 - Authentication Bypass via Concurrent Memory Access
Jan 28, 2020
CVSS 7.5
EPSS 0.03
CVE-2013-1437
CRITICAL
Module-Metadata < 1.000015 - Remote Code Execution via $Version Eval Injection
Jan 28, 2020
CVSS 9.8
EPSS 0.03
CVE-2013-4752
MEDIUM
Symfony <2.0.24, 2.1.<12, 2.2.<5, 2.3.<3 - XSS
Jan 02, 2020
CVSS 6.1
EPSS 0.02
CVE-2013-4357
HIGH
eglibc < 2.14 - Denial of Service via getaddrinfo() Function
Dec 31, 2019
CVSS 7.5
EPSS 0.03
CVE-2013-4161
HIGH
gksu-polkit - Improper Privilege Management
Dec 31, 2019
CVSS 7.8
EPSS 0.00
CVE-2013-4158
MEDIUM
smokeping < 2.6.9 - Cross-Site Scripting
Dec 11, 2019
CVSS 6.1
EPSS 0.01
CVE-2013-2166
CRITICAL
python-keystoneclient 0.2.3-0.2.5 - Inadequate Encryption Strength in Memcache Middleware
Dec 10, 2019
CVSS 9.8
EPSS 0.02
CVE-2013-4411
MEDIUM
Reviewboard < 1.6.19 - Incorrect Authorization
Dec 03, 2019
CVSS 4.3
EPSS 0.01
CVE-2013-4235
MEDIUM
shadow - Time-of-check Time-of-use Race Condition when Copying and Removing Directory Trees
Dec 03, 2019
CVSS 4.7
EPSS 0.00
CVE-2013-4410
HIGH
ReviewBoard 1.6-1.6.18 - Incorrect Authorization in REST API
Dec 02, 2019
CVSS 7.5
EPSS 0.02
CVE-2013-1817
HIGH
MediaWiki < 1.19.4 and 1.20.x < 1.20.3 - Information Disclosure via api.php
Nov 20, 2019
CVSS 7.5
EPSS 0.03
CVE-2013-1816
HIGH
MediaWiki < 1.19.4 and 1.20.x < 1.20.3 - Denial of Service via Crafted Request
Nov 20, 2019
CVSS 7.5
EPSS 0.03
Products
fedora 5,353
extra_packages_for_enterprise_linux 76
389_directory_server 39
sssd 19
fedora_core 8
389_administration_server 1
anaconda 1
arm_installer 1
commons 1
coolkey 1
crypto-utils 1
fedmsg 1
fedora_linux_kernel 1
python-fedora 1
sectool 1
selinux-policy 1
spin-kickstarts 1
supybot-fedora 1
unbound 1
Quick Filters