fedoraproject

5,423 tracked vulnerabilities.

CVE-2012-3354
DokuWiki - Unauthenticated Sensitive Information Exposure via Prefix Parameter
Nov 20, 2012
EPSS 0.01
CVE-2012-4406 CRITICAL
OpenStack Swift < 1.7.0 - Remote Code Execution via Unsafe Pickle Deserialization
Oct 22, 2012
CVSS 9.8
EPSS 0.07
CVE-2012-3504
crypto-utils 2.4.1-34 - Arbitrary File Overwrite via Symlink Attack on List File
Oct 10, 2012
EPSS 0.00
CVE-2012-4453
dracut < 024 - Incorrect Default Permissions in initramfs Images
Oct 09, 2012
EPSS 0.00
CVE-2012-4450
389 Directory Server 1.2.10 - Authenticated ACL Bypass via modrdn Operation
Oct 01, 2012
EPSS 0.02
CVE-2012-4415
Fedora < 0.6.2 - Memory Corruption
Oct 01, 2012
EPSS 0.14
CVE-2012-2314
Anaconda - Unprotected Password Hash Exposure via /etc/grub.d Permissions
Jul 03, 2012
EPSS 0.00
CVE-2012-2746
389 Directory Server <1.2.11.6 - Info Disclosure
Jul 03, 2012
EPSS 0.01
CVE-2012-2678
389 Directory Server <1.2.11.6 - Info Disclosure
Jul 03, 2012
EPSS 0.01
CVE-2012-0833
389 Directory Server < 1.2.10 - Authenticated Denial of Service via Certificate Group ACI Handling
Jul 03, 2012
EPSS 0.01
CVE-2012-1149
LibreOffice < 3.5.3 - Remote Code Execution via Crafted Embedded Image Object
Jun 21, 2012
EPSS 0.14
CVE-2012-0037 MEDIUM
Redland Raptor < 2.0.7 - XML External Entity Injection via RDF Document
Jun 17, 2012
CVSS 6.5
EPSS 0.14
CVE-2012-1988
Puppet 2.6.0-2.6.14 and 2.7.0-2.7.12 - Authenticated Remote Code Execution via Filebucket Request
May 29, 2012
EPSS 0.03
CVE-2012-1146 MEDIUM
Linux Kernel < 3.2.10 - Denial of Service via Memory Threshold Event Handling
May 17, 2012
CVSS 5.5
EPSS 0.01
CVE-2012-1823 CRITICAL KEVNUCLEI
PHP < 5.3.12 and 5.4.x < 5.4.2 - Remote Code Execution via CGI Query String
May 11, 2012
CVSS 9.8
EPSS 1.00
CVE-2012-2089
nginx 1.0.7-1.0.14 and 1.1.3-1.1.18 - Buffer Overflow in ngx_http_mp4_module
Apr 17, 2012
EPSS 0.10
CVE-2012-1180
nginx < 1.0.14 and 1.1.x < 1.1.17 - Use-After-Free via Crafted Backend Response
Apr 17, 2012
EPSS 0.10
CVE-2011-4088 HIGH
abrt - Exposure of Sensitive Information in Crash Reports
Jan 31, 2020
CVSS 7.5
EPSS 0.02
CVE-2011-2924 MEDIUM
foomatic-filters < 4.0.12 - Symlink Attack via Insecure Temporary File Creation
Nov 19, 2019
CVSS 5.5
EPSS 0.00
CVE-2011-2726 HIGH
Drupal 7.0-7.5 - Unauthenticated File Download via Direct URL Access
Nov 15, 2019
CVSS 7.5
EPSS 0.02
CVE-2011-0704 MEDIUM
389 Directory Server 1.2.7.5 - Denial of Service via Empty Modify Request
May 04, 2018
CVSS 5.9
EPSS 0.01
CVE-2011-4930
Condor 7.2.0-7.6.4 - Format String Vulnerability via Job Hold Reason or Filename
Feb 10, 2014
EPSS 0.01
CVE-2011-5268
Bip < 0.8.9 - Denial of Service via SSL Handshake Failure
Dec 24, 2013
EPSS 0.02
CVE-2011-3045 HIGH
Google Chrome < 17.0.963.83 - Remote Code Execution via Crafted PNG File
Mar 22, 2012
CVSS 8.8
EPSS 0.04
CVE-2011-4862
GNU inetutils < 1.9 - Remote Code Execution via Long Encryption Key
Dec 25, 2011
EPSS 0.95