fedoraproject
5,423 tracked vulnerabilities.
CVE-2009-2474
neon < 0.28.6 - SSL Certificate Validation Bypass via Null Byte in CN Field
Aug 21, 2009
EPSS 0.01
CVE-2009-2848
Linux Kernel < 2.6.29.5 - Privilege Escalation via Improper clear_child_tid Handling
Aug 18, 2009
EPSS 0.01
CVE-2009-2416
MEDIUM
libxml2/libxml <2.7 - Use After Free
Aug 11, 2009
CVSS 6.5
EPSS 0.02
CVE-2009-2625
Oracle JDK - Denial of Service via Malformed XML Input
Aug 06, 2009
EPSS 0.30
CVE-2009-1721
OpenEXR 1.2.2 and 1.6.1 - Use-After-Free in Imf::hufUncompress
Jul 31, 2009
EPSS 0.04
CVE-2009-2472
Firefox < 3.0.12 - Cross-Site Scripting via Cross Origin Wrapper Bypass
Jul 22, 2009
EPSS 0.02
CVE-2009-1891
Apache HTTP Server 2.0.35-2.0.63 - Denial of Service via mod_deflate Large File Compression
Jul 10, 2009
EPSS 0.17
CVE-2009-1890
Apache HTTP Server < 2.2.12 - Denial of Service via Streamed Data Exceeding Content-Length
Jul 05, 2009
EPSS 0.16
CVE-2009-1837
HIGH
Firefox 3.0-3.0.10 - Remote Code Execution via Race Condition in Java Applet Loading
Jun 12, 2009
CVSS 7.5
EPSS 0.04
CVE-2009-1955
HIGH
Apache APR-util < 1.3.7 - Denial of Service via XML Entity Expansion
Jun 08, 2009
CVSS 7.5
EPSS 0.53
CVE-2009-1903
ModSecurity < 2.5.8 - Denial of Service via PDF XSS Protection Feature
Jun 03, 2009
EPSS 0.03
CVE-2009-1902
ModSecurity < 2.5.9 - Denial of Service via Multipart Form Data Request
Jun 03, 2009
EPSS 0.14
CVE-2009-1603
HIGH
OpenSC 0.11.7 - Cleartext Storage of Sensitive Information via RSA Key Generation
May 11, 2009
CVSS 7.5
EPSS 0.01
CVE-2009-1186
udev < 141 - Denial of Service via util_path_encode Buffer Overflow
Apr 17, 2009
EPSS 0.01
CVE-2009-1185
udev < 141 - Privilege Escalation via Unverified NETLINK Message
Apr 17, 2009
EPSS 0.82
CVE-2009-0846
MIT Kerberos 5 < 1.6.4 - Denial of Service via ASN.1 GeneralizedTime Decoder
Apr 09, 2009
EPSS 0.09
CVE-2009-1242
Linux Kernel < 2.6.29.1 - Denial of Service via EFER_LME Bit in VMX Implementation
Apr 06, 2009
EPSS 0.00
CVE-2009-0115
HIGH
Device Mapper <0.4.8 - Command Injection
Mar 30, 2009
CVSS 7.8
EPSS 0.00
CVE-2009-0040
libpng <1.0.43, <1.2.35 - DoS/Code Injection
Feb 22, 2009
EPSS 0.05
CVE-2009-0385
FFmpeg < 0.6.3 - Remote Code Execution via Malformed 4X Movie File
Feb 02, 2009
EPSS 0.07
CVE-2009-0314
gedit Python Module - Untrusted Search Path Local Code Execution
Jan 28, 2009
EPSS 0.01
CVE-2008-6552
Red Hat Cluster Project 2.x - Arbitrary File Write via Symlink Attack in /tmp
Mar 30, 2009
EPSS 0.00
CVE-2008-5983
Python < 2.6.6 - Untrusted Search Path via PySys_SetArgv API Function
Jan 28, 2009
EPSS 0.00
CVE-2008-5021
Firefox 2.0-2.0.0.17 and 3.x < 3.0.4 - Remote Code Execution via File Input Element Race Condition
Nov 13, 2008
EPSS 0.04
CVE-2008-4989
MEDIUM
GnuTLS < 2.6.1 - Improper Certificate Validation
Nov 13, 2008
CVSS 5.9
EPSS 0.02
Products
fedora 5,353
extra_packages_for_enterprise_linux 76
389_directory_server 39
sssd 19
fedora_core 8
389_administration_server 1
anaconda 1
arm_installer 1
commons 1
coolkey 1
crypto-utils 1
fedmsg 1
fedora_linux_kernel 1
python-fedora 1
sectool 1
selinux-policy 1
spin-kickstarts 1
supybot-fedora 1
unbound 1
Quick Filters