CVEs (5,353)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Fedoraproject Google6Fedora Google ProtobufProtobuf Java+3 moreJun 17, 2026 Oct 12, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 A parsing issue with binary data in protobuf-java core and lite versions prior to 3.21.7, 3.20.3, 3.19.6 and 3.16.3 can lead to a denial of service attack. Inputs containing multiple instances of non-repeated embedded me...Show more |
FreeRDP is a free remote desktop protocol library and clients. All FreeRDP based clients when using the `/video` command line switch might read uninitialized data, decode it as audio/video and display the result. FreeRDP...Show more |
FreeRDP is a free remote desktop protocol library and clients. FreeRDP based clients on unix systems using `/parallel` command line switch might read uninitialized data and send it to the server the client is currently c...Show more |
3Debian FedoraprojectLibreoffice3Debian Linux FedoraLibreofficeJun 17, 2026 Oct 11, 2022 N/A· v4 6.3 MEDIUM· v3 N/A· v2 LibreOffice supports Office URI Schemes to enable browser integration of LibreOffice with MS SharePoint server. An additional scheme 'vnd.libreoffice.command' specific to LibreOffice was added. In the affected versions o...Show more |
2Fedoraproject Microsoft5.net .net CoreFedora+2 moreJun 17, 2026 Oct 11, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 NuGet Client Elevation of Privilege Vulnerability |
3Debian FedoraprojectXen3Debian Linux FedoraXenJun 17, 2026 Oct 11, 2022 N/A· v4 5.6 MEDIUM· v3 N/A· v2 lock order inversion in transitive grant copy handling As part of XSA-226 a missing cleanup call was inserted on an error handling path. While doing so, locking requirements were not paid attention to. As a result two co...Show more |
3Debian FedoraprojectXen3Debian Linux FedoraXenJun 17, 2026 Oct 11, 2022 N/A· v4 3.8 LOW· v3 N/A· v2 Arm: unbounded memory consumption for 2nd-level page tables Certain actions require e.g. removing pages from a guest's P2M (Physical-to-Machine) mapping. When large pages are in use to map guest pages in the 2nd-stage pa...Show more |
3Debian FedoraprojectXen3Debian Linux FedoraXenJun 17, 2026 Oct 11, 2022 N/A· v4 6.5 MEDIUM· v3 N/A· v2 P2M pool freeing may take excessively long The P2M pool backing second level address translation for guests may be of significant size. Therefore its freeing may take more time than is reasonable without intermediate pre...Show more |
2Fedoraproject Freedesktop2Dbus FedoraJun 17, 2026 Oct 10, 2022 N/A· v4 6.5 MEDIUM· v3 N/A· v2 An issue was discovered in D-Bus before 1.12.24, 1.13.x and 1.14.x before 1.14.4, and 1.15.x before 1.15.2. An authenticated attacker can cause dbus-daemon and other programs that use libdbus to crash by sending a messag...Show more |
2Fedoraproject Freedesktop2Dbus FedoraJun 17, 2026 Oct 10, 2022 N/A· v4 6.5 MEDIUM· v3 N/A· v2 An issue was discovered in D-Bus before 1.12.24, 1.13.x and 1.14.x before 1.14.4, and 1.15.x before 1.15.2. An authenticated attacker can cause dbus-daemon and other programs that use libdbus to crash when receiving a me...Show more |
2Fedoraproject Freedesktop2Dbus FedoraJun 17, 2026 Oct 10, 2022 N/A· v4 6.5 MEDIUM· v3 N/A· v2 An issue was discovered in D-Bus before 1.12.24, 1.13.x and 1.14.x before 1.14.4, and 1.15.x before 1.15.2. An authenticated attacker can cause dbus-daemon and other programs that use libdbus to crash when receiving a me...Show more |
3Debian FedoraprojectLinux3Debian Linux FedoraLinux KernelJun 17, 2026 Oct 8, 2022 N/A· v4 4.3 MEDIUM· v3 N/A· v2 A vulnerability classified as problematic has been found in Linux Kernel. This affects the function fib_nh_match of the file net/ipv4/fib_semantics.c of the component IPv4 Handler. The manipulation leads to out-of-bounds...Show more |
2Fedoraproject Puppet2Fedora Puppetlabs MysqlJun 17, 2026 Oct 7, 2022 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Command injection is possible in the puppetlabs-apt module prior to version 9.0.0. A malicious actor is able to exploit this vulnerability only if they are able to provide unsanitized input to the module. This condition...Show more |
3Debian FedoraprojectIsc3Debian Linux DhcpFedoraJun 17, 2026 Oct 7, 2022 N/A· v4 6.5 MEDIUM· v3 N/A· v2 In ISC DHCP 1.0 -> 4.4.3, ISC DHCP 4.1-ESV-R1 -> 4.1-ESV-R16-P1 a system with access to a DHCP server, sending DHCP packets crafted to include fqdn labels longer than 63 bytes, could eventually cause the server to run ou...Show more |
3Debian FedoraprojectIsc3Debian Linux DhcpFedoraJun 17, 2026 Oct 7, 2022 N/A· v4 6.5 MEDIUM· v3 N/A· v2 In ISC DHCP 4.4.0 -> 4.4.3, ISC DHCP 4.1-ESV-R1 -> 4.1-ESV-R16-P1, when the function option_code_hash_lookup() is called from add_option(), it increases the option's refcount field. However, there is not a corresponding...Show more |
2Fedoraproject Lighttpd2Fedora LighttpdJun 17, 2026 Oct 6, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 A resource leak in gw_backend.c in lighttpd 1.4.56 through 1.4.66 could lead to a denial of service (connection-slot exhaustion) after a large amount of anomalous TCP behavior by clients. It is related to RDHUP mishandli...Show more |
2Fedoraproject Moodle3Extra Packages For Enterprise Linux FedoraMoodleJun 17, 2026 Sep 30, 2022 N/A· v4 4.3 MEDIUM· v3 N/A· v2 The H5P activity attempts report did not filter by groups, which in separate groups mode could reveal information to non-editing teachers about attempts/users in groups they should not have access to. |
2Fedoraproject Moodle3Extra Packages For Enterprise Linux FedoraMoodleJun 17, 2026 Sep 30, 2022 N/A· v4 9.8 CRITICAL· v3 N/A· v2 A limited SQL injection risk was identified in the "browse list of users" site administration page. |
2Fedoraproject Moodle3Extra Packages For Enterprise Linux FedoraMoodleJun 17, 2026 Sep 30, 2022 N/A· v4 7.1 HIGH· v3 N/A· v2 Recursive rendering of Mustache template helpers containing user input could, in some cases, result in an XSS risk or a page failing to load. |
3Debian FedoraprojectVim3Debian Linux FedoraVimJun 17, 2026 Sep 29, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 Use After Free in GitHub repository vim/vim prior to 9.0.0614. |