Fedoraproject
fedoraproject
5,423 CVEs • 20 products
Products (20)
Click to collapseToggle
Products (20)
Click to collapse
CVEs (5,423)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
5Canonical DebianFedoraproject+2 more14Codeready Linux Builder Debian LinuxEnterprise Linux+11 moreJun 17, 2026 Aug 23, 2022 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A use-after-free flaw was found in libvirt. The qemuMonitorUnregister() function in qemuProcessHandleMonitorEOF is called using multiple threads without being adequately protected by a monitor lock. This flaw could be tr...Show more |
2Fedoraproject Powerdns2Fedora RecursorJun 17, 2026 Aug 23, 2022 N/A· v4 6.5 MEDIUM· v3 N/A· v2 PowerDNS Recursor up to and including 4.5.9, 4.6.2 and 4.7.1, when protobuf logging is enabled, has Improper Cleanup upon a Thrown Exception, leading to a denial of service (daemon crash) via a DNS query that leads to an...Show more |
3Debian FedoraprojectVim3Debian Linux FedoraVimJun 17, 2026 Aug 23, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 Use After Free in GitHub repository vim/vim prior to 9.0.0246. |
4Canonical FedoraprojectOpenvswitch+1 more4Enterprise Linux Fast Datapath FedoraOpenvswitch+1 moreJun 17, 2026 Aug 23, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 A memory leak was found in Open vSwitch (OVS) during userspace IP fragmentation processing. An attacker could use this flaw to potentially exhaust available memory by keeping sending packet fragments. |
3Dpdk FedoraprojectRedhat4Data Plane Development Kit Enterprise LinuxEnterprise Linux Fast Datapath+1 moreJun 17, 2026 Aug 23, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 A flaw was found in the vhost library in DPDK. Function vhost_user_set_inflight_fd() does not validate `msg->payload.inflight.num_queues`, possibly causing out-of-bounds memory read/write. Any software using DPDK vhost l...Show more |
3Fedoraproject RedhatSamba3Fedora SambaStorageJun 17, 2026 Aug 23, 2022 N/A· v4 6.5 MEDIUM· v3 N/A· v2 MaxQueryDuration not honoured in Samba AD DC LDAP |
5Debian FedoraprojectLibarchive+2 more14Codeready Linux Builder Debian LinuxEnterprise Linux+11 moreJun 17, 2026 Aug 23, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 An improper link resolution flaw can occur while extracting an archive leading to changing modes, times, access control lists, and flags of a file outside of the archive. An attacker may provide a malicious archive to a...Show more |
4Debian FedoraprojectLibarchive+1 more13Codeready Linux Builder Debian LinuxEnterprise Linux+10 moreJun 17, 2026 Aug 23, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 An improper link resolution flaw while extracting an archive can lead to changing the access control list (ACL) of the target of the link. An attacker may provide a malicious archive to a victim user, who would trigger t...Show more |
2Fedoraproject Open625412Fedora Open62541Jun 17, 2026 Aug 23, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 The package open62541/open62541 before 1.2.5, from 1.3-rc1 and before 1.3.1 are vulnerable to Denial of Service (DoS) due to a missing limitation on the number of received chunks - per single session or in total for all...Show more |
Python 3.x through 3.10 has an open redirection vulnerability in lib/http/server.py due to no protection against multiple (/) at the beginning of URI path which may leads to information disclosure. NOTE: this is disputed...Show more |
NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0240. |
5Debian FedoraprojectLinux+2 more9Debian Linux Enterprise LinuxFedora+6 moreJun 17, 2026 Aug 22, 2022 N/A· v4 5.5 MEDIUM· v3 N/A· v2 An out-of-bounds memory access flaw was found in the Linux kernel Intel’s iSMT SMBus host controller driver in the way a user triggers the I2C_SMBUS_BLOCK_DATA (with the ioctl I2C_SMBUS) with malicious input data. This f...Show more |
3Fedoraproject LinuxRedhat15Codeready Linux Builder Enterprise LinuxEnterprise Linux For Ibm Z Systems+12 moreJun 17, 2026 Aug 22, 2022 N/A· v4 5.5 MEDIUM· v3 N/A· v2 A NULL pointer dereference flaw was found in the Linux kernel’s IEEE 802.15.4 wireless networking subsystem in the way the user closes the LR-WPAN connection. This flaw allows a local user to crash the system. The highes...Show more |
Use After Free in GitHub repository vim/vim prior to 9.0.0225. |
2Broadcom Fedoraproject2Fedora TcpreplayJun 17, 2026 Aug 18, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 The component tcpprep in Tcpreplay v4.4.1 was discovered to contain a heap-based buffer overflow in parse_mpls at common/get.c:150. NOTE: this is different from CVE-2022-27942. |
2Broadcom Fedoraproject2Fedora TcpreplayJun 17, 2026 Aug 18, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 The component tcprewrite in Tcpreplay v4.4.1 was discovered to contain a heap-based buffer overflow in get_l2len_protocol at common/get.c:344. NOTE: this is different from CVE-2022-27941. |
2Broadcom Fedoraproject2Fedora TcpreplayJun 17, 2026 Aug 18, 2022 N/A· v4 7.8 HIGH· v3 N/A· v2 The component tcprewrite in Tcpreplay v4.4.1 was discovered to contain a heap-based buffer overflow in get_ipv6_next at common/get.c:713. NOTE: this is different from CVE-2022-27940. |
3Fedoraproject PostgresqlRedhat3Enterprise Linux FedoraPostgresqlJun 17, 2026 Aug 18, 2022 N/A· v4 8.0 HIGH· v3 N/A· v2 A vulnerability was found in PostgreSQL. This attack requires permission to create non-temporary objects in at least one schema, the ability to lure or wait for an administrator to create or update an affected extension...Show more |
3Debian FedoraprojectLibtiff3Debian Linux FedoraLibtiffJun 17, 2026 Aug 17, 2022 N/A· v4 5.5 MEDIUM· v3 N/A· v2 libtiff's tiffcrop tool has a uint32_t underflow which leads to out of bounds read and write in the extractContigSamples8bits routine. An attacker who supplies a crafted file to tiffcrop could trigger this flaw, most lik...Show more |
3Debian FedoraprojectLibtiff3Debian Linux FedoraLibtiffJun 17, 2026 Aug 17, 2022 N/A· v4 5.5 MEDIUM· v3 N/A· v2 libtiff's tiffcrop utility has a improper input validation flaw that can lead to out of bounds read and ultimately cause a crash if an attacker is able to supply a crafted file to tiffcrop. |