Fedoraproject
fedoraproject
5,423 CVEs • 20 products
Products (20)
Click to collapseToggle
Products (20)
Click to collapse
CVEs (5,423)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Buffer Over-read in GitHub repository vim/vim prior to 8.2. |
6Broadcom DebianFedoraproject+3 more28Aff 8300 Firmware Aff 8700 FirmwareAff A400 Firmware+25 moreJun 17, 2026 Jun 21, 2022 N/A· v4 7.3 HIGH· v3 10.0 HIGH· v2 In addition to the c_rehash shell command injection identified in CVE-2022-1292, further circumstances where the c_rehash script does not properly sanitise shell metacharacters to prevent command injection were found by...Show more |
4Apple DebianFedoraproject+1 more4Debian Linux FedoraMacos+1 moreJun 17, 2026 Jun 20, 2022 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Buffer Over-read in function grab_file_name in GitHub repository vim/vim prior to 8.2.4956. This vulnerability is capable of crashing the software, memory modification, and possible remote execution. |
3Debian FedoraprojectVim3Debian Linux FedoraVimJun 17, 2026 Jun 19, 2022 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Out-of-bounds Write in GitHub repository vim/vim prior to 8.2. |
4Apple DebianFedoraproject+1 more4Debian Linux FedoraMacos+1 moreJun 17, 2026 Jun 19, 2022 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Out-of-bounds Read in GitHub repository vim/vim prior to 8.2. |
3Apple FedoraprojectVim3Fedora MacosVimJun 17, 2026 Jun 19, 2022 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2. |
4Apple DebianFedoraproject+1 more4Debian Linux FedoraMacos+1 moreJun 17, 2026 Jun 19, 2022 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Buffer Over-read in GitHub repository vim/vim prior to 8.2. |
3Fedoraproject ImagemagickRedhat3Enterprise Linux FedoraImagemagickJun 17, 2026 Jun 16, 2022 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 In ImageMagick, there is load of misaligned address for type 'double', which requires 8 byte alignment and for type 'float', which requires 4 byte alignment at MagickCore/property.c. Whenever crafted or untrusted input i...Show more |
3Fedoraproject ImagemagickRedhat4Enterprise Linux Extra Packages For Enterprise LinuxFedora+1 moreJun 17, 2026 Jun 16, 2022 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 A vulnerability was found in ImageMagick, causing an outside the range of representable values of type 'unsigned long' at coders/pcl.c, when crafted or untrusted input is processed. This leads to a negative impact to app...Show more |
3Fedoraproject ImagemagickRedhat4Enterprise Linux Extra Packages For Enterprise LinuxFedora+1 moreJun 17, 2026 Jun 16, 2022 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 A vulnerability was found in ImageMagick, causing an outside the range of representable values of type 'unsigned char' at coders/psd.c, when crafted or untrusted input is processed. This leads to a negative impact to app...Show more |
2Artifex Fedoraproject2Fedora GhostscriptJun 17, 2026 Jun 16, 2022 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 A NULL pointer dereference vulnerability was found in Ghostscript, which occurs when it tries to render a large number of bits in memory. When allocating a buffer device, it relies on an init_device_procs defined for the...Show more |
2Fedoraproject Microsoft6.net .net CoreFedora+3 moreJun 17, 2026 Jun 15, 2022 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 .NET and Visual Studio Information Disclosure Vulnerability |
5Debian FedoraprojectIntel+2 more7Debian Linux EsxiFedora+4 moreJun 17, 2026 Jun 15, 2022 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Incomplete cleanup in specific special register write operations for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. |
5Debian FedoraprojectIntel+2 more7Debian Linux EsxiFedora+4 moreJun 17, 2026 Jun 15, 2022 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Incomplete cleanup of microarchitectural fill buffers on some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. |
5Debian FedoraprojectIntel+2 more7Debian Linux EsxiFedora+4 moreJun 17, 2026 Jun 15, 2022 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Incomplete cleanup of multi-core shared buffers for some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. |
2Fedoraproject Mechanize Project2Fedora MechanizeJun 17, 2026 Jun 9, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 The Mechanize library is used for automating interaction with websites. Mechanize automatically stores and sends cookies, follows redirects, and can follow links and submit forms. In versions prior to 2.8.5 the Authoriza...Show more |
3Apache FedoraprojectNetapp3Clustered Data Ontap FedoraHttp ServerJun 17, 2026 Jun 9, 2022 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Apache HTTP Server 2.4.53 and earlier may not send the X-Forwarded-* headers to the origin server based on client side Connection header hop-by-hop mechanism. This may be used to bypass IP based authentication on the ori...Show more |
3Apache FedoraprojectNetapp3Clustered Data Ontap FedoraHttp ServerJun 17, 2026 Jun 9, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Apache HTTP Server 2.4.53 and earlier may return lengths to applications calling r:wsread() that point past the end of the storage allocated for the buffer. |
3Apache FedoraprojectNetapp3Clustered Data Ontap FedoraHttp ServerJun 17, 2026 Jun 9, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 If Apache HTTP Server 2.4.53 is configured to do transformations with mod_sed in contexts where the input to mod_sed may be very large, mod_sed may make excessively large memory allocations and trigger an abort. |
3Apache FedoraprojectNetapp3Clustered Data Ontap FedoraHttp ServerJun 17, 2026 Jun 9, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 In Apache HTTP Server 2.4.53 and earlier, a malicious request to a lua script that calls r:parsebody(0) may cause a denial of service due to no default limit on possible input size. |