Fedoraproject
fedoraproject
5,423 CVEs • 20 products
Products (20)
Click to collapseToggle
Products (20)
Click to collapse
CVEs (5,423)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Broadcom Fedoraproject2Fedora TcpreplayJun 17, 2026 May 4, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Tcpreplay version 4.4.1 contains a memory leakage flaw in fix_ipv6_checksums() function. The highest threat from this vulnerability is to data confidentiality. |
2Fedoraproject Libsdl2Fedora Sdl TtfJun 17, 2026 May 4, 2022 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 SDL_ttf v2.0.18 and below was discovered to contain an arbitrary memory write via the function TTF_RenderText_Solid(). This vulnerability is triggered via a crafted TTF file. |
6Debian FedoraprojectNetapp+3 more35A250 Firmware A700s FirmwareActive Iq Unified Manager+32 moreJun 17, 2026 May 3, 2022 N/A· v4 7.3 HIGH· v3 10.0 HIGH· v2 The c_rehash script does not properly sanitise shell metacharacters to prevent command injection. This script is distributed by some operating systems in a manner where it is automatically executed. On such operating sys...Show more |
5Debian FedoraprojectNetapp+2 more19Active Iq Unified Manager Clustered Data OntapClustered Data Ontap Antivirus Connector+16 moreJun 17, 2026 May 3, 2022 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 In libxml2 before 2.9.14, several buffer handling functions in buf.c (xmlBuf*) and tree.c (xmlBuffer*) don't check for integer overflows. This can result in out-of-bounds memory writes. Exploitation requires a victim to...Show more |
3Debian FedoraprojectTuxera3Debian Linux FedoraNtfs 3gJun 17, 2026 May 2, 2022 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 ntfsck in NTFS-3G through 2021.8.22 has a heap-based buffer overflow involving buffer+512*3-2. NOTE: the upstream position is that ntfsck is deprecated; however, it is shipped by some Linux distributions. |
3Fedoraproject LinuxNetapp8Fedora H300s FirmwareH410c Firmware+5 moreJun 17, 2026 May 2, 2022 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 An issue was discovered in the Linux kernel through 5.17.5. io_rw_init_file in fs/io_uring.c lacks initialization of kiocb->private. |
3Angularjs FedoraprojectNetapp3Angularjs FedoraOntap Select Deploy Administration UtilityJun 17, 2026 May 1, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 The package angular after 1.7.0 are vulnerable to Regular Expression Denial of Service (ReDoS) by providing a custom locale rule that makes it possible to assign the parameter in posPre: ' '.repeat() of NUMBER_FORMATS.PA...Show more |
3Fedoraproject MoodleRedhat3Enterprise Linux FedoraMoodleJun 17, 2026 Apr 29, 2022 N/A· v4 4.3 MEDIUM· v3 4.0 MEDIUM· v2 Users with the capability to configure badge criteria (teachers and managers by default) were able to configure course badges with profile field criteria, which should only be available for site badges. |
4Fedoraproject Podman ProjectPsgo Project+1 more16Developer Tools Enterprise LinuxEnterprise Linux Eus+13 moreJun 17, 2026 Apr 29, 2022 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 A privilege escalation flaw was found in Podman. This flaw allows an attacker to publish a malicious image to a public registry. Once this image is downloaded by a potential victim, the vulnerability is triggered after a...Show more |
2Fedoraproject Linux2Fedora Linux KernelJun 17, 2026 Apr 29, 2022 N/A· v4 6.6 MEDIUM· v3 4.6 MEDIUM· v2 A flaw was found in the Linux kernel in linux/net/netfilter/nf_tables_api.c of the netfilter subsystem. This flaw allows a local user to cause an out-of-bounds write issue. |
3Debian FedoraprojectSamba3Cifs Utils Debian LinuxFedoraJun 17, 2026 Apr 28, 2022 N/A· v4 5.3 MEDIUM· v3 4.3 MEDIUM· v2 cifs-utils through 6.14, with verbose logging, can cause an information leak when a file contains = (equal sign) characters but is not a valid credentials file. |
4Fedoraproject NetappOracle+1 more5Communications Operations Monitor FedoraManagement Services For Element Software+2 moreJun 17, 2026 Apr 27, 2022 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Redis is an in-memory database that persists on disk. Prior to versions 6.2.7 and 7.0.0, an attacker attempting to load a specially crafted Lua script can cause NULL pointer dereference which will result with a crash of...Show more |
4Fedoraproject NetappOracle+1 more5Communications Operations Monitor FedoraManagement Services For Element Software+2 moreJun 17, 2026 Apr 27, 2022 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Redis is an in-memory database that persists on disk. By exploiting weaknesses in the Lua script execution environment, an attacker with access to Redis prior to version 7.0.0 or 6.2.7 can inject Lua code that will execu...Show more |
2Chafa Project Fedoraproject2Chafa FedoraJun 17, 2026 Apr 27, 2022 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 chafa: NULL Pointer Dereference in function gif_internal_decode_frame at libnsgif.c:599 allows attackers to cause a denial of service (crash) via a crafted input file. in GitHub repository hpjansson/chafa prior to 1.10.2...Show more |
5Debian FedoraprojectHp+2 more19Caas Platform Cifs UtilsDebian Linux+16 moreJun 17, 2026 Apr 27, 2022 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 In cifs-utils through 6.14, a stack-based buffer overflow when parsing the mount.cifs ip= command-line argument could lead to local attackers gaining root privileges. |
2Fedoraproject Freerdp2Fedora FreerdpJun 17, 2026 Apr 26, 2022 N/A· v4 9.8 CRITICAL· v3 6.8 MEDIUM· v2 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP). Prior to version 2.7.0, server side authentication against a `SAM` file might be successful for invalid credentials if the server has configured an i...Show more |
2Fedoraproject Freerdp3Extra Packages For Enterprise Linux FedoraFreerdpJun 17, 2026 Apr 26, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP). In versions prior to 2.7.0, NT LAN Manager (NTLM) authentication does not properly abort when someone provides and empty password value. This issue a...Show more |
2Fedoraproject Giflib Project2Fedora GiflibJun 17, 2026 Apr 25, 2022 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 There is a heap-buffer-overflow in GIFLIB 5.2.1 function DumpScreen2RGB() in gif2rgb.c:298:45. |
2Fedoraproject Freetype2Fedora FreetypeJul 9, 2026 Apr 22, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 FreeType commit 22a0cccb4d9d002f33c1ba7a4b36812c7d4f46b5 was discovered to contain a segmentation violation via the function FT_Request_Size. |
2Fedoraproject Freetype2Fedora FreetypeJul 9, 2026 Apr 22, 2022 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 FreeType commit 53dfdcd8198d2b3201a23c4bad9190519ba918db was discovered to contain a segmentation violation via the function FNT_Size_Request. |