← Back

Fedoraproject

fedoraproject

5,423 CVEs • 20 products

Products (20)

Click to collapse
Toggle
Fedora
fedora
Sssd
sssd
Fedora Core
fedora_core
Commons
commons
Coolkey
coolkey
Anaconda
anaconda
Crypto Utils
crypto-utils
Arm Installer
arm_installer
Fedmsg
fedmsg
Python Fedora
python-fedora
Sectool
sectool
Selinux Policy
selinux-policy
Supybot Fedora
supybot-fedora
Unbound
unbound
Atomic
atomic

CVEs (5,423)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
4Debian
FedoraprojectRedhat+1 more
4Debian Linux
Enterprise LinuxFedora+1 more
Jun 17, 2026
Sep 7, 2021
N/A· v4
7.8 HIGH· v3
6.9 MEDIUM· v2
A crafted NTFS image can cause a NULL pointer dereference in ntfs_extent_inode_open in NTFS-3G < 2021.8.22.
3Debian
FedoraprojectTuxera
3Debian Linux
FedoraNtfs 3g
Jul 9, 2026
Sep 7, 2021
N/A· v4
7.8 HIGH· v3
6.9 MEDIUM· v2
NTFS-3G versions < 2021.8.22, a stack buffer overflow can occur when correcting differences in the MFT and MFTMirror allowing for code execution or escalation of privileges when setuid-root.
3Debian
FedoraprojectTuxera
3Debian Linux
FedoraNtfs 3g
Jul 9, 2026
Sep 7, 2021
N/A· v4
7.8 HIGH· v3
6.9 MEDIUM· v2
In NTFS-3G versions < 2021.8.22, when a specially crafted NTFS inode pathname is supplied in an NTFS image a heap buffer overflow can occur resulting in memory disclosure, denial of service and even code execution.
3Debian
FedoraprojectTuxera
3Debian Linux
FedoraNtfs 3g
Jul 9, 2026
Sep 7, 2021
N/A· v4
7.8 HIGH· v3
6.9 MEDIUM· v2
In NTFS-3G versions < 2021.8.22, when specially crafted NTFS attributes are read in the function ntfs_attr_pread_i, a heap buffer overflow can occur and allow for writing to arbitrary memory or denial of service of the a...Show more
In NTFS-3G versions < 2021.8.22, when specially crafted NTFS attributes are read in the function ntfs_attr_pread_i, a heap buffer overflow can occur and allow for writing to arbitrary memory or denial of service of the application.Show less
3Debian
FedoraprojectTuxera
3Debian Linux
FedoraNtfs 3g
Jul 9, 2026
Sep 7, 2021
N/A· v4
7.8 HIGH· v3
6.9 MEDIUM· v2
NTFS-3G versions < 2021.8.22, when a specially crafted NTFS attribute from the MFT is setup in the function ntfs_attr_setup_flag, a heap buffer overflow can occur allowing for code execution and escalation of privileges.
3Debian
FedoraprojectTuxera
3Debian Linux
FedoraNtfs 3g
Jul 9, 2026
Sep 7, 2021
N/A· v4
7.8 HIGH· v3
6.9 MEDIUM· v2
In NTFS-3G versions < 2021.8.22, when a specially crafted NTFS inode is loaded in the function ntfs_inode_real_open, a heap buffer overflow can occur allowing for code execution and escalation of privileges.
3Debian
FedoraprojectTuxera
3Debian Linux
FedoraNtfs 3g
Jul 9, 2026
Sep 7, 2021
N/A· v4
7.8 HIGH· v3
6.9 MEDIUM· v2
In NTFS-3G versions < 2021.8.22, when a specially crafted MFT section is supplied in an NTFS image a heap buffer overflow can occur and allow for code execution.
4Debian
FedoraprojectRedhat+1 more
4Debian Linux
Enterprise LinuxFedora+1 more
Jun 17, 2026
Sep 7, 2021
N/A· v4
7.8 HIGH· v3
6.9 MEDIUM· v2
In NTFS-3G versions < 2021.8.22, when a specially crafted NTFS attribute is supplied to the function ntfs_get_attribute_value, a heap buffer overflow can occur allowing for memory disclosure or denial of service. The vul...Show more
In NTFS-3G versions < 2021.8.22, when a specially crafted NTFS attribute is supplied to the function ntfs_get_attribute_value, a heap buffer overflow can occur allowing for memory disclosure or denial of service. The vulnerability is caused by an out-of-bound buffer access which can be triggered by mounting a crafted ntfs partition. The root cause is a missing consistency check after reading an MFT record : the "bytes_in_use" field should be less than the "bytes_allocated" field. When it is not, the parsing of the records proceeds into the wild.Show less
2Cryptopp
Fedoraproject
2Crypto++
Fedora
Jun 17, 2026
Sep 6, 2021
N/A· v4
5.9 MEDIUM· v3
2.6 LOW· v2
The ElGamal implementation in Crypto++ through 8.5 allows plaintext recovery because, during interaction between two cryptographic libraries, a certain dangerous combination of the prime defined by the receiver's public...Show more
The ElGamal implementation in Crypto++ through 8.5 allows plaintext recovery because, during interaction between two cryptographic libraries, a certain dangerous combination of the prime defined by the receiver's public key, the generator defined by the receiver's public key, and the sender's ephemeral exponents can lead to a cross-configuration attack against OpenPGP.Show less
3Botan Project
FedoraprojectMozilla
3Botan
FedoraThunderbird
Jun 17, 2026
Sep 6, 2021
N/A· v4
5.9 MEDIUM· v3
2.6 LOW· v2
The ElGamal implementation in Botan through 2.18.1, as used in Thunderbird and other products, allows plaintext recovery because, during interaction between two cryptographic libraries, a certain dangerous combination of...Show more
The ElGamal implementation in Botan through 2.18.1, as used in Thunderbird and other products, allows plaintext recovery because, during interaction between two cryptographic libraries, a certain dangerous combination of the prime defined by the receiver's public key, the generator defined by the receiver's public key, and the sender's ephemeral exponents can lead to a cross-configuration attack against OpenPGP.Show less
3Fedoraproject
NetappVim
3Fedora
Ontap Select Deploy Administration UtilityVim
Jun 17, 2026
Sep 6, 2021
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
vim is vulnerable to Heap-based Buffer Overflow
2Fedoraproject
Microsoft
3Edge
Edge ChromiumFedora
Jun 17, 2026
Sep 3, 2021
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
Chromium: CVE-2021-30624 Use after free in Autofill
2Fedoraproject
Microsoft
3Edge
Edge ChromiumFedora
Jun 17, 2026
Sep 3, 2021
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
Chromium: CVE-2021-30623 Use after free in Bookmarks
2Fedoraproject
Microsoft
3Edge
Edge ChromiumFedora
Jun 17, 2026
Sep 3, 2021
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
Chromium: CVE-2021-30622 Use after free in WebApp Installs
2Fedoraproject
Microsoft
3Edge
Edge ChromiumFedora
Jun 17, 2026
Sep 3, 2021
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
Chromium: CVE-2021-30621 UI Spoofing in Autofill
2Fedoraproject
Microsoft
3Edge
Edge ChromiumFedora
Jun 17, 2026
Sep 3, 2021
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
Chromium: CVE-2021-30620 Insufficient policy enforcement in Blink
2Fedoraproject
Microsoft
3Edge
Edge ChromiumFedora
Jun 17, 2026
Sep 3, 2021
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
Chromium: CVE-2021-30619 UI Spoofing in Autofill
2Fedoraproject
Microsoft
3Edge
Edge ChromiumFedora
Jun 17, 2026
Sep 3, 2021
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
Chromium: CVE-2021-30618 Inappropriate implementation in DevTools
2Fedoraproject
Microsoft
3Edge
Edge ChromiumFedora
Jun 17, 2026
Sep 3, 2021
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
Chromium: CVE-2021-30617 Policy bypass in Blink
2Fedoraproject
Microsoft
3Edge
Edge ChromiumFedora
Jun 17, 2026
Sep 3, 2021
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
Chromium: CVE-2021-30616 Use after free in Media