Fedoraproject
fedoraproject
5,423 CVEs • 20 products
Products (20)
Click to collapseToggle
Products (20)
Click to collapse
CVEs (5,423)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Debian FedoraprojectXen3Debian Linux FedoraXenJun 17, 2026 Aug 27, 2021 N/A· v4 5.5 MEDIUM· v3 4.9 MEDIUM· v2 inadequate grant-v2 status frames array bounds check The v2 grant table interface separates grant attributes from grant status. That is, when operating in this mode, a guest has two tables. As a result, guests also need...Show more |
3Debian FedoraprojectXen3Debian Linux FedoraXenJun 17, 2026 Aug 27, 2021 N/A· v4 5.5 MEDIUM· v3 4.9 MEDIUM· v2 long running loops in grant table handling In order to properly monitor resource use, Xen maintains information on the grant mappings a domain may create to map grants offered by other domains. In the process of carrying...Show more |
3Debian FedoraprojectXen3Debian Linux FedoraXenJun 17, 2026 Aug 27, 2021 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 grant table v2 status pages may remain accessible after de-allocation Guest get permitted access to certain Xen-owned pages of memory. The majority of such pages remain allocated / associated with a guest for its entire...Show more |
3Debian FedoraprojectXen3Debian Linux FedoraXenJun 17, 2026 Aug 27, 2021 N/A· v4 6.8 MEDIUM· v3 4.6 MEDIUM· v2 IOMMU page mapping issues on x86 T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Both AMD and Intel allow ACPI tables to specify regions of...Show more |
3Debian FedoraprojectXen3Debian Linux FedoraXenJun 17, 2026 Aug 27, 2021 N/A· v4 6.8 MEDIUM· v3 4.6 MEDIUM· v2 IOMMU page mapping issues on x86 T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Both AMD and Intel allow ACPI tables to specify regions of...Show more |
3Debian FedoraprojectXen3Debian Linux FedoraXenJun 17, 2026 Aug 27, 2021 N/A· v4 6.8 MEDIUM· v3 4.6 MEDIUM· v2 IOMMU page mapping issues on x86 T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Both AMD and Intel allow ACPI tables to specify regions of...Show more |
4Debian FedoraprojectRedhat+1 more4Debian Linux Enterprise LinuxFedora+1 moreJun 17, 2026 Aug 27, 2021 N/A· v4 8.1 HIGH· v3 5.8 MEDIUM· v2 squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal o...Show more |
2Fedoraproject Google2Chrome FedoraJun 17, 2026 Aug 26, 2021 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Use after free in ANGLE in Google Chrome prior to 92.0.4515.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. |
2Fedoraproject Google2Chrome FedoraJun 17, 2026 Aug 26, 2021 N/A· v4 7.5 HIGH· v3 5.1 MEDIUM· v2 Data race in WebAudio in Google Chrome prior to 92.0.4515.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. |
2Fedoraproject Google2Chrome FedoraJun 17, 2026 Aug 26, 2021 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Use after free in WebRTC in Google Chrome prior to 92.0.4515.159 allowed an attacker who convinced a user to visit a malicious website to potentially exploit heap corruption via a crafted HTML page. |
2Fedoraproject Google2Chrome FedoraJun 17, 2026 Aug 26, 2021 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Use after free in Extensions API in Google Chrome prior to 92.0.4515.159 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page. |
2Fedoraproject Google2Chrome FedoraJun 17, 2026 Aug 26, 2021 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Use after free in Printing in Google Chrome prior to 92.0.4515.159 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. |
2Fedoraproject Google2Chrome FedoraJun 17, 2026 Aug 26, 2021 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Type confusion in V8 in Google Chrome prior to 92.0.4515.159 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. |
2Fedoraproject Google2Chrome FedoraJun 17, 2026 Aug 26, 2021 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Type confusion in V8 in Google Chrome prior to 92.0.4515.159 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. |
2Fedoraproject Google2Chrome FedoraJun 17, 2026 Aug 26, 2021 N/A· v4 6.8 MEDIUM· v3 4.6 MEDIUM· v2 Use after free in Browser UI in Google Chrome on Chrome prior to 92.0.4515.131 allowed a remote attacker to potentially exploit heap corruption via physical access to the device. |
2Fedoraproject Google2Chrome FedoraJun 17, 2026 Aug 26, 2021 N/A· v4 4.3 MEDIUM· v3 4.3 MEDIUM· v2 Incorrect security UI in Navigation in Google Chrome on Android prior to 92.0.4515.131 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. |
2Fedoraproject Google2Chrome FedoraJun 17, 2026 Aug 26, 2021 N/A· v4 6.8 MEDIUM· v3 4.6 MEDIUM· v2 Use after free in Page Info UI in Google Chrome prior to 92.0.4515.131 allowed a remote attacker to potentially exploit heap corruption via physical access to the device. |
2Fedoraproject Google2Chrome FedoraJun 17, 2026 Aug 26, 2021 N/A· v4 8.1 HIGH· v3 5.8 MEDIUM· v2 Out of bounds read in Tab Strip in Google Chrome prior to 92.0.4515.131 allowed an attacker who convinced a user to install a malicious extension to perform an out of bounds memory read via a crafted HTML page. |
2Fedoraproject Google2Chrome FedoraJun 17, 2026 Aug 26, 2021 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Out of bounds write in Tab Groups in Google Chrome prior to 92.0.4515.131 allowed an attacker who convinced a user to install a malicious extension to perform an out of bounds memory write via a crafted HTML page. |
2Fedoraproject Google2Chrome FedoraJun 17, 2026 Aug 26, 2021 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Use after free in File System API in Google Chrome prior to 92.0.4515.131 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. |