Fedoraproject
fedoraproject
5,423 CVEs • 20 products
Products (20)
Click to collapseToggle
Products (20)
Click to collapse
CVEs (5,423)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Fedoraproject Linux2Fedora Linux KernelApr 29, 2026 Nov 29, 2010 N/A· v4 N/A· v3 4.9 MEDIUM· v2 The wait_for_unix_gc function in net/unix/garbage.c in the Linux kernel before 2.6.37-rc3-next-20101125 does not properly select times for garbage collection of inflight sockets, which allows local users to cause a denia...Show more |
4Canonical DebianFedoraproject+1 more4Debian Linux FedoraLinux Kernel+1 moreApr 29, 2026 Nov 26, 2010 N/A· v4 N/A· v3 8.3 HIGH· v2 The sctp_auth_asoc_get_hmac function in net/sctp/auth.c in the Linux kernel before 2.6.36 does not properly validate the hmac_ids array of an SCTP peer, which allows remote attackers to cause a denial of service (memory...Show more |
2Fedoraproject Linux2Fedora Linux KernelApr 29, 2026 Nov 26, 2010 N/A· v4 N/A· v3 4.9 MEDIUM· v2 The KVM implementation in the Linux kernel before 2.6.36 does not properly reload the FS and GS segment registers, which allows host OS users to cause a denial of service (host OS crash) via a KVM_RUN ioctl call in conju...Show more |
6Canonical DebianFedoraproject+3 more7Debian Linux FedoraLinux Enterprise Desktop+4 moreApr 29, 2026 Nov 26, 2010 N/A· v4 N/A· v3 6.2 MEDIUM· v2 drivers/media/video/v4l2-compat-ioctl32.c in the Video4Linux (V4L) implementation in the Linux kernel before 2.6.36 on 64-bit platforms does not validate the destination of a memory copy operation, which allows local use...Show more |
5Canonical FedoraprojectLinux+2 more7Fedora Linux Enterprise DesktopLinux Enterprise Real Time Extension+4 moreApr 29, 2026 Nov 26, 2010 N/A· v4 N/A· v3 7.2 HIGH· v2 drivers/gpu/drm/i915/i915_gem.c in the Graphics Execution Manager (GEM) in the Intel i915 driver in the Direct Rendering Manager (DRM) subsystem in the Linux kernel before 2.6.36 does not properly validate pointers to bl...Show more |
4Fedoraproject LinuxOpensuse+1 more6Fedora Linux Enterprise DesktopLinux Enterprise Real Time Extension+3 moreApr 29, 2026 Nov 22, 2010 N/A· v4 N/A· v3 4.9 MEDIUM· v2 Use-after-free vulnerability in mm/mprotect.c in the Linux kernel before 2.6.37-rc2 allows local users to cause a denial of service via vectors involving an mprotect system call. |
2Fedoraproject Openttd2Fedora OpenttdApr 29, 2026 Nov 17, 2010 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Multiple use-after-free vulnerabilities in OpenTTD 1.0.x before 1.0.5 allow (1) remote attackers to cause a denial of service (invalid write and daemon crash) by abruptly disconnecting during transmission of the map from...Show more |
3Fedoraproject GoogleWebkitgtk3Chrome FedoraWebkitgtkApr 29, 2026 Nov 6, 2010 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Array index error in the FEBlend::apply function in WebCore/platform/graphics/filters/FEBlend.cpp in WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, allows remote attackers...Show more |
3Fedoraproject GoogleWebkitgtk3Chrome FedoraWebkitgtkApr 29, 2026 Nov 6, 2010 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, accesses a frame object after this object has been destroyed, which allows remote attackers to cause a denial of service or...Show more |
3Fedoraproject GoogleWebkitgtk3Chrome FedoraWebkitgtkApr 29, 2026 Nov 6, 2010 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, does not properly handle large text areas, which allows remote attackers to cause a denial of service (memory corruption) or...Show more |
3Fedoraproject GoogleWebkitgtk3Chrome FedoraWebkitgtkApr 29, 2026 Nov 6, 2010 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Use-after-free vulnerability in WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, allows remote attackers to cause a denial of service or possibly have unspecified other impa...Show more |
9Apple CanonicalDebian+6 more11Cups Debian LinuxEnterprise Linux Desktop+8 moreApr 29, 2026 Nov 5, 2010 N/A· v4 N/A· v3 7.5 HIGH· v2 The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, CUPS, kdegraphics, and possibly other products allows context-dependent attackers to cause a deni...Show more |
7Apple CanonicalDebian+4 more13Cups Debian LinuxEnterprise Linux+10 moreApr 29, 2026 Nov 5, 2010 N/A· v4 9.8 CRITICAL· v3 9.3 HIGH· v2 ipp.c in cupsd in CUPS 1.4.4 and earlier does not properly allocate memory for attribute values with invalid string data types, which allows remote attackers to cause a denial of service (use-after-free and application c...Show more |
6Canonical DebianFedoraproject+3 more9Debian Linux FedoraLinux Enterprise Desktop+6 moreApr 29, 2026 Oct 4, 2010 N/A· v4 N/A· v3 4.7 MEDIUM· v2 Multiple integer overflows in the snd_ctl_new function in sound/core/control.c in the Linux kernel before 2.6.36-rc5-next-20100929 allow local users to cause a denial of service (heap memory corruption) or possibly have...Show more |
5Canonical FedoraprojectGoogle+2 more5Chrome Enterprise LinuxFedora+2 moreApr 29, 2026 Sep 24, 2010 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Off-by-one error in the toAlphabetic function in rendering/RenderListMarker.cpp in WebCore in WebKit before r59950, as used in Google Chrome before 5.0.375.70, allows remote attackers to obtain sensitive information, cau...Show more |
5Canonical FedoraprojectGoogle+2 more5Chrome Enterprise LinuxFedora+2 moreApr 29, 2026 Sep 24, 2010 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Use-after-free vulnerability in page/Geolocation.cpp in WebCore in WebKit before r59859, as used in Google Chrome before 5.0.375.70, allows remote attackers to execute arbitrary code or cause a denial of service (applica...Show more |
5Debian FedoraprojectLinux+2 more8Debian Linux FedoraLinux Enterprise Desktop+5 moreApr 29, 2026 Sep 8, 2010 N/A· v4 N/A· v3 7.2 HIGH· v2 Integer overflow in net/can/bcm.c in the Controller Area Network (CAN) implementation in the Linux kernel before 2.6.27.53, 2.6.32.x before 2.6.32.21, 2.6.34.x before 2.6.34.6, and 2.6.35.x before 2.6.35.4 allows attacke...Show more |
The auth_send function in providers/ldap/ldap_auth.c in System Security Services Daemon (SSSD) 1.3.0, when LDAP authentication and anonymous bind are enabled, allows remote attackers to bypass the authentication requirem...Show more |
3Debian FedoraprojectGnupg3Debian Linux FedoraGnupgApr 29, 2026 Aug 5, 2010 N/A· v4 8.1 HIGH· v3 5.1 MEDIUM· v2 Use-after-free vulnerability in kbx/keybox-blob.c in GPGSM in GnuPG 2.x through 2.0.16 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a certificate with a large numbe...Show more |
3Canonical FedoraprojectOracle3Fedora MysqlUbuntu LinuxApr 29, 2026 Jul 13, 2010 N/A· v4 N/A· v3 3.5 LOW· v2 MySQL before 5.1.48 allows remote authenticated users with alter database privileges to cause a denial of service (server crash and database loss) via an ALTER DATABASE command with a #mysql50# string followed by a . (do...Show more |