Fedoraproject
fedoraproject
5,423 CVEs • 20 products
Products (20)
Click to collapseToggle
Products (20)
Click to collapse
CVEs (5,423)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Debian FedoraprojectFreerdp3Debian Linux FedoraFreerdpJun 17, 2026 Aug 31, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an Out-Of-Bounds Write in the `progressive_decompress` function. This issue is li...Show more |
3Debian FedoraprojectFreerdp3Debian Linux FedoraFreerdpJun 17, 2026 Aug 31, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an Out-Of-Bounds Write in the `clear_decompress_bands_data` function in which the...Show more |
3Debian FedoraprojectFreerdp3Debian Linux FedoraFreerdpJun 17, 2026 Aug 31, 2023 N/A· v4 9.1 CRITICAL· v3 N/A· v2 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an Out-Of-Bounds Read in the `general_LumaToYUV444` function. This Out-Of-Bounds...Show more |
3Debian FedoraprojectFreerdp3Debian Linux FedoraFreerdpJun 17, 2026 Aug 31, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an IntegerOverflow leading to Out-Of-Bound Write Vulnerability in the `gdi_Create...Show more |
3Debian FedoraprojectFreerdp3Debian Linux FedoraFreerdpJun 17, 2026 Aug 31, 2023 N/A· v4 9.1 CRITICAL· v3 N/A· v2 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an Integer-Underflow leading to Out-Of-Bound Read in the `zgfx_decompress_segment...Show more |
3Debian FedoraprojectFreerdp3Debian Linux FedoraFreerdpJun 17, 2026 Aug 31, 2023 N/A· v4 9.1 CRITICAL· v3 N/A· v2 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. In affected versions a missing offset validation may lead to an Out Of Bound Read in the function `gdi_multi_opaqu...Show more |
3Debian FedoraprojectFreerdp3Debian Linux FedoraFreerdpJun 17, 2026 Aug 31, 2023 N/A· v4 9.1 CRITICAL· v3 N/A· v2 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to a missing offset validation leading to Out Of Bound Read. In the `libfreerdp/code...Show more |
3Debian FedoraprojectFreerdp3Debian Linux FedoraFreerdpJun 17, 2026 Aug 31, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an invalid offset validation leading to Out Of Bound Write. This can be triggered...Show more |
3Debian FedoraprojectFreerdp3Debian Linux FedoraFreerdpJun 17, 2026 Aug 31, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an Out-Of-Bounds Read in the `nsc_rle_decompress_data` function. The Out-Of-Bound...Show more |
3Debian FedoraprojectFreerdp3Debian Linux FedoraFreerdpJun 17, 2026 Aug 31, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions of FreeRDP are subject to a Null Pointer Dereference leading a crash in the RemoteFX (rfx) handl...Show more |
3Debian FedoraprojectFreerdp3Debian Linux FedoraFreerdpJun 17, 2026 Aug 31, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. This issue affects Clients only. Integer underflow leading to DOS (e.g. abort due to `WINPR_ASSERT` with default c...Show more |
3Debian FedoraprojectFreerdp3Debian Linux FedoraFreerdpJun 17, 2026 Aug 31, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. In affected versions there is a Global-Buffer-Overflow in the ncrush_decompress function. Feeding crafted input in...Show more |
4Debian FedoraprojectNetapp+1 more5Debian Linux FedoraOntap Select Deploy Administration Utility+2 moreJun 17, 2026 Aug 31, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 A malicious actor that has been granted Guest Operation Privileges https://docs.vmware.com/en/VMware-vSphere/8.0/vsphere-security/GUID-6A952214-0E5E-4CCF-9D2A-90948FF643EC.html in a target virtual machine may be able t...Show more |
3Debian FedoraprojectGoogle3Chrome Debian LinuxFedoraJun 17, 2026 Aug 29, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 Use after free in MediaStream in Google Chrome prior to 116.0.5845.140 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) |
4Debian FedoraprojectFrrouting+1 more4Debian Linux FedoraFrrouting+1 moreJun 17, 2026 Aug 29, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 FRRouting FRR 7.5.1 through 9.0 and Pica8 PICOS 4.3.3.2 allow a remote attacker to cause a denial of service via a crafted BGP update with a corrupted attribute 23 (Tunnel Encapsulation). |
3Debian FedoraprojectFrrouting3Debian Linux FedoraFrroutingJun 17, 2026 Aug 29, 2023 N/A· v4 9.1 CRITICAL· v3 N/A· v2 An issue was discovered in FRRouting FRR through 9.0. bgpd/bgp_packet.c can read the initial byte of the ORF header in an ahead-of-stream situation. |
2Fedoraproject Frrouting2Fedora FrroutingJun 17, 2026 Aug 29, 2023 N/A· v4 9.1 CRITICAL· v3 N/A· v2 An issue was discovered in FRRouting FRR through 9.0. There is an out-of-bounds read in bgp_attr_aigp_valid in bgpd/bgp_attr.c because there is no check for the availability of two bytes during AIGP validation. |
3Debian FedoraprojectFrrouting3Debian Linux FedoraFrroutingJun 17, 2026 Aug 29, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 An issue was discovered in FRRouting FRR through 9.0. bgpd/bgp_packet.c processes NLRIs if the attribute length is zero. |
2Agendaless Fedoraproject2Fedora PyramidJun 17, 2026 Aug 25, 2023 N/A· v4 5.3 MEDIUM· v3 N/A· v2 Pyramid is an open source Python web framework. A path traversal vulnerability in Pyramid versions 2.0.0 and 2.0.1 impacts users of Python 3.11 that are using a Pyramid static view with a full filesystem path and have a...Show more |
3Fedoraproject KeylimeRedhat9Enterprise Linux Enterprise Linux EusEnterprise Linux For Ibm Z Systems+6 moreJun 17, 2026 Aug 25, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A flaw was found in the Keylime registrar that could allow a bypass of the challenge-response protocol during agent registration. This issue may allow an attacker to impersonate an agent and hide the true status of a mon...Show more |