Vulnerabilities > Fedoraproject > Fedora > 31

DATE CVE VULNERABILITY TITLE RISK
2019-10-21 CVE-2019-17498 Integer Overflow or Wraparound vulnerability in multiple products
In libssh2 v1.9.0 and earlier versions, the SSH_MSG_DISCONNECT logic in packet.c has an integer overflow in a bounds check, enabling an attacker to specify an arbitrary (out-of-bounds) offset for a subsequent memory read.
8.1
2019-10-21 CVE-2019-18218 Out-of-bounds Write vulnerability in multiple products
cdf_read_property_info in cdf.c in file through 5.37 does not restrict the number of CDF_VECTOR elements, which allows a heap-based buffer overflow (4-byte out-of-bounds write).
7.8
2019-10-17 CVE-2019-14287 Improper Handling of Exceptional Conditions vulnerability in multiple products
In Sudo before 1.8.28, an attacker with access to a Runas ALL sudoer account can bypass certain policy blacklists and session PAM modules, and can cause incorrect logging, by invoking sudo with a crafted user ID.
8.8
2019-10-16 CVE-2019-3018 Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB).
network
high complexity
oracle canonical fedoraproject netapp
4.4
2019-10-16 CVE-2019-3011 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: C API).
network
low complexity
oracle canonical fedoraproject netapp
6.5
2019-10-16 CVE-2019-3009 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Connection).
network
high complexity
oracle canonical fedoraproject netapp
4.4
2019-10-16 CVE-2019-3004 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Parser).
network
low complexity
oracle canonical fedoraproject netapp
6.5
2019-10-16 CVE-2019-2998 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer).
network
low complexity
oracle canonical fedoraproject netapp
4.9
2019-10-16 CVE-2019-2997 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL).
network
low complexity
oracle canonical fedoraproject netapp
4.9
2019-10-16 CVE-2019-2993 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: C API).
network
high complexity
oracle canonical fedoraproject netapp
5.3