Vulnerabilities > Fedoraproject > Fedora > 37

DATE CVE VULNERABILITY TITLE RISK
2023-11-29 CVE-2023-6345 Integer Overflow or Wraparound vulnerability in multiple products
Integer overflow in Skia in Google Chrome prior to 119.0.6045.199 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a malicious file.
network
low complexity
google debian fedoraproject microsoft CWE-190
critical
9.6
2023-11-28 CVE-2023-5981 Information Exposure Through Discrepancy vulnerability in multiple products
A vulnerability was found that the response times to malformed ciphertexts in RSA-PSK ClientKeyExchange differ from response times of ciphertexts with correct PKCS#1 v1.5 padding.
network
high complexity
gnu redhat fedoraproject CWE-203
5.9
2023-11-16 CVE-2023-48231 Use After Free vulnerability in multiple products
Vim is an open source command line text editor.
network
low complexity
vim fedoraproject CWE-416
4.3
2023-11-16 CVE-2023-48232 Improper Handling of Exceptional Conditions vulnerability in multiple products
Vim is an open source command line text editor.
network
low complexity
vim fedoraproject CWE-755
4.3
2023-11-16 CVE-2023-48233 Integer Overflow or Wraparound vulnerability in multiple products
Vim is an open source command line text editor.
network
low complexity
vim fedoraproject CWE-190
4.3
2023-11-16 CVE-2023-48234 Integer Overflow or Wraparound vulnerability in multiple products
Vim is an open source command line text editor.
network
low complexity
vim fedoraproject CWE-190
4.3
2023-11-16 CVE-2023-48235 Integer Overflow or Wraparound vulnerability in multiple products
Vim is an open source command line text editor.
network
low complexity
vim fedoraproject CWE-190
4.3
2023-11-16 CVE-2023-48236 Integer Overflow or Wraparound vulnerability in multiple products
Vim is an open source command line text editor.
network
low complexity
vim fedoraproject CWE-190
4.3
2023-11-16 CVE-2023-48237 Integer Overflow or Wraparound vulnerability in multiple products
Vim is an open source command line text editor.
network
low complexity
vim fedoraproject CWE-190
4.3
2023-11-15 CVE-2023-5997 Use After Free vulnerability in multiple products
Use after free in Garbage Collection in Google Chrome prior to 119.0.6045.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject debian CWE-416
8.8