VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Fedoraproject
> Fedora
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2022-04-05
CVE-2022-26360
IOMMU: RMRR (VT-d) and unity map (AMD-Vi) handling issues T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Certain PCI devices in a system might be assigned Reserved Memory Regions (specified via Reserved Memory Region Reporting, "RMRR") for Intel VT-d or Unity Mapping ranges for AMD-Vi.
local
low complexity
xen
debian
fedoraproject
7.8
7.8
2022-04-05
CVE-2022-26361
IOMMU: RMRR (VT-d) and unity map (AMD-Vi) handling issues T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Certain PCI devices in a system might be assigned Reserved Memory Regions (specified via Reserved Memory Region Reporting, "RMRR") for Intel VT-d or Unity Mapping ranges for AMD-Vi.
local
low complexity
xen
debian
fedoraproject
7.8
7.8
2022-04-04
CVE-2022-27649
Incorrect Default Permissions vulnerability in multiple products
A flaw was found in Podman, where containers were started incorrectly with non-empty default permissions.
network
high complexity
podman-project
redhat
fedoraproject
CWE-276
7.5
7.5
2022-04-04
CVE-2022-27650
Incorrect Default Permissions vulnerability in multiple products
A flaw was found in crun where containers were incorrectly started with non-empty default permissions.
network
high complexity
crun-project
fedoraproject
redhat
CWE-276
7.5
7.5
2022-04-04
CVE-2022-27651
Incorrect Default Permissions vulnerability in multiple products
A flaw was found in buildah where containers were incorrectly started with non-empty default permissions.
network
high complexity
buildah-project
fedoraproject
redhat
CWE-276
6.8
6.8
2022-04-04
CVE-2022-24801
Twisted is an event-based framework for internet applications, supporting Python 3.6+.
network
high complexity
twisted
debian
fedoraproject
oracle
8.1
8.1
2022-04-04
CVE-2022-24785
Moment.js is a JavaScript date library for parsing, validating, manipulating, and formatting dates.
network
low complexity
momentjs
tenable
netapp
fedoraproject
debian
7.5
7.5
2022-04-04
CVE-2022-24191
Infinite Loop vulnerability in multiple products
In HTMLDOC 1.9.14, an infinite loop in the gif_read_lzw function can lead to a pointer arbitrarily pointing to heap memory and resulting in a buffer overflow.
local
low complexity
htmldoc-project
fedoraproject
CWE-835
5.5
5.5
2022-04-03
CVE-2022-28388
Double Free vulnerability in multiple products
usb_8dev_start_xmit in drivers/net/can/usb/usb_8dev.c in the Linux kernel through 5.17.1 has a double free.
local
low complexity
linux
debian
fedoraproject
netapp
CWE-415
5.5
5.5
2022-04-03
CVE-2022-28389
Double Free vulnerability in multiple products
mcba_usb_start_xmit in drivers/net/can/usb/mcba_usb.c in the Linux kernel through 5.17.1 has a double free.
local
low complexity
linux
fedoraproject
debian
netapp
CWE-415
5.5
5.5
«
Previous
1
2
...
132
133
134
(current)
135
136
...
464
465
»
Next