Vulnerabilities > Fedoraproject > Fedora

DATE CVE VULNERABILITY TITLE RISK
2021-05-27 CVE-2021-30500 Null pointer dereference was found in upx PackLinuxElf::canUnpack() in p_lx_elf.cpp,in version UPX 4.0.0.
local
low complexity
upx-project redhat fedoraproject
7.8
2021-05-27 CVE-2021-30501 Reachable Assertion vulnerability in multiple products
An assertion abort was found in upx MemBuffer::alloc() in mem.cpp, in version UPX 4.0.0.
local
low complexity
upx-project redhat fedoraproject CWE-617
5.5
2021-05-26 CVE-2021-30469 Use After Free vulnerability in multiple products
A flaw was found in PoDoFo 0.9.7.
5.5
2021-05-26 CVE-2021-30470 Uncontrolled Recursion vulnerability in multiple products
A flaw was found in PoDoFo 0.9.7.
5.5
2021-05-26 CVE-2021-30471 Uncontrolled Recursion vulnerability in multiple products
A flaw was found in PoDoFo 0.9.7.
5.5
2021-05-26 CVE-2021-30498 A flaw was found in libcaca.
local
low complexity
libcaca-project fedoraproject
7.8
2021-05-26 CVE-2021-3561 An Out of Bounds flaw was found fig2dev version 3.2.8a.
local
low complexity
fig2dev-project fedoraproject debian
7.1
2021-05-26 CVE-2021-20297 Improper Input Validation vulnerability in multiple products
A flaw was found in NetworkManager in versions before 1.30.0.
local
low complexity
gnome redhat fedoraproject CWE-20
5.5
2021-05-26 CVE-2021-33194 Infinite Loop vulnerability in multiple products
golang.org/x/net before v0.0.0-20210520170846-37e1c6afe023 allows attackers to cause a denial of service (infinite loop) via crafted ParseFragment input.
network
low complexity
golang fedoraproject CWE-835
7.5
2021-05-26 CVE-2021-20178 A flaw was found in ansible module where credentials are disclosed in the console log by default and not protected by the security feature when using the bitbucket_pipeline_variable module.
local
low complexity
redhat fedoraproject
5.5