VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Fedoraproject
> Fedora
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2020-06-25
CVE-2020-10994
Out-of-bounds Read vulnerability in multiple products
In libImaging/Jpeg2KDecode.c in Pillow before 7.1.0, there are multiple out-of-bounds reads via a crafted JP2 file.
local
low complexity
python
fedoraproject
canonical
CWE-125
5.5
5.5
2020-06-25
CVE-2020-10379
Classic Buffer Overflow vulnerability in multiple products
In Pillow before 7.1.0, there are two Buffer Overflows in libImaging/TiffDecode.c.
local
low complexity
python
fedoraproject
canonical
CWE-120
7.8
7.8
2020-06-25
CVE-2020-10378
Out-of-bounds Read vulnerability in multiple products
In libImaging/PcxDecode.c in Pillow before 7.1.0, an out-of-bounds read can occur when reading PCX files where state->shuffle is instructed to read beyond state->buffer.
local
low complexity
python
fedoraproject
canonical
CWE-125
5.5
5.5
2020-06-25
CVE-2020-10177
Out-of-bounds Read vulnerability in multiple products
Pillow before 7.1.0 has multiple out-of-bounds reads in libImaging/FliDecode.c.
local
low complexity
python
debian
fedoraproject
canonical
CWE-125
5.5
5.5
2020-06-24
CVE-2020-15005
In MediaWiki before 1.31.8, 1.32.x and 1.33.x before 1.33.4, and 1.34.x before 1.34.2, private wikis behind a caching server using the img_auth.php image authorization security feature may have had their files cached publicly, so any unauthorized user could view them.
network
high complexity
mediawiki
fedoraproject
debian
3.1
3.1
2020-06-22
CVE-2020-4033
In FreeRDP before version 2.1.2, there is an out of bounds read in RLEDECOMPRESS.
network
low complexity
freerdp
fedoraproject
opensuse
canonical
debian
6.5
6.5
2020-06-22
CVE-2020-4032
In FreeRDP before version 2.1.2, there is an integer casting vulnerability in update_recv_secondary_order.
network
low complexity
freerdp
opensuse
fedoraproject
canonical
debian
4.3
4.3
2020-06-22
CVE-2020-4031
In FreeRDP before version 2.1.2, there is a use-after-free in gdi_SelectObject.
network
low complexity
freerdp
fedoraproject
opensuse
canonical
debian
7.5
7.5
2020-06-22
CVE-2020-4030
In FreeRDP before version 2.1.2, there is an out of bounds read in TrioParse.
network
low complexity
freerdp
fedoraproject
opensuse
canonical
debian
6.5
6.5
2020-06-22
CVE-2020-11099
In FreeRDP before version 2.1.2, there is an out of bounds read in license_read_new_or_upgrade_license_packet.
network
low complexity
freerdp
opensuse
fedoraproject
canonical
debian
6.5
6.5
«
Previous
1
2
...
308
309
310
(current)
311
312
...
464
465
»
Next