Vulnerabilities > Fedoraproject > Fedora

DATE CVE VULNERABILITY TITLE RISK
2022-08-26 CVE-2022-38533 Out-of-bounds Write vulnerability in multiple products
In GNU Binutils before 2.40, there is a heap-buffer-overflow in the error function bfd_getl32 when called from the strip_main function in strip-new via a crafted file.
local
low complexity
gnu fedoraproject CWE-787
5.5
2022-08-25 CVE-2021-35937 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in multiple products
A race condition vulnerability was found in rpm.
local
high complexity
rpm redhat fedoraproject CWE-367
6.4
2022-08-25 CVE-2021-35938 Link Following vulnerability in multiple products
A symbolic link issue was found in rpm.
local
low complexity
rpm fedoraproject redhat CWE-59
6.7
2022-08-25 CVE-2021-3929 Use After Free vulnerability in multiple products
A DMA reentrancy issue was found in the NVM Express Controller (NVME) emulation in QEMU.
local
low complexity
qemu fedoraproject CWE-416
8.2
2022-08-25 CVE-2021-3979 Improper Authentication vulnerability in multiple products
A key length flaw was found in Red Hat Ceph Storage.
network
low complexity
redhat fedoraproject CWE-287
6.5
2022-08-25 CVE-2022-2980 NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0259.
local
low complexity
vim fedoraproject
5.5
2022-08-25 CVE-2022-2982 Use After Free in GitHub repository vim/vim prior to 9.0.0260.
local
low complexity
vim fedoraproject
7.8
2022-08-25 CVE-2022-22728 A flaw in Apache libapreq2 versions 2.16 and earlier could cause a buffer overflow while processing multipart form uploads.
network
low complexity
apache fedoraproject debian
7.5
2022-08-24 CVE-2022-32793 Out-of-bounds Write vulnerability in multiple products
Multiple out-of-bounds write issues were addressed with improved bounds checking.
network
low complexity
apple fedoraproject CWE-787
7.5
2022-08-24 CVE-2022-32893 Out-of-bounds Write vulnerability in multiple products
An out-of-bounds write issue was addressed with improved bounds checking.
8.8