VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Fedoraproject
>
Fedora
> High
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2023-09-27
CVE-2023-41074
The issue was addressed with improved checks.
network
low complexity
apple
debian
fedoraproject
8.8
8.8
2023-09-27
CVE-2023-5157
A vulnerability was found in MariaDB.
network
low complexity
mariadb
fedoraproject
redhat
7.5
7.5
2023-09-27
CVE-2023-35074
The issue was addressed with improved memory handling.
network
low complexity
apple
fedoraproject
8.8
8.8
2023-09-25
CVE-2022-4318
Improper Control of Dynamically-Managed Code Resources vulnerability in multiple products
A vulnerability was found in cri-o.
local
low complexity
kubernetes
redhat
fedoraproject
CWE-913
7.8
7.8
2023-09-25
CVE-2023-4156
Out-of-bounds Read vulnerability in multiple products
A heap out-of-bounds read flaw was found in builtin.c in the gawk package.
local
low complexity
gnu
redhat
fedoraproject
CWE-125
7.1
7.1
2023-09-22
CVE-2023-5002
A flaw was found in pgAdmin.
network
low complexity
pgadmin
fedoraproject
8.8
8.8
2023-09-21
CVE-2023-4504
Out-of-bounds Write vulnerability in multiple products
Due to failure in validating the length provided by an attacker-crafted PPD PostScript document, CUPS and libppd are susceptible to a heap-based buffer overflow and possibly code execution.
local
high complexity
openprinting
fedoraproject
debian
CWE-787
7.0
7.0
2023-09-21
CVE-2023-41993
Improper Check for Unusual or Exceptional Conditions vulnerability in multiple products
The issue was addressed with improved checks.
network
low complexity
apple
fedoraproject
debian
oracle
netapp
webkitgtk
CWE-754
8.8
8.8
2023-09-21
CVE-2023-43669
The Tungstenite crate before 0.20.1 for Rust allows remote attackers to cause a denial of service (minutes of CPU consumption) via an excessive length of an HTTP header in a client handshake.
network
low complexity
snapview
fedoraproject
7.5
7.5
2023-09-18
CVE-2023-43115
In Artifex Ghostscript through 10.01.2, gdevijs.c in GhostPDL can lead to remote code execution via crafted PostScript documents because they can switch to the IJS device, or change the IjsServer parameter, after SAFER has been activated.
network
low complexity
artifex
fedoraproject
8.8
8.8
«
Previous
1
2
...
16
17
18
(current)
19
20
...
218
219
»
Next