Vulnerabilities > Fedoraproject > Fedora > High

DATE CVE VULNERABILITY TITLE RISK
2022-08-15 CVE-2022-2817 Use After Free vulnerability in multiple products
Use After Free in GitHub repository vim/vim prior to 9.0.0213.
local
low complexity
vim fedoraproject CWE-416
7.8
2022-08-15 CVE-2022-2816 Out-of-bounds Read vulnerability in multiple products
Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.0212.
local
low complexity
vim fedoraproject CWE-125
7.8
2022-08-15 CVE-2022-2819 Heap-based Buffer Overflow vulnerability in multiple products
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0211.
local
low complexity
vim fedoraproject CWE-122
7.8
2022-08-15 CVE-2022-38223 Out-of-bounds Write vulnerability in multiple products
There is an out-of-bounds write in checkType located in etc.c in w3m 0.5.3.
local
low complexity
tats fedoraproject CWE-787
7.8
2022-08-12 CVE-2022-2603 Use After Free vulnerability in multiple products
Use after free in Omnibox in Google Chrome prior to 104.0.5112.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject CWE-416
8.8
2022-08-12 CVE-2022-2604 Use After Free vulnerability in multiple products
Use after free in Safe Browsing in Google Chrome prior to 104.0.5112.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject CWE-416
8.8
2022-08-12 CVE-2022-2606 Use After Free vulnerability in multiple products
Use after free in Managed devices API in Google Chrome prior to 104.0.5112.79 allowed a remote attacker who convinced a user to enable a specific Enterprise policy to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject CWE-416
8.8
2022-08-12 CVE-2022-2607 Race Condition vulnerability in multiple products
Use after free in Tab Strip in Google Chrome on Chrome OS prior to 104.0.5112.79 allowed a remote attacker who convinced a user to engage in specific user interactions to potentially exploit heap corruption via specific UI interactions.
network
low complexity
google fedoraproject CWE-362
8.8
2022-08-12 CVE-2022-2608 Race Condition vulnerability in multiple products
Use after free in Overview Mode in Google Chrome on Chrome OS prior to 104.0.5112.79 allowed a remote attacker who convinced a user to engage in specific user interactions to potentially exploit heap corruption via specific UI interactions.
network
low complexity
google fedoraproject CWE-362
8.8
2022-08-12 CVE-2022-2609 Race Condition vulnerability in multiple products
Use after free in Nearby Share in Google Chrome on Chrome OS prior to 104.0.5112.79 allowed a remote attacker who convinced a user to engage in specific user interactions to potentially exploit heap corruption via specific UI interactions.
network
low complexity
google fedoraproject CWE-362
8.8