Vulnerabilities > Fedoraproject > Fedora > High

DATE CVE VULNERABILITY TITLE RISK
2021-09-07 CVE-2021-39253 Out-of-bounds Read vulnerability in multiple products
A crafted NTFS image can cause an out-of-bounds read in ntfs_runlists_merge_i in NTFS-3G < 2021.8.22.
local
low complexity
tuxera debian fedoraproject CWE-125
7.8
2021-09-07 CVE-2021-39254 Integer Overflow or Wraparound vulnerability in multiple products
A crafted NTFS image can cause an integer overflow in memmove, leading to a heap-based buffer overflow in the function ntfs_attr_record_resize, in NTFS-3G < 2021.8.22.
local
low complexity
tuxera debian fedoraproject CWE-190
7.8
2021-09-07 CVE-2021-33285 Out-of-bounds Write vulnerability in multiple products
In NTFS-3G versions < 2021.8.22, when a specially crafted NTFS attribute is supplied to the function ntfs_get_attribute_value, a heap buffer overflow can occur allowing for memory disclosure or denial of service.
local
low complexity
tuxera redhat fedoraproject debian CWE-787
7.8
2021-09-07 CVE-2021-33289 Out-of-bounds Write vulnerability in multiple products
In NTFS-3G versions < 2021.8.22, when a specially crafted MFT section is supplied in an NTFS image a heap buffer overflow can occur and allow for code execution.
local
low complexity
tuxera debian fedoraproject CWE-787
7.8
2021-09-07 CVE-2021-35268 Out-of-bounds Write vulnerability in multiple products
In NTFS-3G versions < 2021.8.22, when a specially crafted NTFS inode is loaded in the function ntfs_inode_real_open, a heap buffer overflow can occur allowing for code execution and escalation of privileges.
local
low complexity
tuxera debian fedoraproject CWE-787
7.8
2021-09-07 CVE-2021-35269 Out-of-bounds Write vulnerability in multiple products
NTFS-3G versions < 2021.8.22, when a specially crafted NTFS attribute from the MFT is setup in the function ntfs_attr_setup_flag, a heap buffer overflow can occur allowing for code execution and escalation of privileges.
local
low complexity
tuxera debian fedoraproject CWE-787
7.8
2021-09-06 CVE-2021-3770 Heap-based Buffer Overflow vulnerability in multiple products
vim is vulnerable to Heap-based Buffer Overflow
local
low complexity
vim fedoraproject netapp CWE-122
7.8
2021-09-03 CVE-2021-30606 Use After Free vulnerability in multiple products
Chromium: CVE-2021-30606 Use after free in Blink
network
low complexity
microsoft fedoraproject CWE-416
8.8
2021-09-03 CVE-2021-30607 Use After Free vulnerability in multiple products
Chromium: CVE-2021-30607 Use after free in Permissions
network
low complexity
fedoraproject microsoft CWE-416
8.8
2021-09-03 CVE-2021-30608 Use After Free vulnerability in multiple products
Chromium: CVE-2021-30608 Use after free in Web Share
network
low complexity
fedoraproject microsoft CWE-416
8.8