Vulnerabilities > Fedoraproject > Fedora > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-07-14 CVE-2023-38253 Out-of-bounds Read vulnerability in multiple products
An out-of-bounds read flaw was found in w3m, in the growbuf_to_Str function in indep.c.
local
low complexity
tats redhat fedoraproject CWE-125
5.5
2023-07-11 CVE-2023-1672 Race Condition vulnerability in multiple products
A race condition exists in the Tang server functionality for key generation and key rotation.
5.3
2023-07-10 CVE-2023-26590 Incorrect Comparison vulnerability in multiple products
A floating point exception vulnerability was found in sox, in the lsx_aiffstartwrite function at sox/src/aiff.c:622:58.
local
low complexity
sox-project redhat fedoraproject CWE-697
5.5
2023-07-10 CVE-2023-32627 Incorrect Comparison vulnerability in multiple products
A floating point exception vulnerability was found in sox, in the read_samples function at sox/src/voc.c:334:18.
local
low complexity
sox-project redhat fedoraproject CWE-697
5.5
2023-07-10 CVE-2023-1183 Path Traversal vulnerability in multiple products
A flaw was found in the Libreoffice package.
local
low complexity
libreoffice fedoraproject redhat CWE-22
5.5
2023-06-30 CVE-2023-1206 Resource Exhaustion vulnerability in multiple products
A hash collision flaw was found in the IPv6 connection lookup table in the Linux kernel’s IPv6 functionality when a user makes a new kind of SYN flood attack.
5.7
2023-06-27 CVE-2023-3431 Improper Access Control vulnerability in multiple products
Improper Access Control in GitHub repository plantuml/plantuml prior to 1.2023.9.
network
low complexity
plantuml fedoraproject CWE-284
5.3
2023-06-23 CVE-2023-3212 NULL Pointer Dereference vulnerability in multiple products
A NULL pointer dereference issue was found in the gfs2 file system in the Linux kernel.
4.4
2023-06-16 CVE-2023-34474 Out-of-bounds Write vulnerability in multiple products
A heap-based buffer overflow issue was discovered in ImageMagick's ReadTIM2ImageData() function in coders/tim2.c.
local
low complexity
imagemagick fedoraproject CWE-787
5.5
2023-06-16 CVE-2023-34475 Use After Free vulnerability in multiple products
A heap use after free issue was discovered in ImageMagick's ReplaceXmpValue() function in MagickCore/profile.c.
local
low complexity
imagemagick fedoraproject CWE-416
5.5