Vulnerabilities > Fedoraproject > Fedora > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-11-28 CVE-2023-5981 Information Exposure Through Discrepancy vulnerability in multiple products
A vulnerability was found that the response times to malformed ciphertexts in RSA-PSK ClientKeyExchange differ from response times of ciphertexts with correct PKCS#1 v1.5 padding.
network
high complexity
gnu redhat fedoraproject CWE-203
5.9
2023-11-24 CVE-2023-6277 Resource Exhaustion vulnerability in multiple products
An out-of-memory flaw was found in libtiff.
network
low complexity
libtiff fedoraproject CWE-400
6.5
2023-11-21 CVE-2023-6238 Classic Buffer Overflow vulnerability in multiple products
A buffer overflow vulnerability was found in the NVM Express (NVMe) driver in the Linux kernel.
local
low complexity
linux fedoraproject CWE-120
6.7
2023-11-19 CVE-2023-5341 Use After Free vulnerability in multiple products
A heap use-after-free flaw was found in coders/bmp.c in ImageMagick.
local
low complexity
imagemagick fedoraproject CWE-416
5.5
2023-11-16 CVE-2023-48231 Use After Free vulnerability in multiple products
Vim is an open source command line text editor.
network
low complexity
vim fedoraproject CWE-416
4.3
2023-11-16 CVE-2023-48232 Improper Handling of Exceptional Conditions vulnerability in multiple products
Vim is an open source command line text editor.
network
low complexity
vim fedoraproject CWE-755
4.3
2023-11-16 CVE-2023-48233 Integer Overflow or Wraparound vulnerability in multiple products
Vim is an open source command line text editor.
network
low complexity
vim fedoraproject CWE-190
4.3
2023-11-16 CVE-2023-48234 Integer Overflow or Wraparound vulnerability in multiple products
Vim is an open source command line text editor.
network
low complexity
vim fedoraproject CWE-190
4.3
2023-11-16 CVE-2023-48235 Integer Overflow or Wraparound vulnerability in multiple products
Vim is an open source command line text editor.
network
low complexity
vim fedoraproject CWE-190
4.3
2023-11-16 CVE-2023-48236 Integer Overflow or Wraparound vulnerability in multiple products
Vim is an open source command line text editor.
network
low complexity
vim fedoraproject CWE-190
4.3