Vulnerabilities > Fedoraproject

DATE CVE VULNERABILITY TITLE RISK
2023-11-19 CVE-2023-5341 Use After Free vulnerability in multiple products
A heap use-after-free flaw was found in coders/bmp.c in ImageMagick.
local
low complexity
imagemagick fedoraproject CWE-416
5.5
2023-11-16 CVE-2023-48232 Improper Handling of Exceptional Conditions vulnerability in multiple products
Vim is an open source command line text editor.
network
low complexity
vim fedoraproject CWE-755
4.3
2023-11-16 CVE-2023-48233 Integer Overflow or Wraparound vulnerability in multiple products
Vim is an open source command line text editor.
network
low complexity
vim fedoraproject CWE-190
4.3
2023-11-16 CVE-2023-48234 Integer Overflow or Wraparound vulnerability in multiple products
Vim is an open source command line text editor.
network
low complexity
vim fedoraproject CWE-190
4.3
2023-11-16 CVE-2023-48235 Integer Overflow or Wraparound vulnerability in multiple products
Vim is an open source command line text editor.
network
low complexity
vim fedoraproject CWE-190
4.3
2023-11-16 CVE-2023-48236 Integer Overflow or Wraparound vulnerability in multiple products
Vim is an open source command line text editor.
network
low complexity
vim fedoraproject CWE-190
4.3
2023-11-16 CVE-2023-48237 Integer Overflow or Wraparound vulnerability in multiple products
Vim is an open source command line text editor.
network
low complexity
vim fedoraproject CWE-190
4.3
2023-11-14 CVE-2023-5528 A security issue was discovered in Kubernetes where a user that can create pods and persistent volumes on Windows nodes may be able to escalate to admin privileges on those nodes.
network
low complexity
kubernetes fedoraproject
8.8
2023-11-11 CVE-2023-46849 Divide By Zero vulnerability in multiple products
Using the --fragment option in certain configuration setups OpenVPN version 2.6.0 to 2.6.6 allows an attacker to trigger a divide by zero behaviour which could cause an application crash, leading to a denial of service.
network
low complexity
openvpn debian fedoraproject CWE-369
7.5
2023-11-11 CVE-2023-46850 Use After Free vulnerability in multiple products
Use after free in OpenVPN version 2.6.0 to 2.6.6 may lead to undefined behavoir, leaking memory buffers or remote execution when sending network buffers to a remote peer.
network
low complexity
openvpn debian fedoraproject CWE-416
critical
9.8