Vulnerabilities > Fedoraproject

DATE CVE VULNERABILITY TITLE RISK
2020-06-25 CVE-2020-10379 Classic Buffer Overflow vulnerability in multiple products
In Pillow before 7.1.0, there are two Buffer Overflows in libImaging/TiffDecode.c.
local
low complexity
python fedoraproject canonical CWE-120
7.8
2020-06-25 CVE-2020-10378 Out-of-bounds Read vulnerability in multiple products
In libImaging/PcxDecode.c in Pillow before 7.1.0, an out-of-bounds read can occur when reading PCX files where state->shuffle is instructed to read beyond state->buffer.
local
low complexity
python fedoraproject canonical CWE-125
5.5
2020-06-25 CVE-2020-10177 Out-of-bounds Read vulnerability in multiple products
Pillow before 7.1.0 has multiple out-of-bounds reads in libImaging/FliDecode.c.
5.5
2020-06-24 CVE-2020-15005 In MediaWiki before 1.31.8, 1.32.x and 1.33.x before 1.33.4, and 1.34.x before 1.34.2, private wikis behind a caching server using the img_auth.php image authorization security feature may have had their files cached publicly, so any unauthorized user could view them.
network
high complexity
mediawiki fedoraproject debian
3.1
2020-06-22 CVE-2020-4033 Out-of-bounds Read vulnerability in multiple products
In FreeRDP before version 2.1.2, there is an out of bounds read in RLEDECOMPRESS.
6.5
2020-06-22 CVE-2020-4032 Incorrect Conversion between Numeric Types vulnerability in multiple products
In FreeRDP before version 2.1.2, there is an integer casting vulnerability in update_recv_secondary_order.
4.3
2020-06-22 CVE-2020-4031 Use After Free vulnerability in multiple products
In FreeRDP before version 2.1.2, there is a use-after-free in gdi_SelectObject.
7.5
2020-06-22 CVE-2020-4030 Out-of-bounds Read vulnerability in multiple products
In FreeRDP before version 2.1.2, there is an out of bounds read in TrioParse.
6.5
2020-06-22 CVE-2020-11099 Out-of-bounds Read vulnerability in multiple products
In FreeRDP before version 2.1.2, there is an out of bounds read in license_read_new_or_upgrade_license_packet.
6.5
2020-06-22 CVE-2020-11098 Out-of-bounds Read vulnerability in multiple products
In FreeRDP before version 2.1.2, there is an out-of-bound read in glyph_cache_put.
6.5