VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
> Fedoraproject
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2022-11-11
CVE-2022-41854
Out-of-bounds Write vulnerability in multiple products
Those using Snakeyaml to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS).
network
low complexity
snakeyaml-project
fedoraproject
CWE-787
6.5
6.5
2022-11-10
CVE-2022-45063
Command Injection vulnerability in multiple products
xterm before 375 allows code execution via font ops, e.g., because an OSC 50 response may have Ctrl-g and therefore lead to command execution within the vi line-editing mode of Zsh.
network
low complexity
invisible-island
fedoraproject
CWE-77
critical
9.8
9.8
2022-11-09
CVE-2022-23824
IBPB may not prevent return branch predictions from being specified by pre-IBPB branch targets leading to a potential information disclosure.
local
low complexity
xen
amd
fedoraproject
5.5
5.5
2022-11-09
CVE-2022-45061
Algorithmic Complexity vulnerability in multiple products
An issue was discovered in Python before 3.11.1.
network
low complexity
python
fedoraproject
netapp
CWE-407
7.5
7.5
2022-11-09
CVE-2022-45062
Argument Injection or Modification vulnerability in multiple products
In Xfce xfce4-settings before 4.16.4 and 4.17.x before 4.17.1, there is an argument injection vulnerability in xfce4-mime-helper.
network
low complexity
xfce
debian
fedoraproject
CWE-88
critical
9.8
9.8
2022-11-09
CVE-2022-45059
HTTP Request Smuggling vulnerability in multiple products
An issue was discovered in Varnish Cache 7.x before 7.1.2 and 7.2.x before 7.2.1.
network
low complexity
varnish-cache-project
fedoraproject
CWE-444
7.5
7.5
2022-11-09
CVE-2022-45060
An HTTP Request Forgery issue was discovered in Varnish Cache 5.x and 6.x before 6.0.11, 7.x before 7.1.2, and 7.2.x before 7.2.1.
network
low complexity
varnish-software
varnish-cache-project
fedoraproject
debian
7.5
7.5
2022-11-08
CVE-2022-3821
An off-by-one Error issue was discovered in Systemd in format_timespan() function of time-util.c.
local
low complexity
systemd-project
redhat
fedoraproject
5.5
5.5
2022-11-08
CVE-2022-39377
sysstat is a set of system performance tools for the Linux operating system.
local
low complexity
sysstat-project
debian
fedoraproject
7.8
7.8
2022-11-07
CVE-2022-42920
Apache Commons BCEL has a number of APIs that would normally only allow changing specific class characteristics.
network
low complexity
apache
fedoraproject
critical
9.8
9.8
«
Previous
1
2
...
67
68
69
(current)
70
71
...
456
457
»
Next