Vulnerabilities > Fedoraproject > High

DATE CVE VULNERABILITY TITLE RISK
2021-09-03 CVE-2021-30614 Out-of-bounds Write vulnerability in multiple products
Chromium: CVE-2021-30614 Heap buffer overflow in TabStrip
network
low complexity
fedoraproject microsoft CWE-787
8.8
2021-09-03 CVE-2021-30616 Use After Free vulnerability in multiple products
Chromium: CVE-2021-30616 Use after free in Media
network
low complexity
fedoraproject microsoft CWE-416
8.8
2021-09-03 CVE-2021-30618 Chromium: CVE-2021-30618 Inappropriate implementation in DevTools
network
low complexity
fedoraproject microsoft
8.8
2021-09-03 CVE-2021-30620 Chromium: CVE-2021-30620 Insufficient policy enforcement in Blink
network
low complexity
fedoraproject microsoft
8.8
2021-09-03 CVE-2021-30622 Use After Free vulnerability in multiple products
Chromium: CVE-2021-30622 Use after free in WebApp Installs
network
low complexity
fedoraproject microsoft CWE-416
8.8
2021-09-03 CVE-2021-30623 Use After Free vulnerability in multiple products
Chromium: CVE-2021-30623 Use after free in Bookmarks
network
low complexity
fedoraproject microsoft CWE-416
8.8
2021-09-03 CVE-2021-30624 Use After Free vulnerability in multiple products
Chromium: CVE-2021-30624 Use after free in Autofill
network
low complexity
fedoraproject microsoft CWE-416
8.8
2021-09-03 CVE-2021-23437 Out-of-bounds Read vulnerability in multiple products
The package pillow 5.2.0 and before 8.3.2 are vulnerable to Regular Expression Denial of Service (ReDoS) via the getrgb function.
network
low complexity
python fedoraproject CWE-125
7.5
2021-09-03 CVE-2021-40490 Race Condition vulnerability in multiple products
A race condition was discovered in ext4_write_inline_data_end in fs/ext4/inline.c in the ext4 subsystem in the Linux kernel through 5.13.13.
local
high complexity
linux fedoraproject debian netapp CWE-362
7.0
2021-09-01 CVE-2021-33582 Algorithmic Complexity vulnerability in multiple products
Cyrus IMAP before 3.4.2 allows remote attackers to cause a denial of service (multiple-minute daemon hang) via input that is mishandled during hash-table interaction.
network
low complexity
cyrus fedoraproject debian CWE-407
7.5