Vulnerabilities > Fedoraproject > Low
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-02-12 | CVE-2024-1454 | Use After Free vulnerability in multiple products The use-after-free vulnerability was found in the AuthentIC driver in OpenSC packages, occuring in the card enrolment process using pkcs15-init when a user or administrator enrols or modifies cards. | 3.4 |
2024-02-06 | CVE-2024-1048 | Incomplete Cleanup vulnerability in multiple products A flaw was found in the grub2-set-bootflag utility of grub2. | 3.3 |
2024-01-03 | CVE-2024-0217 | Use After Free vulnerability in multiple products A use-after-free flaw was found in PackageKitd. | 3.3 |
2023-11-09 | CVE-2023-5543 | When duplicating a BigBlueButton activity, the original meeting ID was also duplicated instead of using a new ID for the new activity. | 3.3 |
2023-11-09 | CVE-2023-5551 | Separate Groups mode restrictions were not honoured in the forum summary report, which would display users from other groups. | 3.3 |
2023-11-06 | CVE-2023-4535 | Out-of-bounds Read vulnerability in multiple products An out-of-bounds read vulnerability was found in OpenSC packages within the MyEID driver when handling symmetric key encryption. | 3.8 |
2023-10-30 | CVE-2023-5349 | Memory Leak vulnerability in multiple products A memory leak flaw was found in ruby-magick, an interface between Ruby and ImageMagick. | 3.3 |
2023-10-18 | CVE-2023-45145 | Exposure of Resource to Wrong Sphere vulnerability in multiple products Redis is an in-memory database that persists on disk. | 3.6 |
2023-10-12 | CVE-2023-45143 | Information Exposure vulnerability in multiple products Undici is an HTTP/1.1 client written from scratch for Node.js. | 3.5 |
2023-09-27 | CVE-2023-41335 | Cleartext Storage of Sensitive Information vulnerability in multiple products Synapse is an open-source Matrix homeserver written and maintained by the Matrix.org Foundation. | 3.7 |