VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Fedoraproject
> Medium
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2022-02-03
CVE-2022-22818
Cross-site Scripting vulnerability in multiple products
The {% debug %} template tag in Django 2.2 before 2.2.27, 3.2 before 3.2.12, and 4.0 before 4.0.2 does not properly encode the current context.
network
low complexity
djangoproject
fedoraproject
debian
CWE-79
6.1
6.1
2022-02-01
CVE-2022-0419
NULL Pointer Dereference vulnerability in multiple products
NULL Pointer Dereference in GitHub repository radareorg/radare2 prior to 5.6.0.
local
low complexity
radare
fedoraproject
CWE-476
5.5
5.5
2022-02-01
CVE-2021-46661
MariaDB through 10.5.9 allows an application crash in find_field_in_tables and find_order_in_list via an unused common table expression (CTE).
local
low complexity
mariadb
fedoraproject
5.5
5.5
2022-02-01
CVE-2021-46663
MariaDB through 10.5.13 allows a ha_maria::extra application crash via certain SELECT statements.
local
low complexity
mariadb
fedoraproject
5.5
5.5
2022-02-01
CVE-2021-46664
NULL Pointer Dereference vulnerability in multiple products
MariaDB through 10.5.9 allows an application crash in sub_select_postjoin_aggr for a NULL value of aggr.
local
low complexity
mariadb
fedoraproject
CWE-476
5.5
5.5
2022-02-01
CVE-2021-46665
MariaDB through 10.5.9 allows a sql_parse.cc application crash because of incorrect used_tables expectations.
local
low complexity
mariadb
fedoraproject
5.5
5.5
2022-02-01
CVE-2021-46667
Integer Overflow or Wraparound vulnerability in multiple products
MariaDB before 10.6.5 has a sql_lex.cc integer overflow, leading to an application crash.
local
low complexity
mariadb
fedoraproject
CWE-190
5.5
5.5
2022-02-01
CVE-2021-46668
Resource Exhaustion vulnerability in multiple products
MariaDB through 10.5.9 allows an application crash via certain long SELECT DISTINCT statements that improperly interact with storage-engine resource limitations for temporary data structures.
local
low complexity
mariadb
fedoraproject
CWE-400
5.5
5.5
2022-01-31
CVE-2022-24130
Classic Buffer Overflow vulnerability in multiple products
xterm through Patch 370, when Sixel support is enabled, allows attackers to trigger a buffer overflow in set_sixel in graphics_sixel.c via crafted text.
local
low complexity
invisible-island
debian
fedoraproject
CWE-120
5.5
5.5
2022-01-29
CVE-2021-46659
MariaDB before 10.7.2 allows an application crash because it does not recognize that SELECT_LEX::nest_level is local to each VIEW.
local
low complexity
mariadb
fedoraproject
5.5
5.5
«
Previous
1
2
...
62
63
64
(current)
65
66
...
186
187
»
Next