fedoraproject
74 known vulnerabilities affecting fedoraproject products.
Products
Vulnerabilities by priority
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2024-27400 | Medium | 0.2% | 7.8 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu:… | |
| CVE-2024-35949 | Medium | 0.2% | 7.8 | In the Linux kernel, the following vulnerability has been resolved: btrfs: make… | |
| CVE-2024-27019 | Medium | 0.2% | 7.8 | In the Linux kernel, the following vulnerability has been resolved: netfilter: … | |
| CVE-2026-54230 | Medium | 0.2% | 7.0 | A symlink following vulnerability was found in the ABRT post-create event handle… | |
| CVE-2019-11045 | Low | 8.8% | 3.7 | In PHP versions 7.2.x below 7.2.26, 7.3.x below 7.3.13 and 7.4.0, PHP DirectoryI… | |
| CVE-2021-41183 | Low | 8.5% | 6.5 | jQuery-UI is the official jQuery user interface library. Prior to version 1.13.0… | |
| CVE-2019-11050 | Low | 7.6% | 4.8 | When PHP EXIF extension is parsing EXIF information from an image, e.g. via exif… | |
| CVE-2019-11044 | Low | 5.1% | 3.7 | In PHP versions 7.2.x below 7.2.26, 7.3.x below 7.3.13 and 7.4.0 on Windows, PHP… | |
| CVE-2020-9281 | Low | 4.3% | 6.1 | A cross-site scripting (XSS) vulnerability in the HTML Data Processor for CKEdit… | |
| CVE-2019-11049 | Low | 4.2% | 6.5 | In PHP versions 7.3.x below 7.3.13 and 7.4.0 on Windows, when supplying custom h… | |
| CVE-2019-11046 | Low | 4.1% | 3.7 | In PHP versions 7.2.x below 7.2.26, 7.3.x below 7.3.13 and 7.4.0, PHP bcmath ext… | |
| CVE-2022-2795 | Low | 2.2% | 5.3 | By flooding the target resolver with queries exploiting this flaw an attacker ca… | |
| CVE-2020-8619 | Low | 2.1% | 4.9 | In ISC BIND9 versions BIND 9.11.14 -> 9.11.19, BIND 9.14.9 -> 9.14.12, BIND 9.16… | |
| CVE-2023-48706 | Low | 0.5% | 3.6 | Vim is a UNIX editor that, prior to version 9.0.2121, has a heap-use-after-free … | |
| CVE-2023-1170 | Low | 0.5% | 6.6 | Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1376. | |
| CVE-2021-23133 | Low | 0.5% | 6.7 | A race condition in Linux kernel SCTP sockets (net/sctp/socket.c) before 5.12-rc… | |
| CVE-2023-1175 | Low | 0.4% | 6.6 | Incorrect Calculation of Buffer Size in GitHub repository vim/vim prior to 9.0.1… | |
| CVE-2024-0443 | Low | 0.2% | 5.5 | A flaw was found in the blkgs destruction path in block/blk-cgroup.c in the Linu… | |
| CVE-2026-54231 | Low | 0.2% | 5.5 | A content injection vulnerability was found in the ABRT post-create event handle… | |
| CVE-2026-6245 | Low | 0.1% | 5.5 | A flaw was found in the System Security Services Daemon (SSSD). The pam_passkey_… | |
| CVE-2026-12610 | Low | 0.1% | 6.4 | A flaw was found in sssd. When authenticating with a YubiKey, the SSSD PAM respo… | |
| CVE-2026-68744 | Low | 0.1% | 3.3 | A flaw was found in SSSD. The sss_nss_protocol_fill_initgr() function in the NSS… | |
| CVE-2026-68743 | Low | 0.1% | 5.5 | A flaw was found in SSSD. The extract_authtok_v1() function in the PAM responder… | |
| CVE-2026-68742 | Low | 0.1% | 5.5 | A flaw was found in SSSD. The sss_nss_protocol_parse_addr() function in the NSS … |
← Prev Page 2 of 2