Known vulnerabilities in Fedora 24 - page 7

Software: Fedora
Version: 24
Software CPE: cpe:2.3:o:fedoraproject:fedora:*:*:*:*:*:*:*:*
Total vulnerabilities: 734
Public exploits: 64
Known exploited (KEV): 7
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Fedora version 24 Fedora 24 is affected by 734 vulnerabilities: 5 critical, 178 high, 245 medium, 306 low Critical High Medium Low

Vulnerabilities (734)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU12318 - Memory corruption
CVE-2017-9432
CWE-119 High
No
No
- 01.05.2018 SB2017040704
SB2017060664
SB2017060665
and 2 more
#VU8989 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2017-6508
CWE-113 Low
No
No
- 30.10.2017 SB2017103010
SB2017083115
SB2017062020
and 4 more
#VU7488 - NULL Pointer Dereference
CVE-2017-7511
CWE-476 Low
No
No
- 12.07.2017 SB2017070707
SB2018011705
SB2023122128
and 6 more
#VU7486 - NULL Pointer Dereference
CVE-2017-9083
CWE-476 Low
No
No
- 12.07.2017 SB2017070707
SB2018011705
SB2017053034
and 2 more
#VU7346 - Out-of-bounds write
CVE-2017-9226
CWE-787 High
No
No
- 06.07.2017 SB2017070604
SB2017071001
SB2017081719
and 14 more
#VU7345 - Out-of-bounds read
CVE-2017-9224
CWE-125 Low
No
No
- 06.07.2017 SB2017070604
SB2017071001
SB2017081719
and 15 more
#VU38872 - NULL Pointer Dereference
CVE-2016-5391
CWE-476 Medium
No
No
- 13.06.2017 SB2017061385
SB2016072909
SB2016072910
#VU38882 - Exposure of sensitive information to an unauthorized actor
CVE-2016-3095
CWE-200 Low
No
No
- 08.06.2017 SB2017060821
SB2016040607
#VU6970 - Permissions, Privileges, and Access Controls
CVE-2017-5085
CWE-264 Low
No
No
- 07.06.2017 SB2017060703
SB2017060812
SB2017060706
and 7 more
#VU6950 - Improper input validation
CVE-2017-5664
CWE-20 Low
No
No
- 06.06.2017 SB2017051109
SB2017060618
SB2017060619
and 23 more
#VU6899 - Stack-based buffer overflow
CVE-2017-9432
CWE-121 High
No
No
- 05.06.2017 SB2017060502
SB2017060664
SB2017060665
and 2 more
#VU6900 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2017-6512
CWE-362 Low
No
No
- 05.06.2017 SB2017060503
SB2017060504
SB2017091703
and 8 more
#VU6882 - Buffer overflow
CVE-2017-8361
CWE-120 Low
No
No
- 02.06.2017 SB2017060218
SB2018120303
SB2017070521
and 3 more
#VU6883 - Out-of-bounds read
CVE-2017-8362
CWE-125 Low
No
No
- 02.06.2017 SB2017060218
SB2018120303
SB2017070522
and 3 more
#VU6884 - Heap-based Buffer Overflow
CVE-2017-8363
CWE-122 Low
No
No
- 02.06.2017 SB2017060218
SB2018120303
SB2017070523
and 3 more
#VU6885 - Buffer over-read
CVE-2017-8365
CWE-126 Low
No
No
- 02.06.2017 SB2017060218
SB2018120303
SB2017070524
and 3 more
#VU6846 - Command injection
CVE-2017-1000367
CWE-77 Low
Public exploit available
No
- 31.05.2017 SB2017053106
SB2017053107
SB2017053109
and 23 more
#VU6840 - Improper input validation
CVE-2017-7650
CWE-20 Low
No
No
- 30.05.2017 SB2017053008
SB2017053104
SB2017060121
and 4 more
#VU6640 - Improper Control of Generation of Code ('Code Injection')
CVE-2017-7481
CWE-94 Medium
No
No
- 23.05.2017 SB2017052310
SB2017052601
SB2019022302
and 9 more
#VU39096 - Heap-based Buffer Overflow
CVE-2017-8366
CWE-122 High
No
No
- 30.04.2017 SB2017043002
SB2017060510
SB2017060511
and 1 more


Showing elements 121 - 140 out of 734