Known vulnerabilities in Fedora 25 - page 10

Software: Fedora
Version: 25
Software CPE: cpe:2.3:o:fedoraproject:fedora:*:*:*:*:*:*:*:*
Total vulnerabilities: 1035
Public exploits: 73
Known exploited (KEV): 10
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Fedora version 25 Fedora 25 is affected by 1035 vulnerabilities: 3 critical, 265 high, 271 medium, 496 low Critical High Medium Low

Vulnerabilities (1035)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU11216 - Heap-based Buffer Overflow
CVE-2017-6419
CWE-122 High
No
No
- 18.03.2018 SB2017081723
SB2018031804
SB2017081806
and 25 more
#VU11217 - Buffer over-read
CVE-2017-11423
CWE-126 Low
No
No
- 18.03.2018 SB2017081723
SB2018031804
SB2017081806
and 18 more
#VU8591 - Memory corruption
CVE-2017-5122
CWE-119 High
No
No
- 23.09.2017 SB2017092301
SB2017092401
SB2017092605
and 8 more
#VU8590 - Memory corruption
CVE-2017-5121
CWE-119 High
No
No
- 22.09.2017 SB2017092301
SB2017092401
SB2017092605
and 8 more
#VU8518 - Missing release of memory after effective lifetime
CVE-2017-12163
CWE-401 Low
No
No
- 20.09.2017 SB2017092003
SB2017092601
SB2017092120
and 11 more
#VU8517 - Cryptographic Issues
CVE-2017-12151
CWE-310 Low
No
No
- 20.09.2017 SB2017092003
SB2017092601
SB2017092120
and 8 more
#VU8516 - Cryptographic Issues
CVE-2017-12150
CWE-310 Low
No
No
- 20.09.2017 SB2017092003
SB2017092601
SB2017092120
and 11 more
#VU8504 - Use After Free
CVE-2017-9798
CWE-416 Low
Public exploit available
No
- 19.09.2017 SB2017092001
SB2017091801
SB2017092117
and 28 more
#VU38275 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2017-12156
CWE-79 Low
No
No
- 18.09.2017 SB2017091819
SB2017092027
SB2017092028
and 1 more
#VU38276 - Exposure of sensitive information to an unauthorized actor
CVE-2017-12157
CWE-200 Low
No
No
- 18.09.2017 SB2017071726
SB2017092027
SB2017092028
and 1 more
#VU8489 - Buffer overflow
CVE-2017-14497
CWE-120 Low
No
No
- 18.09.2017 SB2017091901
SB2017100311
SB2017092032
and 2 more
#VU8427 - Permissions, Privileges, and Access Controls
CVE-2017-14319
CWE-264 Low
No
No
- 14.09.2017 SB2017091402
SB2017092115
SB2017112911
and 8 more
#VU8426 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2017-14317
CWE-362 Low
No
No
- 14.09.2017 SB2017091402
SB2017092115
SB2017112911
and 8 more
#VU8425 - NULL Pointer Dereference
CVE-2017-14318
CWE-476 Low
No
No
- 14.09.2017 SB2017091402
SB2017092115
SB2017112911
and 7 more
#VU8424 - Out-of-bounds write
CVE-2017-14316
CWE-787 Low
No
No
- 14.09.2017 SB2017091402
SB2017092115
SB2017112911
and 8 more
#VU8136 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2017-5120
CWE-300 Low
No
No
- 07.09.2017 SB2017090506
SB2017090804
SB2017091309
and 10 more
#VU8135 - Exposure of sensitive information to an unauthorized actor
CVE-2017-5118
CWE-200 Low
No
No
- 07.09.2017 SB2017090506
SB2017090804
SB2017091309
and 13 more
#VU8134 - Exposure of sensitive information to an unauthorized actor
CVE-2017-5119
CWE-200 Low
No
No
- 07.09.2017 SB2017090506
SB2017090804
SB2017091309
and 10 more
#VU8133 - Exposure of sensitive information to an unauthorized actor
CVE-2017-5117
CWE-200 Low
No
No
- 07.09.2017 SB2017090506
SB2017090804
SB2017091309
and 13 more
#VU8129 - Type confusion
CVE-2017-5116
CWE-843 High
No
No
- 07.09.2017 SB2017090506
SB2017090804
SB2017091309
and 10 more


Showing elements 181 - 200 out of 1035