Known vulnerabilities in Fedora 26

Software: Fedora
Version: 26
Software CPE: cpe:2.3:o:fedoraproject:fedora:*:*:*:*:*:*:*:*
Total vulnerabilities: 1092
Public exploits: 77
Known exploited (KEV): 15
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Fedora version 26 Fedora 26 is affected by 1092 vulnerabilities: 1 critical, 246 high, 175 medium, 670 low Critical High Medium Low

Vulnerabilities (1092)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU22938 - Memory corruption
CVE-2018-10689
CWE-119 Low
No
No
- 23.11.2019 SB2018050313
SB2019112305
SB2019080636
and 6 more
#VU14197 - Improper input validation
CVE-2018-11319
CWE-20 High
No
No
- 03.08.2018 SB2018041605
SB2018080612
SB2018052140
and 1 more
#VU13176 - Deserialization of Untrusted Data
CVE-2016-5003
CWE-502 High
No
No
- 04.06.2018 SB2016070803
SB2018053110
SB2018060506
and 7 more
#VU12911 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2018-3639
CWE-362 Low
No
No
- 22.05.2018 SB2018052201
SB2018052207
SB2018052208
and 142 more
#VU12892 - Uncontrolled Recursion
CVE-2017-18267
CWE-674 Low
No
No
- 21.05.2018 SB2018052206
SB2018120709
SB2020073040
and 10 more
#VU12886 - Uncontrolled Memory Allocation
CVE-2018-10237
CWE-789 Low
No
No
- 21.05.2018 SB2018052310
SB2018083005
SB2018092411
and 43 more
#VU12746 - Argument Injection or Modification
CVE-2017-18266
CWE-88 Low
No
No
- 16.05.2018 SB2018051606
SB2018052803
SB2018060804
and 3 more
#VU12743 - Command injection
CVE-2018-1111
CWE-77 Low
Public exploit available
No
- 16.05.2018 SB2018051602
SB2018051724
SB2018051726
and 12 more
#VU12652 - Improper Access Control
CVE-2018-1115
CWE-284 Medium
No
No
- 15.05.2018 SB2018051509
SB2018061712
SB2018070602
and 10 more
#VU12649 - Exposure of sensitive information to an unauthorized actor
CVE-2017-17689
CWE-200 Low
No
No
- 15.05.2018 SB2018051501
SB2018051502
SB2018051801
and 13 more
#VU12648 - Integer overflow
CVE-2018-10982
CWE-190 Low
No
No
- 15.05.2018 SB2018051508
SB2018051611
SB2018060409
and 5 more
#VU12647 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2018-10981
CWE-835 Low
No
No
- 15.05.2018 SB2018051508
SB2018051611
SB2018060409
and 5 more
#VU12646 - Exposure of sensitive information to an unauthorized actor
CVE-2017-17688
CWE-200 Low
No
No
- 14.05.2018 SB2018051501
SB2018051502
SB2018051801
and 10 more
#VU12586 - UNIX Symbolic Link (Symlink) Following
CVE-2018-10380
CWE-61 Low
No
No
- 11.05.2018 SB2018051121
SB2018051503
SB2018050324
and 2 more
#VU12525 - Out-of-bounds read
CVE-2018-10529
CWE-125 Low
No
No
- 10.05.2018 SB2018051007
SB2019013135
SB2018050314
and 7 more
#VU12450 - Improper Check or Handling of Exceptional Conditions
CVE-2018-8897
CWE-703 Low
Public exploit available
Exploited
- 08.05.2018 SB2018042501
SB2018050838
SB2018050839
and 31 more
#VU12432 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2018-0494
CWE-74 Low
Public exploit available
No
- 08.05.2018 SB2018050804
SB2018051102
SB2018051107
and 10 more
#VU12145 - Memory corruption
CVE-2018-4200
CWE-119 High
No
No
- 25.04.2018 SB2018042502
SB2018042520
SB2018051403
and 8 more
#VU11646 - Improper input validation
CVE-2018-1000156
CWE-20 High
No
No
- 07.04.2018 SB2018040701
SB2018042425
SB2018042426
and 20 more
#VU38006 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2016-5002
CWE-611 High
No
No
- 27.10.2017 SB2017102718
SB2023060129
SB2024012237
and 3 more


Showing elements 1 - 20 out of 1092