Known vulnerabilities in Fedora 26 - page 2

Software: Fedora
Version: 26
Software CPE: cpe:2.3:o:fedoraproject:fedora:*:*:*:*:*:*:*:*
Total vulnerabilities: 1092
Public exploits: 77
Known exploited (KEV): 15
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Fedora version 26 Fedora 26 is affected by 1092 vulnerabilities: 1 critical, 246 high, 175 medium, 670 low Critical High Medium Low

Vulnerabilities (1092)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU12542 - Out-of-bounds write
CVE-2018-10471
CWE-787 High
No
No
- 10.05.2018 SB2018051009
SB2018051010
SB2018051011
and 10 more
#VU12526 - Stack-based buffer overflow
CVE-2018-10528
CWE-121 Low
No
No
- 10.05.2018 SB2018051007
SB2019013134
SB2018050314
and 7 more
#VU12543 - Exposure of sensitive information to an unauthorized actor
CVE-2018-10472
CWE-200 Low
No
No
- 09.05.2018 SB2018051009
SB2018051010
SB2018051011
and 10 more
#VU12327 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2018-10547
CWE-79 Low
No
No
- 01.05.2018 SB2018042612
SB2018050902
SB2018051104
and 12 more
#VU12288 -
CVE-2018-10471
Low
No
No
- 30.04.2018 SB2018043006
SB2018042543
SB2018042544
and 1 more
#VU12287 - Exposure of sensitive information to an unauthorized actor
CVE-2018-10472
CWE-200 Low
No
No
- 28.04.2018 SB2018043006
SB2018042543
SB2018042544
and 1 more
#VU12258 - Memory corruption
CVE-2018-10549
CWE-119 Low
No
No
- 26.04.2018 SB2018042612
SB2018051111
SB2018051702
and 8 more
#VU12257 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2018-10546
CWE-835 Low
No
No
- 26.04.2018 SB2018042612
SB2018050902
SB2018051104
and 11 more
#VU12256 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2018-10548
CWE-300 Low
No
No
- 26.04.2018 SB2018042612
SB2018050902
SB2018051104
and 12 more
#VU12182 - Improper Control of Generation of Code ('Code Injection')
CVE-2018-7602
CWE-94 High
Public exploit available
Exploited
- 25.04.2018 SB2018042521
SB2018042605
SB2018042713
and 9 more
#VU12179 - Improper Initialization
CVE-2018-1108
CWE-665 Medium
No
No
- 25.04.2018 SB2018042519
SB2018050203
SB2018051002
and 4 more
#VU12150 - UNIX Symbolic Link (Symlink) Following
CVE-2018-1088
CWE-61 Low
Public exploit available
No
- 25.04.2018 SB2018042512
SB2018051726
SB2018043008
and 6 more
#VU12120 - Heap-based Buffer Overflow
CVE-2018-10120
CWE-122 Low
No
No
- 24.04.2018 SB2018042108
SB2018051708
SB2018103021
and 1 more
#VU12119 - Use After Free
CVE-2018-10119
CWE-416 Low
No
No
- 24.04.2018 SB2018042108
SB2018051708
SB2018103021
and 1 more
#VU12107 - Memory corruption
CVE-2018-10194
CWE-119 High
No
No
- 20.04.2018 SB2018042312
SB2018052107
SB2018070904
and 4 more
#VU12012 - Permissions, Privileges, and Access Controls
CVE-2018-2761
CWE-264 Low
No
No
- 20.04.2018 SB2018042004
SB2018042006
SB2018042607
and 15 more
#VU12011 - Permissions, Privileges, and Access Controls
CVE-2018-2759
CWE-264 Low
No
No
- 20.04.2018 SB2018042004
SB2018052509
SB2018060805
and 7 more
#VU12010 - Permissions, Privileges, and Access Controls
CVE-2018-2758
CWE-264 Low
No
No
- 20.04.2018 SB2018042004
SB2018042607
SB2018052508
and 5 more
#VU12009 - Permissions, Privileges, and Access Controls
CVE-2018-2755
CWE-264 Low
No
No
- 20.04.2018 SB2018042004
SB2018042006
SB2018042607
and 15 more
#VU10389 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2018-5712
CWE-79 Low
No
No
- 06.02.2018 SB2018020401
SB2018020703
SB2018020902
and 14 more


Showing elements 21 - 40 out of 1092