Known vulnerabilities in Fedora 34

Software: Fedora
Version: 34
Software CPE: cpe:2.3:o:fedoraproject:fedora:*:*:*:*:*:*:*:*
Total vulnerabilities: 1344
Public exploits: 89
Known exploited (KEV): 45
Highest CVSSv4 Score: 9.5

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Fedora version 34 Fedora 34 is affected by 1344 vulnerabilities: 25 critical, 411 high, 572 medium, 335 low Critical High Medium Low

Vulnerabilities (1344)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU69430 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-25648
CWE-78 High
No
No
- 18.11.2022 SB2022111844
SB2022111849
SB2022051926
and 4 more
#VU67498 - Heap-based Buffer Overflow
CVE-2022-1354
CWE-122 High
No
No
- 20.09.2022 SB2022090904
SB2022092028
SB2022103101
and 15 more
#VU67497 - Memory corruption
CVE-2022-1355
CWE-119 High
No
No
- 20.09.2022 SB2022090904
SB2022092028
SB2022103101
and 21 more
#VU64509 - Use After Free
CVE-2022-1898
CWE-416 Low
No
No
- 20.06.2022 SB2022062022
SB2022063027
SB2022080610
and 19 more
#VU64508 - Out-of-bounds read
CVE-2022-1927
CWE-125 Low
No
No
- 20.06.2022 SB2022062022
SB2022080332
SB2022080610
and 49 more
#VU64506 - Out-of-bounds write
CVE-2022-1897
CWE-787 Low
No
No
- 20.06.2022 SB2022062022
SB2022070807
SB2022080332
and 48 more
#VU64505 - Out-of-bounds read
CVE-2022-1851
CWE-125 Low
No
No
- 20.06.2022 SB2022062022
SB2022063027
SB2022080610
and 19 more
#VU64261 - NULL Pointer Dereference
CVE-2022-1789
CWE-476 Low
No
No
- 14.06.2022 SB2022061417
SB2022071353
SB2022071420
and 25 more
#VU64156 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2022-1729
CWE-362 Low
No
No
- 10.06.2022 SB2022061213
SB2022061417
SB2022061630
and 79 more
#VU63827 - Use After Free
CVE-2021-46669
CWE-416 Medium
No
No
- 31.05.2022 SB2022061533
SB2022061727
SB2022062431
and 27 more
#VU63826 -
CVE-2022-1622
Medium
No
No
- 31.05.2022 SB2022060633
SB2022102521
SB2022102814
and 16 more
#VU63824 -
CVE-2022-1623
Medium
No
No
- 31.05.2022 SB2022060633
SB2022103101
SB2023013015
and 7 more
#VU63747 - Improper Authorization
CVE-2022-26691
CWE-285 High
No
No
- 26.05.2022 SB2022052625
SB2022052626
SB2022053018
and 30 more
#VU63693 - Incorrect Default Permissions
CVE-2022-1348
CWE-276 Low
No
No
- 26.05.2022 SB2022052608
SB2022052621
SB2022071423
and 9 more
#VU63339 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-30596
CWE-79 Low
No
No
- 17.05.2022 SB2022051723
SB2022051861
SB2022051862
and 1 more
#VU63338 - Exposure of sensitive information to an unauthorized actor
CVE-2022-30597
CWE-200 Medium
No
No
- 17.05.2022 SB2022051723
SB2022051861
SB2022051862
and 1 more
#VU63337 - Exposure of sensitive information to an unauthorized actor
CVE-2022-30598
CWE-200 Medium
No
No
- 17.05.2022 SB2022051723
SB2022051861
SB2022051862
and 1 more
#VU63336 - Improper Restriction of Excessive Authentication Attempts
CVE-2022-30600
CWE-307 Medium
Public exploit available
No
- 17.05.2022 SB2022051723
SB2022051861
SB2022051862
and 1 more
#VU63335 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2022-30599
CWE-89 Medium
No
No
- 17.05.2022 SB2022051723
SB2022051861
SB2022051862
and 1 more
#VU63090 - Permissions, Privileges, and Access Controls
CVE-2022-29162
CWE-264 Medium
No
No
- 12.05.2022 SB2022051205
SB2022062435
SB2022071158
and 32 more


Showing elements 1 - 20 out of 1344