Known vulnerabilities in Fedora 34 - page 19

Software: Fedora
Version: 34
Software CPE: cpe:2.3:o:fedoraproject:fedora:*:*:*:*:*:*:*:*
Total vulnerabilities: 1344
Public exploits: 89
Known exploited (KEV): 45
Highest CVSSv4 Score: 9.5

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Fedora version 34 Fedora 34 is affected by 1344 vulnerabilities: 25 critical, 411 high, 572 medium, 335 low Critical High Medium Low

Vulnerabilities (1344)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU64273 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-43813
CWE-22 Low
No
No
- 14.06.2022 SB2022061422
SB2022062026
SB2022081215
and 16 more
#VU63920 - Exposure of sensitive information to an unauthorized actor
CVE-2021-3773
CWE-200 Medium
Public exploit available
No
- 02.06.2022 SB2022062928
SB2022062931
SB2022070643
and 7 more
#VU60815 - Improper Access Control
CVE-2022-23134
CWE-284 Medium
No
Exploited
- 23.02.2022 SB2022022308
SB2022011425
SB2022011426
and 3 more
#VU60814 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-23133
CWE-79 Low
No
No
- 23.02.2022 SB2022022306
SB2022011425
SB2022011426
and 3 more
#VU60812 - Permissions, Privileges, and Access Controls
CVE-2022-23132
CWE-264 Low
No
No
- 23.02.2022 SB2022022306
SB2022011425
SB2022011426
and 3 more
#VU59950 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-23220
CWE-94 Low
No
No
- 24.01.2022 SB2022012405
SB2022012437
SB2022012118
and 3 more
#VU59898 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2022-21658
CWE-362 High
Public exploit available
No
- 21.01.2022 SB2022012101
SB2022051149
SB2022031433
and 17 more
#VU59695 - Integer overflow
CVE-2022-0185
CWE-190 Low
Public exploit available
Exploited
- 18.01.2022 SB2022011820
SB2022011932
SB2022011937
and 33 more
#VU59689 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-21682
CWE-22 Medium
No
No
- 18.01.2022 SB2022011811
SB2022012525
SB2022110837
and 8 more
#VU59655 - Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')
CVE-2022-0217
CWE-776 Medium
Public exploit available
No
- 17.01.2022 SB2022011716
SB2022011728
SB2022011420
and 4 more
#VU59654 - Permissions, Privileges, and Access Controls
CVE-2021-43860
CWE-264 Medium
No
No
- 17.01.2022 SB2022011715
SB2022012525
SB2022051141
and 8 more
#VU58891 - Type confusion
CVE-2021-30954
CWE-843 High
No
No
- 14.12.2021 SB2021121429
SB2021121432
SB2021121433
and 15 more
#VU58890 - Out-of-bounds read
CVE-2021-30953
CWE-125 High
No
No
- 14.12.2021 SB2021121429
SB2021121432
SB2021121433
and 15 more
#VU58889 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2021-30984
CWE-362 High
No
No
- 14.12.2021 SB2021121429
SB2021121432
SB2021121433
and 15 more
#VU58888 - Integer overflow
CVE-2021-30952
CWE-190 High
No
Exploited
- 14.12.2021 SB2021121429
SB2021121432
SB2021121433
and 15 more
#VU58887 - Use After Free
CVE-2021-30951
CWE-416 High
No
No
- 14.12.2021 SB2021121429
SB2021121432
SB2021121433
and 15 more
#VU58886 - Use After Free
CVE-2021-30936
CWE-416 High
No
No
- 14.12.2021 SB2021121429
SB2021121432
SB2021121433
and 15 more
#VU58885 - Memory corruption
CVE-2021-30934
CWE-119 High
No
No
- 14.12.2021 SB2021121429
SB2021121432
SB2021121433
and 15 more
#VU57744 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-30890
CWE-79 Medium
No
No
- 27.10.2021 SB2021102713
SB2021102715
SB2021102717
and 16 more
#VU57740 - Permissions, Privileges, and Access Controls
CVE-2021-30887
CWE-264 Low
No
No
- 27.10.2021 SB2021102713
SB2021102715
SB2021102717
and 16 more


Showing elements 361 - 380 out of 1344