Known vulnerabilities in Fedora 35 - page 27

Software: Fedora
Version: 35
Software CPE: cpe:2.3:o:fedoraproject:fedora:*:*:*:*:*:*:*:*
Total vulnerabilities: 1362
Public exploits: 72
Known exploited (KEV): 34
Highest CVSSv4 Score: 9.5

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Fedora version 35 Fedora 35 is affected by 1362 vulnerabilities: 21 critical, 408 high, 563 medium, 370 low Critical High Medium Low

Vulnerabilities (1362)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU69430 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-25648
CWE-78 High
No
No
- 18.11.2022 SB2022111844
SB2022111849
SB2022051926
and 4 more
#VU66867 - Out-of-bounds write
CVE-2021-38593
CWE-787 Low
No
No
- 30.08.2022 SB2021081244
SB2022083038
SB2022051045
and 13 more
#VU64509 - Use After Free
CVE-2022-1898
CWE-416 Low
No
No
- 20.06.2022 SB2022062022
SB2022063027
SB2022080610
and 19 more
#VU64508 - Out-of-bounds read
CVE-2022-1927
CWE-125 Low
No
No
- 20.06.2022 SB2022062022
SB2022080332
SB2022080610
and 49 more
#VU64506 - Out-of-bounds write
CVE-2022-1897
CWE-787 Low
No
No
- 20.06.2022 SB2022062022
SB2022070807
SB2022080332
and 48 more
#VU64505 - Out-of-bounds read
CVE-2022-1851
CWE-125 Low
No
No
- 20.06.2022 SB2022062022
SB2022063027
SB2022080610
and 19 more
#VU64261 - NULL Pointer Dereference
CVE-2022-1789
CWE-476 Low
No
No
- 14.06.2022 SB2022061417
SB2022071353
SB2022071420
and 25 more
#VU64156 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2022-1729
CWE-362 Low
No
No
- 10.06.2022 SB2022061213
SB2022061417
SB2022061630
and 79 more
#VU63890 - Security Features
CVE-2022-1117
CWE-254 Low
No
No
- 01.06.2022 SB2022060101
SB2022060102
SB2022051048
and 4 more
#VU63827 - Use After Free
CVE-2021-46669
CWE-416 Medium
No
No
- 31.05.2022 SB2022061533
SB2022061727
SB2022062431
and 27 more
#VU63747 - Improper Authorization
CVE-2022-26691
CWE-285 High
No
No
- 26.05.2022 SB2022052625
SB2022052626
SB2022053018
and 30 more
#VU63693 - Incorrect Default Permissions
CVE-2022-1348
CWE-276 Low
No
No
- 26.05.2022 SB2022052608
SB2022052621
SB2022071423
and 9 more
#VU63647 - Out-of-bounds read
CVE-2022-1769
CWE-125 Medium
No
No
- 25.05.2022 SB2022052522
SB2022080610
SB2022082104
and 6 more
#VU63339 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-30596
CWE-79 Low
No
No
- 17.05.2022 SB2022051723
SB2022051861
SB2022051862
and 1 more
#VU63338 - Exposure of sensitive information to an unauthorized actor
CVE-2022-30597
CWE-200 Medium
No
No
- 17.05.2022 SB2022051723
SB2022051861
SB2022051862
and 1 more
#VU63337 - Exposure of sensitive information to an unauthorized actor
CVE-2022-30598
CWE-200 Medium
No
No
- 17.05.2022 SB2022051723
SB2022051861
SB2022051862
and 1 more
#VU63336 - Improper Restriction of Excessive Authentication Attempts
CVE-2022-30600
CWE-307 Medium
Public exploit available
No
- 17.05.2022 SB2022051723
SB2022051861
SB2022051862
and 1 more
#VU63335 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2022-30599
CWE-89 Medium
No
No
- 17.05.2022 SB2022051723
SB2022051861
SB2022051862
and 1 more
#VU63168 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2022-29217
CWE-327 Medium
No
No
- 13.05.2022 SB2022051319
SB2022071428
SB2022071429
and 12 more
#VU63090 - Permissions, Privileges, and Access Controls
CVE-2022-29162
CWE-264 Medium
No
No
- 12.05.2022 SB2022051205
SB2022062435
SB2022071158
and 32 more


Showing elements 521 - 540 out of 1362