Known vulnerabilities in Fedora 36 - page 21

Software: Fedora
Version: 36
Software CPE: cpe:2.3:o:fedoraproject:fedora:*:*:*:*:*:*:*:*
Total vulnerabilities: 1163
Public exploits: 40
Known exploited (KEV): 16
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Fedora version 36 Fedora 36 is affected by 1163 vulnerabilities: 15 critical, 294 high, 545 medium, 309 low Critical High Medium Low

Vulnerabilities (1163)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU70463 - Use After Free
CVE-2022-3640
CWE-416 Medium
No
No
- 21.12.2022 SB2022122142
SB2022122145
SB2022122147
and 58 more
#VU69395 - Out-of-bounds write
CVE-2022-3775
CWE-787 Low
No
No
- 16.11.2022 SB2022111652
SB2022111654
SB2022111661
and 38 more
#VU69394 - Out-of-bounds write
CVE-2022-2601
CWE-787 Low
No
No
- 16.11.2022 SB2022111652
SB2022111654
SB2022111661
and 44 more
#VU69240 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-45063
CWE-78 High
No
No
- 11.11.2022 SB2022111113
SB2022112204
SB2023011810
and 11 more
#VU69196 - Memory corruption
CVE-2022-39377
CWE-119 Medium
No
No
- 10.11.2022 SB2022111005
SB2022111008
SB2022112206
and 20 more
#VU69176 - Out-of-bounds write
CVE-2022-44638
CWE-787 High
No
No
- 09.11.2022 SB2022110943
SB2022110944
SB2022111201
and 37 more
#VU69128 - Server-Side Request Forgery (SSRF)
CVE-2022-45060
CWE-918 Medium
No
No
- 08.11.2022 SB2022110886
SB2022112827
SB2022112828
and 17 more
#VU69126 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-45059
CWE-444 Medium
No
No
- 08.11.2022 SB2022110886
SB2024031255
SB2024031256
and 4 more
#VU68962 - Use After Free
CVE-2022-3705
CWE-416 High
No
No
- 03.11.2022 SB2022110328
SB2022110335
SB2022112963
and 22 more
#VU68937 - Improper input validation
CVE-2022-40284
CWE-20 Low
No
No
- 02.11.2022 SB2022110242
SB2022110243
SB2022110322
and 19 more
#VU68858 - Off-by-one Error
CVE-2021-46848
CWE-193 Medium
No
No
- 31.10.2022 SB2022103141
SB2022103142
SB2022103143
and 84 more
#VU68718 - Use After Free
CVE-2022-43680
CWE-416 Medium
No
No
- 25.10.2022 SB2022102560
SB2022102566
SB2022103010
and 99 more
#VU68627 - Exposure of sensitive information to an unauthorized actor
CVE-2022-42824
CWE-200 Medium
No
No
- 24.10.2022 SB2022102435
SB2022102436
SB2022102437
and 19 more
#VU68626 - Type confusion
CVE-2022-42823
CWE-843 High
No
No
- 24.10.2022 SB2022102435
SB2022102436
SB2022102437
and 20 more
#VU68625 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-42799
CWE-451 Medium
No
No
- 24.10.2022 SB2022102435
SB2022102436
SB2022102437
and 19 more
#VU68416 - Missing release of memory after effective lifetime
CVE-2022-3551
CWE-401 Low
No
No
- 18.10.2022 SB2022101844
SB2022101847
SB2022110129
and 28 more
#VU68415 - Memory corruption
CVE-2022-3550
CWE-119 Low
No
No
- 18.10.2022 SB2022101844
SB2022101847
SB2022110129
and 27 more
#VU68265 - Exposure of sensitive information to an unauthorized actor
CVE-2022-39283
CWE-200 Low
No
No
- 12.10.2022 SB2022101251
SB2022103108
SB2022111525
and 12 more
#VU68264 - Exposure of sensitive information to an unauthorized actor
CVE-2022-39282
CWE-200 Low
No
No
- 12.10.2022 SB2022101251
SB2022103108
SB2022111525
and 12 more
#VU65834 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-31160
CWE-79 Low
No
No
- 27.07.2022 SB2022072727
SB2022100608
SB2022121119
and 44 more


Showing elements 401 - 420 out of 1163