Known vulnerabilities in Fedora 37 - page 23

Software: Fedora
Version: 37
Software CPE: cpe:2.3:o:fedoraproject:fedora:*:*:*:*:*:*:*:*
Total vulnerabilities: 1280
Public exploits: 52
Known exploited (KEV): 23
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Fedora version 37 Fedora 37 is affected by 1280 vulnerabilities: 21 critical, 333 high, 604 medium, 322 low Critical High Medium Low

Vulnerabilities (1280)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU79796 - Improper input validation
CVE-2023-32732
CWE-20 Medium
No
No
- 21.08.2023 SB2023082198
SB20230821106
SB20230821107
and 16 more
#VU79795 - Exposure of sensitive information to an unauthorized actor
CVE-2023-35934
CWE-200 Low
No
No
- 21.08.2023 SB2023082136
SB2023082172
SB2023082173
and 3 more
#VU79794 - Incorrect Default Permissions
CVE-2023-37378
CWE-276 Low
No
No
- 21.08.2023 SB2023082135
SB2023082169
SB2023082170
#VU79792 - Improper input validation
CVE-2021-25743
CWE-20 Medium
No
No
- 21.08.2023 SB2022010713
SB2023082160
SB2023100316
and 10 more
#VU79791 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2023-32570
CWE-362 Low
No
No
- 21.08.2023 SB2023082134
SB2023082161
SB2023082162
and 3 more
#VU78507 - Heap-based Buffer Overflow
CVE-2023-36824
CWE-122 Low
No
No
- 21.07.2023 SB2023072126
SB2023072127
SB2023082176
and 3 more
#VU78506 - Heap-based Buffer Overflow
CVE-2022-24834
CWE-122 Medium
Public exploit available
No
- 21.07.2023 SB2023072126
SB2023072127
SB2023072128
and 21 more
#VU78213 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2023-33170
CWE-362 High
No
No
- 12.07.2023 SB2023071278
SB2023071280
SB2023071344
and 14 more
#VU78002 - Use After Free
CVE-2023-3269
CWE-416 Low
Public exploit available
No
- 05.07.2023 SB2023070540
SB2023070629
SB2023072601
and 5 more
#VU77939 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-36664
CWE-78 High
Public exploit available
No
- 04.07.2023 SB2023070430
SB2023070432
SB2023071037
and 18 more
#VU77812 - Missing release of memory after effective lifetime
CVE-2023-33460
CWE-401 Medium
No
No
- 29.06.2023 SB2023062940
SB2023081424
SB2023082180
and 19 more
#VU77775 - Permissions, Privileges, and Access Controls
CVE-2023-2431
CWE-264 Low
No
No
- 28.06.2023 SB2023062858
SB2023062901
SB20230820248
and 8 more
#VU77606 - Inconsistency Between Implementation and Documented Design
CVE-2023-30590
CWE-1068 Medium
No
No
- 21.06.2023 SB2023062144
SB2023062727
SB2023062743
and 33 more
#VU77605 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2023-30589
CWE-444 Medium
No
No
- 21.06.2023 SB2023062144
SB2023062727
SB2023062743
and 43 more
#VU77604 - Improper input validation
CVE-2023-30588
CWE-20 Medium
No
No
- 21.06.2023 SB2023062144
SB2023062727
SB2023062743
and 33 more
#VU77601 - Untrusted Search Path
CVE-2023-30585
CWE-426 Low
No
No
- 21.06.2023 SB2023062144
SB2023062727
SB2023062743
and 13 more
#VU77586 - Permissions, Privileges, and Access Controls
CVE-2023-30581
CWE-264 Medium
No
No
- 21.06.2023 SB2023062144
SB2023062727
SB2023062743
and 31 more
#VU77081 - Integer overflow
CVE-2023-33204
CWE-190 Medium
No
No
- 08.06.2023 SB2023060803
SB2023060810
SB2023080278
and 11 more
#VU75604 - Improper Certificate Validation
CVE-2023-31484
CWE-295 Medium
No
No
- 01.05.2023 SB2023050116
SB2023052927
SB2023060526
and 39 more
#VU64001 - Heap-based Buffer Overflow
CVE-2022-24795
CWE-122 Medium
No
No
- 06.06.2022 SB2022061543
SB2022090745
SB2022110845
and 16 more


Showing elements 441 - 460 out of 1280