Known vulnerabilities in Fedora 37 - page 35

Software: Fedora
Version: 37
Software CPE: cpe:2.3:o:fedoraproject:fedora:*:*:*:*:*:*:*:*
Total vulnerabilities: 1280
Public exploits: 52
Known exploited (KEV): 23
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Fedora version 37 Fedora 37 is affected by 1280 vulnerabilities: 21 critical, 333 high, 604 medium, 322 low Critical High Medium Low

Vulnerabilities (1280)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU79691 - Improper input validation
CVE-2023-26302
CWE-20 Low
No
No
- 18.08.2023 SB2023081880
SB2023081885
SB2023081886
and 1 more
#VU79684 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-1350
CWE-78 High
No
No
- 18.08.2023 SB2023081852
SB2023081853
SB2023081854
and 3 more
#VU74201 - Memory corruption
CVE-2022-4899
CWE-119 Medium
No
No
- 30.03.2023 SB2023033033
SB2023033042
SB2023050813
and 24 more
#VU73836 - Reachable Assertion
CVE-2023-28425
CWE-617 Medium
No
No
- 20.03.2023 SB2023032036
SB2023072127
SB2023080304
and 4 more
#VU73835 - Improper input validation
CVE-2023-28100
CWE-20 Low
No
No
- 20.03.2023 SB2023032035
SB2023033142
SB2023033143
and 15 more
#VU73834 - Improper input validation
CVE-2023-28101
CWE-20 Medium
No
No
- 20.03.2023 SB2023032035
SB2023033142
SB2023033143
and 15 more
#VU73832 - Server-Side Request Forgery (SSRF)
CVE-2023-27586
CWE-918 Medium
No
No
- 20.03.2023 SB2023032029
SB2023040614
SB2023081888
and 4 more
#VU73172 - NULL Pointer Dereference
CVE-2023-1264
CWE-476 Low
No
No
- 08.03.2023 SB2023030818
SB2023032026
SB2023032045
and 16 more
#VU73171 - Memory corruption
CVE-2023-1175
CWE-119 High
No
No
- 08.03.2023 SB2023030818
SB2023031642
SB2023031656
and 17 more
#VU73170 - Heap-based Buffer Overflow
CVE-2023-1170
CWE-122 High
No
No
- 08.03.2023 SB2023030818
SB2023031642
SB2023031656
and 16 more
#VU73107 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2023-25690
CWE-113 Medium
Public exploit available
No
- 07.03.2023 SB2023030731
SB2023030862
SB2023030942
and 54 more
#VU73106 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2023-27522
CWE-113 Medium
No
No
- 07.03.2023 SB2023030731
SB2023030862
SB2023030942
and 33 more
#VU72686 - Resource exhaustion
CVE-2022-41723
CWE-400 Medium
No
No
- 01.03.2023 SB2023030130
SB2023030131
SB2023030946
and 190 more
#VU72543 - Use After Free
CVE-2023-0927
CWE-416 High
No
No
- 24.02.2023 SB2023022403
SB2023022417
SB2023022603
and 10 more
#VU67635 - Integer overflow
CVE-2022-34612
CWE-190 Low
No
No
- 26.09.2022 SB2022091212
SB2022092633
SB2023081857
and 3 more
#VU67184 - Out-of-bounds write
CVE-2022-36044
CWE-787 High
No
No
- 12.09.2022 SB2022091212
SB2022092633
SB2023081857
and 3 more
#VU67182 - Double Free
CVE-2022-36043
CWE-415 High
No
No
- 12.09.2022 SB2022091212
SB2022092633
SB2023081857
and 3 more
#VU67180 - Out-of-bounds write
CVE-2022-36042
CWE-787 High
No
No
- 12.09.2022 SB2022091212
SB2022092633
SB2023081857
and 3 more
#VU67179 - Out-of-bounds write
CVE-2022-36041
CWE-787 High
No
No
- 12.09.2022 SB2022091212
SB2022092633
SB2023081857
and 3 more
#VU67177 - Out-of-bounds write
CVE-2022-36040
CWE-787 High
No
No
- 12.09.2022 SB2022091212
SB2022092633
SB2023081857
and 3 more


Showing elements 681 - 700 out of 1280