Known vulnerabilities in Fedora 39

Software: Fedora
Version: 39
Software CPE: cpe:2.3:o:fedoraproject:fedora:*:*:*:*:*:*:*:*
Total vulnerabilities: 1305
Public exploits: 80
Known exploited (KEV): 29
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Fedora version 39 Fedora 39 is affected by 1305 vulnerabilities: 21 critical, 383 high, 537 medium, 364 low Critical High Medium Low

Vulnerabilities (1305)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU101942 - Incorrect Default Permissions
CVE-2024-21820
CWE-276 Low
No
No
- 27.12.2024 SB2024122731
SB2024122734
SB2024122735
and 11 more
#VU101941 - Improper Check for Unusual or Exceptional Conditions
CVE-2024-23918
CWE-754 Low
No
No
- 27.12.2024 SB2024122731
SB2024122734
SB2024122735
and 14 more
#VU101936 - Improper Finite State Machines (FSMs) in Hardware Logic
CVE-2024-21853
CWE-1245 Low
No
No
- 27.12.2024 SB2024122729
SB2024122734
SB2024122735
and 14 more
#VU101026 - Improper Control of Generation of Code ('Code Injection')
CVE-2024-52336
CWE-94 Low
No
No
- 28.11.2024 SB2024112824
SB2024112828
SB2024112842
and 8 more
#VU101024 - Improper Output Neutralization for Logs
CVE-2024-52337
CWE-117 Low
No
No
- 28.11.2024 SB2024112824
SB2024112827
SB2024112828
and 20 more
#VU100986 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2024-11003
CWE-78 Low
Public exploit available
No
- 27.11.2024 SB2024112721
SB2024112724
SB2024112725
and 8 more
#VU100984 - Improper Control of Generation of Code ('Code Injection')
CVE-2024-48992
CWE-94 Low
No
No
- 27.11.2024 SB2024112721
SB2024112724
SB2024112725
and 8 more
#VU100983 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-48991
CWE-362 Low
Public exploit available
No
- 27.11.2024 SB2024112721
SB2024112724
SB2024112725
and 8 more
#VU100982 - Improper Control of Generation of Code ('Code Injection')
CVE-2024-48990
CWE-94 Low
Public exploit available
Exploited
- 27.11.2024 SB2024112721
SB2024112724
SB2024112725
and 8 more
#VU100914 - Download of Code Without Integrity Check
CVE-2024-45321
CWE-494 High
No
No
- 26.11.2024 SB2024112601
SB2024112603
SB2024112604
and 5 more
#VU100667 - Type confusion
CVE-2024-11395
CWE-843 High
No
No
- 19.11.2024 SB2024111980
SB2024112232
SB2024112233
and 8 more
#VU100313 - Improperly Implemented Security Check for Standard
CVE-2024-11110
CWE-358 Low
No
No
- 12.11.2024 SB20241112116
SB2024111460
SB2024112232
and 10 more
#VU100314 - Improperly Implemented Security Check for Standard
CVE-2024-11111
CWE-358 Low
No
No
- 12.11.2024 SB20241112116
SB2024111460
SB2024112232
and 9 more
#VU100315 - Use After Free
CVE-2024-11112
CWE-416 High
No
No
- 12.11.2024 SB20241112116
SB2024111460
SB2024112232
and 9 more
#VU100316 - Use After Free
CVE-2024-11113
CWE-416 High
No
No
- 12.11.2024 SB20241112116
SB2024111460
SB2024112232
and 9 more
#VU100317 - Improperly Implemented Security Check for Standard
CVE-2024-11114
CWE-358 Low
No
No
- 12.11.2024 SB20241112116
SB2024111460
SB2024112232
and 9 more
#VU100318 - Permissions, Privileges, and Access Controls
CVE-2024-11115
CWE-264 Medium
No
No
- 12.11.2024 SB20241112116
SB2024111460
SB2024112232
and 9 more
#VU87167 - Improper input validation
CVE-2024-1481
CWE-20 Medium
No
No
- 06.03.2024 SB2024030645
SB2024030665
SB2024030666
and 5 more
#VU86197 - Use After Free
CVE-2024-1284
CWE-416 High
No
No
- 06.02.2024 SB2024020708
SB2024020868
SB2024020913
and 9 more
#VU86198 - Heap-based Buffer Overflow
CVE-2024-1283
CWE-122 High
No
No
- 06.02.2024 SB2024020708
SB2024020868
SB2024020913
and 8 more


Showing elements 1 - 20 out of 1305