Known vulnerabilities in Fedora 40 - page 5

Software: Fedora
Version: 40
Software CPE: cpe:2.3:o:fedoraproject:fedora:*:*:*:*:*:*:*:*
Total vulnerabilities: 1148
Public exploits: 68
Known exploited (KEV): 18
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Fedora version 40 Fedora 40 is affected by 1148 vulnerabilities: 14 critical, 368 high, 449 medium, 317 low Critical High Medium Low

Vulnerabilities (1148)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU106941 - Resource exhaustion
CVE-2024-45700
CWE-400 Medium
No
No
- 03.04.2025 SB2025040345
SB2025040355
SB2025040356
and 5 more
#VU106940 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-45699
CWE-79 Low
No
No
- 03.04.2025 SB2025040346
SB2025040355
SB2025040356
and 4 more
#VU106939 - Exposure of sensitive information to an unauthorized actor
CVE-2024-36469
CWE-200 Low
No
No
- 03.04.2025 SB2025040348
SB2025040355
SB2025040356
and 6 more
#VU106937 - Exposure of sensitive information to an unauthorized actor
CVE-2024-42325
CWE-200 Low
No
No
- 03.04.2025 SB2025040348
SB2025040355
SB2025040356
and 6 more
#VU106925 - Reachable Assertion
CVE-2025-2704
CWE-617 Medium
No
No
- 03.04.2025 SB2025040316
SB2025040322
SB2025040323
and 6 more
#VU106372 - Improperly Implemented Security Check for Standard
CVE-2025-3072
CWE-358 Low
No
No
- 01.04.2025 SB2025040138
SB2025040399
SB20250403133
and 7 more
#VU106373 - Improperly Implemented Security Check for Standard
CVE-2025-3073
CWE-358 Low
No
No
- 01.04.2025 SB2025040138
SB2025040399
SB20250403133
and 8 more
#VU106374 - Improperly Implemented Security Check for Standard
CVE-2025-3074
CWE-358 Low
No
No
- 01.04.2025 SB2025040138
SB2025040399
SB20250403133
and 8 more
#VU106365 - Memory corruption
CVE-2025-3034
CWE-119 High
No
No
- 01.04.2025 SB2025040129
SB2025040130
SB20250403130
and 6 more
#VU106363 - Exposure of sensitive information to an unauthorized actor
CVE-2025-3035
CWE-200 Low
No
No
- 01.04.2025 SB2025040129
SB20250403130
SB20250403131
and 2 more
#VU106362 - Missing release of memory after effective lifetime
CVE-2025-3032
CWE-401 Low
No
No
- 01.04.2025 SB2025040129
SB2025040130
SB20250403130
and 6 more
#VU106361 - Processor optimization removal or modification of security-critical code
CVE-2025-3031
CWE-1037 Low
No
No
- 01.04.2025 SB2025040129
SB2025040130
SB20250403130
and 6 more
#VU106360 - Memory corruption
CVE-2025-3030
CWE-119 High
No
No
- 01.04.2025 SB2025040129
SB2025040130
SB2025040131
and 40 more
#VU106359 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2025-3029
CWE-451 Medium
No
No
- 01.04.2025 SB2025040129
SB2025040130
SB2025040131
and 40 more
#VU106358 - Use After Free
CVE-2025-3028
CWE-416 High
No
No
- 01.04.2025 SB2025040129
SB2025040130
SB2025040131
and 40 more
#VU106284 - Improper input validation
CVE-2025-30355
CWE-20 High
No
Exploited
- 31.03.2025 SB2025033143
SB2025033159
SB2025033160
and 1 more
#VU106282 - Improper Link Resolution Before File Access ('Link Following')
CVE-2024-12905
CWE-59 High
No
No
- 31.03.2025 SB2025033140
SB2025033150
SB2025033151
and 15 more
#VU106281 - Heap-based Buffer Overflow
CVE-2025-2849
CWE-122 Medium
No
No
- 31.03.2025 SB2025033139
SB2025033154
SB2025033155
and 2 more
#VU106278 - Improper Authorization
CVE-2025-30093
CWE-285 Medium
No
No
- 31.03.2025 SB2025033137
SB2025033146
SB2025033147
and 2 more
#VU106101 - Memory corruption
CVE-2025-27835
CWE-119 High
No
No
- 27.03.2025 SB2025032721
SB2025032723
SB2025032729
and 13 more


Showing elements 81 - 100 out of 1148