Known vulnerabilities in Fedora - page 167

Software: Fedora
Software CPE: cpe:2.3:o:fedoraproject:fedora:*:*:*:*:*:*:*:*
Total vulnerabilities: 13358
Public exploits: 703
Known exploited (KEV): 179
Highest CVSSv4 Score: 9.5

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Fedora Fedora is affected by 13358 known vulnerabilities: 103 critical, 3539 high, 5250 medium, 4465 low Critical High Medium Low

Vulnerabilities (13358)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU93544 - Improper input validation
CVE-2024-38477
CWE-20 Medium
No
No
- 01.07.2024 SB2024070155
SB20240702144
SB2024070402
and 58 more
#VU93543 - Server-Side Request Forgery (SSRF)
CVE-2024-38476
CWE-918 High
No
No
- 01.07.2024 SB2024070155
SB20240702144
SB2024070402
and 61 more
#VU93542 - Improper input validation
CVE-2024-38475
CWE-20 Critical
Available
No
- 01.07.2024 SB2024070155
SB20240702144
SB2024070402
and 54 more
#VU93540 - Improper input validation
CVE-2024-38473
CWE-20 Medium
Available
No
- 01.07.2024 SB2024070155
SB20240702144
SB2024070402
and 47 more
#VU93517 - Off-by-one Error
CVE-2024-38441
CWE-193 High
No
No
- 01.07.2024 SB2024070147
SB2024070149
SB2024070345
and 3 more
#VU93516 - Off-by-one Error
CVE-2024-38440
CWE-193 High
No
No
- 01.07.2024 SB2024070147
SB2024070149
SB2024070345
and 3 more
#VU93513 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-6387
CWE-362 High
Available
No
- 01.07.2024 SB2024070144
SB2024070145
SB2024070152
and 89 more
#VU93512 - Off-by-one Error
CVE-2024-38439
CWE-193 High
No
No
- 01.07.2024 SB2024070147
SB2024070149
SB2024070345
and 3 more
#VU93316 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-6306
CWE-22 Medium
No
No
- 25.06.2024 SB20240625118
SB2024070335
SB2024070336
and 1 more
#VU93315 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-32111
CWE-79 Low
No
No
- 25.06.2024 SB20240625118
SB2024070335
SB2024070336
and 1 more
#VU93314 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-6307
CWE-79 Medium
No
No
- 25.06.2024 SB20240625118
SB2024070335
SB2024070336
and 1 more
#VU93235 - Out-of-bounds write
CVE-2024-37894
CWE-787 Medium
No
No
- 25.06.2024 SB2024062519
SB2024070286
SB2024070287
and 11 more
#VU93222 - Use After Free
CVE-2024-6290
CWE-416 High
No
No
- 24.06.2024 SB2024062507
SB20240625119
SB20240625120
and 7 more
#VU93223 - Use After Free
CVE-2024-6291
CWE-416 High
No
No
- 24.06.2024 SB2024062507
SB20240625119
SB20240625120
and 7 more
#VU93224 - Use After Free
CVE-2024-6292
CWE-416 High
No
No
- 24.06.2024 SB2024062507
SB20240625119
SB20240625120
and 7 more
#VU93225 - Use After Free
CVE-2024-6293
CWE-416 High
No
No
- 24.06.2024 SB2024062507
SB20240625119
SB20240625120
and 7 more
#VU92284 - Improper input validation
CVE-2024-33870
CWE-20 High
No
No
- 19.06.2024 SB20240613135
SB2024061967
SB2024062733
and 13 more
#VU92282 - Use of Externally-Controlled Format String
CVE-2024-29510
CWE-134 High
Available
Exploited
- 19.06.2024 SB20240613135
SB2024061967
SB2024062733
and 14 more
#VU92262 - Exposure of sensitive information to an unauthorized actor
CVE-2024-37891
CWE-200 Low
No
No
- 19.06.2024 SB2024061955
SB20240625146
SB2024062605
and 194 more
#VU92075 - UNIX Symbolic Link (Symlink) Following
CVE-2024-35235
CWE-61 Low
Available
No
- 13.06.2024 SB2024061389
SB2024061398
SB2024061399
and 29 more


Showing elements 3321 - 3340 out of 13358