Known vulnerabilities in Fedora - page 463

Software: Fedora
Software CPE: cpe:2.3:o:fedoraproject:fedora:*:*:*:*:*:*:*:*
Total vulnerabilities: 13387
Public exploits: 703
Known exploited (KEV): 179
Highest CVSSv4 Score: 9.5

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Fedora Fedora is affected by 13387 known vulnerabilities: 103 critical, 3545 high, 5267 medium, 4471 low Critical High Medium Low

Vulnerabilities (13387)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU23563 - Heap-based Buffer Overflow
CVE-2019-9500
CWE-122 Low
No
No
- 12.12.2019 SB2019022016
SB2019121213
SB2019090447
and 6 more
#VU20393 - Integer overflow
CVE-2019-10879
CWE-190 High
No
No
- 26.08.2019 SB2019082601
SB2019072307
SB2019040515
and 2 more
#VU20392 - Out-of-bounds write
CVE-2019-10878
CWE-787 High
No
No
- 26.08.2019 SB2019082601
SB2019072307
SB2019040515
and 2 more
#VU20391 - Integer overflow
CVE-2019-10877
CWE-190 High
No
No
- 26.08.2019 SB2019082601
SB2019072307
SB2019040515
and 2 more
#VU20194 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2019-8321
CWE-79 Low
No
No
- 13.08.2019 SB2019081320
SB2019061706
SB2019072108
and 9 more
#VU20193 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2019-8320
CWE-22 Low
No
No
- 13.08.2019 SB2019081320
SB2019061706
SB2019072108
and 8 more
#VU20192 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2019-8323
CWE-79 Low
No
No
- 13.08.2019 SB2019081320
SB2019061706
SB2019072108
and 10 more
#VU20191 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2019-8322
CWE-79 Low
No
No
- 13.08.2019 SB2019081320
SB2019061706
SB2019072108
and 10 more
#VU20190 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2019-8325
CWE-79 Low
No
No
- 13.08.2019 SB2019081320
SB2019061706
SB2019072108
and 10 more
#VU20189 - Improper Control of Generation of Code ('Code Injection')
CVE-2019-8324
CWE-94 Medium
No
No
- 13.08.2019 SB2019081320
SB2019061706
SB2019072108
and 11 more
#VU19998 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2019-3900
CWE-835 Low
No
No
- 08.08.2019 SB2019080809
SB2019072505
SB2019073009
and 19 more
#VU18801 - Out-of-bounds read
CVE-2019-11036
CWE-125 Low
No
No
- 14.06.2019 SB2019061403
SB2019060312
SB2019092105
and 8 more
#VU18637 - NULL Pointer Dereference
CVE-2019-11023
CWE-476 Low
No
No
- 29.05.2019 SB2019052907
SB2019053006
SB2019052214
and 9 more
#VU18435 - Permissions, Privileges, and Access Controls
CVE-2019-3843
CWE-264 Low
No
No
- 13.05.2019 SB2019051303
SB2020042841
SB2019042609
#VU33427 - Improper Access Control
CVE-2019-2602
CWE-284 Medium
No
No
- 23.04.2019 SB2019060321
SB2019052329
SB2019052330
and 21 more
#VU33461 - Improper Access Control
CVE-2019-2698
CWE-284 High
No
No
- 23.04.2019 SB2019060321
SB2019052329
SB2019052330
and 16 more
#VU31128 - Improper Link Resolution Before File Access ('Link Following')
CVE-2019-1002101
CWE-59 Low
No
No
- 01.04.2019 SB2019040109
SB2019062722
SB2019062723
and 6 more
#VU18092 - Improperly Controlled Modification of Object Prototype Attributes (\'Prototype Pollution\')
CVE-2019-11358
CWE-1321 Low
Available
No
- 28.03.2019 SB2019032804
SB2019041026
SB2019041801
and 155 more
#VU16990 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2019-6109
CWE-451 Low
No
No
- 15.01.2019 SB2019011505
SB2019012805
SB2019012904
and 13 more
#VU16988 - Improper input validation
CVE-2019-6111
CWE-20 Low
Available
No
- 15.01.2019 SB2019011505
SB2019012805
SB2019012904
and 17 more


Showing elements 9241 - 9260 out of 13387