Skip to main content

Vendor/product archive

fedoraproject / fedora CVEs

Beta · best-effort

5,347 CVEs tagged to fedoraproject / fedora471 Critical, 2,319 High, 2,310 Medium, 247 Low, 0 Unrated.

CVE-2026-35094

Published Apr 1, 2026

A flaw was found in libinput. An attacker capable of deploying a Lua plugin file in specific system directories can exploit a dangling pointer vulnerability. This occurs when a ga…

CVSS 3.3 · Low
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2026-35093

Published Apr 1, 2026

A flaw was found in libinput. A local attacker who can place a specially crafted Lua bytecode file in certain system or user configuration directories can bypass security restrict…

CVSS 8.8 · High
evidence mentions
5
Buzz score
35.9
Vendor/product tagsBeta · best-effort

CVE-2023-4134

Published Nov 14, 2024

A use-after-free vulnerability was found in the cyttsp4_core driver in the Linux kernel. This issue occurs in the device cleanup routine due to a possible rearming of the watchdog…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-6291

Published Jun 24, 2024

Use after free in Swiftshader in Google Chrome prior to 126.0.6478.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-6290

Published Jun 24, 2024

Use after free in Dawn in Google Chrome prior to 126.0.6478.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severi…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-5847

Published Jun 11, 2024

Use after free in PDFium in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severi…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-5846

Published Jun 11, 2024

Use after free in PDFium in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severi…

CVSS 8.8 · High
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2024-5845

Published Jun 11, 2024

Use after free in Audio in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severit…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-5844

Published Jun 11, 2024

Heap buffer overflow in Tab Strip in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium secu…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-5843

Published Jun 11, 2024

Inappropriate implementation in Downloads in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to obfuscate security UI via a malicious file. (Chromium security sever…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-5842

Published Jun 11, 2024

Use after free in Browser UI in Google Chrome prior to 126.0.6478.54 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform an out of bounds m…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-5841

Published Jun 11, 2024

Use after free in V8 in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity:…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-5840

Published Jun 11, 2024

Policy bypass in CORS in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to bypass discretionary access control via a crafted HTML page. (Chromium security severity…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-5839

Published Jun 11, 2024

Inappropriate Implementation in Memory Allocator in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.…

CVSS 6.5 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-5838

Published Jun 11, 2024

Type Confusion in V8 in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity:…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-5837

Published Jun 11, 2024

Type Confusion in V8 in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. (Chromium securi…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 5,347 CVEsPage 1 of 214