Skip to main content

Vendor/product archive

fedoraproject / fedora CVEs

Beta · best-effort

5,347 CVEs tagged to fedoraproject / fedora471 Critical, 2,319 High, 2,310 Medium, 247 Low, 0 Unrated.

CVE-2013-1830

Published Mar 25, 2013

user/view.php in Moodle through 2.1.10, 2.2.x before 2.2.8, 2.3.x before 2.3.5, and 2.4.x before 2.4.2 does not enforce the forceloginforprofiles setting, which allows remote atta…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-1568

Published Mar 1, 2013

The ExecShield feature in a certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 5 and 6 and Fedora 15 and 16 does not properly handle use of many shared…

CVSS 1.9 · Low
Vendor/product tagsBeta · best-effort

CVE-2012-6075

Published Feb 13, 2013

Buffer overflow in the e1000_receive function in the e1000 device driver (hw/e1000.c) in QEMU 1.3.0-rc2 and other versions, when the SBP and LPE flags are disabled, allows remote…

CVSS 9.3 · Critical

CVE-2013-0170

Published Feb 8, 2013

Use-after-free vulnerability in the virNetMessageFree function in rpc/virnetserverclient.c in libvirt 1.0.x before 1.0.2, 0.10.2 before 0.10.2.3, 0.9.11 before 0.9.11.9, and 0.9.6…

CVSS 6.8 · Medium

CVE-2012-3354

Published Nov 20, 2012

doku.php in DokuWiki, as used in Fedora 16, 17, and 18, when certain PHP error levels are set, allows remote attackers to obtain sensitive information via the prefix parameter, wh…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-4415

Published Oct 1, 2012

Stack-based buffer overflow in the guac_client_plugin_open function in libguac in Guacamole before 0.6.3 allows remote attackers to cause a denial of service (crash) or execute ar…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2012-1149

Published Jun 21, 2012

Integer overflow in the vclmi.dll module in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, allows remote attackers to cause a denial of se…

CVSS 7.5 · High

CVE-2012-0037

Published Jun 17, 2012

Redland Raptor (aka libraptor) before 2.0.7, as used by OpenOffice 3.3 and 3.4 Beta, LibreOffice before 3.4.6 and 3.5.x before 3.5.1, and other products, allows user-assisted remo…

CVSS 6.5 · Medium

CVE-2012-1823

Published May 11, 2012

sapi/cgi/cgi_main.c in PHP before 5.3.12 and 5.4.x before 5.4.2, when configured as a CGI script (aka php-cgi), does not properly handle query strings that lack an = (equals sign)…

CVSS 9.8 · Critical
evidence mentions
18
Buzz score
75.4
KEV listedPublic PoC observed

CVE-2012-2089

Published Apr 17, 2012

Buffer overflow in ngx_http_mp4_module.c in the ngx_http_mp4_module module in nginx 1.0.7 through 1.0.14 and 1.1.3 through 1.1.18, when the mp4 directive is used, allows remote at…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-3045

Published Mar 22, 2012

Integer signedness error in the png_inflate function in pngrutil.c in libpng before 1.4.10beta01, as used in Google Chrome before 17.0.963.83 and other products, allows remote att…

CVSS 8.8 · High

CVE-2011-4862

Published Dec 25, 2011

Buffer overflow in libtelnet/encrypt.c in telnetd in FreeBSD 7.3 through 9.0, MIT Kerberos Version 5 Applications (aka krb5-appl) 1.0.2 and earlier, Heimdal 1.5.1 and earlier, GNU…

CVSS 10.0 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2011-4517

Published Dec 15, 2011

The jpc_crg_getparms function in libjasper/jpc/jpc_cs.c in JasPer 1.900.1 uses an incorrect data type during a certain size calculation, which allows remote attackers to trigger a…

CVSS 6.8 · Medium

CVE-2011-4516

Published Dec 15, 2011

Heap-based buffer overflow in the jpc_cox_getcompparms function in libjasper/jpc/jpc_cs.c in JasPer 1.900.1 allows remote attackers to execute arbitrary code or cause a denial of…

CVSS 6.8 · Medium
Showing 5,176-5,200 of 5,347 CVEsPage 208 of 214