Skip to main content

Vendor archive

fedoraproject CVEs

Beta · best-effort

5,417 CVEs tagged to vendor fedoraproject472 Critical, 2,338 High, 2,343 Medium, 264 Low, 0 Unrated.

CVE-2015-1051

Published Jan 15, 2015

Open redirect vulnerability in the Context UI module in the Context module 7.x-3.x before 7.x-3.6 for Drupal allows remote attackers to redirect users to arbitrary web sites and c…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-9529

Published Jan 9, 2015

Race condition in the key_gc_unused_keys function in security/keys/gc.c in the Linux kernel through 3.18.2 allows local users to cause a denial of service (memory corruption or pa…

CVSS 6.9 · Medium

CVE-2014-9527

Published Jan 6, 2015

HSLFSlideShow in Apache POI before 3.11 allows remote attackers to cause a denial of service (infinite loop and deadlock) via a crafted PPT file.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-9449

Published Jan 2, 2015

Buffer overflow in the RiffVideo::infoTagsHandler function in riffvideo.cpp in Exiv2 0.24 allows remote attackers to cause a denial of service (crash) via a long IKEY INFO tag val…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-5353

Published Dec 16, 2014

The krb5_ldap_get_password_policy_from_dn function in plugins/kdb/ldap/libkdb_ldap/ldap_pwd_policy.c in MIT Kerberos 5 (aka krb5) before 1.13.1, when the KDC uses LDAP, allows rem…

CVSS 3.5 · Low

CVE-2014-8964

Published Dec 16, 2014

Heap-based buffer overflow in PCRE 8.36 and earlier allows remote attackers to cause a denial of service (crash) or have other unspecified impact via a crafted regular expression,…

CVSS 5.0 · Medium

CVE-2014-8488

Published Dec 10, 2014

Cross-site scripting (XSS) vulnerability in the administrator panel in Yourls 1.7 allows remote attackers to inject arbitrary web script or HTML via a URL that is processed by the…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-6494

Published Dec 2, 2014

fedup 0.9.0 in Fedora 19, 20, and 21 uses a temporary directory with a static name for its download cache, which allows local users to cause a denial of service (prevention of sys…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort
Showing 5,076-5,100 of 5,417 CVEsPage 204 of 217