Skip to main content

Vendor archive

fedoraproject CVEs

Beta · best-effort

5,417 CVEs tagged to vendor fedoraproject472 Critical, 2,338 High, 2,343 Medium, 264 Low, 0 Unrated.

CVE-2013-6371

Published Apr 22, 2014

The hash functionality in json-c before 0.12 allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted JSON data, involving collisions.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-1517

Published Apr 20, 2014

The login form in Bugzilla 2.x, 3.x, 4.x before 4.4.3, and 4.5.x before 4.5.3 does not properly handle a correctly authenticated but unintended login attempt, which makes it easie…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-6456

Published Apr 15, 2014

The LXC driver (lxc/lxc_driver.c) in libvirt 1.0.1 through 1.2.1 allows local users to (1) delete arbitrary host devices via the virDomainDeviceDettach API and a symlink attack on…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-5298

Published Apr 14, 2014

Race condition in the ssl3_read_bytes function in s3_pkt.c in OpenSSL through 1.0.1g, when SSL_MODE_RELEASE_BUFFERS is enabled, allows remote attackers to inject data across sessi…

CVSS 4.0 · Medium
evidence mentions
4
Buzz score
24.1

CVE-2012-2095

Published Apr 7, 2014

The SetWiredProperty function in the D-Bus interface in WICD before 1.7.2 allows local users to write arbitrary configuration settings and gain privileges via a crafted property n…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-0132

Published Mar 18, 2014

The SASL authentication functionality in 389 Directory Server before 1.2.11.26 allows remote authenticated users to connect as an arbitrary user and gain privileges via the authzi…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-1491

Published Feb 6, 2014

Mozilla Network Security Services (NSS) before 3.15.4, as used in Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, SeaMonkey before 2.24, and ot…

CVSS 4.3 · Medium

CVE-2014-1490

Published Feb 6, 2014

Race condition in libssl in Mozilla Network Security Services (NSS) before 3.15.4, as used in Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, S…

CVSS 9.3 · Critical
Showing 5,151-5,175 of 5,417 CVEsPage 207 of 217