Fedora kayıtları
fedora üreticisine ait 8 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %87,5
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-310 Cryptographic Issues2
- CWE-399 Resource Management Errors2
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-20 Improper Input Validation1
- CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
8 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
42Planlayın | CVE-2008-3252İstismar yok | Stack-based buffer overflow in the read_article function in getarticle.c in newsx 1.6 allows remote attackers to execute arbitrary code via redhat · fedora · CWE-119 | Kritik10,0 | — | %6,7 | 21 Tem 2008 |
35İzleyin | CVE-2024-2746İstismar yok | Incomplete fix for CVE-2024-1929fedora · dnf5daemon-server · CWE-20 | Yüksek8,8 | — | %0,2 | 7 May 2024 |
32İzleyin | CVE-2008-3283İstismar yok | Multiple memory leaks in Red Hat Directory Server 7.1 before SP7, Red Hat Directory Server 8, and Fedora Directory Server 1.1.1 and earlier fedora · directory server · CWE-399 | Yüksek7,8 | — | %2,9 | 29 Ağu 2008 |
30İzleyin | CVE-2008-2930Kavram kanıtı | Red Hat Directory Server 7.1 before SP7, Red Hat Directory Server 8, and Fedora Directory Server 1.1.1 allow remote attackers to cause a denfedora · directory server · CWE-399 | Yüksek7,1 | — | %6,6 | 29 Ağu 2008 |
28İzleyin | CVE-2015-1848İstismar yok | The pcs daemon (pcsd) in PCS 0.9.137 and earlier does not set the secure flag for a cookie in an https session, which makes it easier for refedora · pacemaker configuration system · CWE-310 | Orta6,8 | — | %2,4 | 14 May 2015 |
18İzleyin | CVE-2015-3983İstismar yok | The pcs daemon (pcsd) in PCS 0.9.137 and earlier does not include the HTTPOnly flag in a Set-Cookie header, which makes it easier for remotefedora · pacemaker configuration system · CWE-310 | Orta4,3 | — | %2,1 | 14 May 2015 |
18İzleyin | CVE-2008-2929İstismar yok | Multiple cross-site scripting (XSS) vulnerabilities in the adminutil library in the Directory Server Administration Express and Directory Sefedora · directory server · CWE-79 | Orta4,3 | — | %1,7 | 29 Ağu 2008 |
4İzleyin | CVE-2012-3500İstismar yok | scripts/annotate-output.sh in devscripts before 2.12.2, as used in rpmdevtools before 8.3, allows local users to modify arbitrary files via devscripts devel team · devscripts · CWE-362 | Düşük1,2 | — | %0,3 | 30 Eyl 2012 |
- CVE-2008-325242Planlayın
Stack-based buffer overflow in the read_article function in getarticle.c in newsx 1.6 allows remote attackers to execute arbitrary code via
KritikCVSS 10,0İstismar yokEPSS %7redhat · fedora21 Tem 2008
- CVE-2024-274635İzleyin
Incomplete fix for CVE-2024-1929
YüksekCVSS 8,8İstismar yokEPSS %0fedora · dnf5daemon-server7 May 2024
- CVE-2008-328332İzleyin
Multiple memory leaks in Red Hat Directory Server 7.1 before SP7, Red Hat Directory Server 8, and Fedora Directory Server 1.1.1 and earlier
YüksekCVSS 7,8İstismar yokEPSS %3fedora · directory server29 Ağu 2008
- CVE-2008-293030İzleyin
Red Hat Directory Server 7.1 before SP7, Red Hat Directory Server 8, and Fedora Directory Server 1.1.1 allow remote attackers to cause a den
YüksekCVSS 7,1Kavram kanıtıEPSS %7fedora · directory server29 Ağu 2008
- CVE-2015-184828İzleyin
The pcs daemon (pcsd) in PCS 0.9.137 and earlier does not set the secure flag for a cookie in an https session, which makes it easier for re
OrtaCVSS 6,8İstismar yokEPSS %2fedora · pacemaker configuration system14 May 2015
- CVE-2015-398318İzleyin
The pcs daemon (pcsd) in PCS 0.9.137 and earlier does not include the HTTPOnly flag in a Set-Cookie header, which makes it easier for remote
OrtaCVSS 4,3İstismar yokEPSS %2fedora · pacemaker configuration system14 May 2015
- CVE-2008-292918İzleyin
Multiple cross-site scripting (XSS) vulnerabilities in the adminutil library in the Directory Server Administration Express and Directory Se
OrtaCVSS 4,3İstismar yokEPSS %2fedora · directory server29 Ağu 2008
- CVE-2012-35004İzleyin
scripts/annotate-output.sh in devscripts before 2.12.2, as used in rpmdevtools before 8.3, allows local users to modify arbitrary files via
DüşükCVSS 1,2İstismar yokEPSS %0devscripts devel team · devscripts30 Eyl 2012