<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Fedora Linux (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/fedora.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/fedora-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Fedora Linux (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:41 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2026-42301 – pyp2spec generates working Fedora RPM spec file for Python projects. Prior to ve...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42301</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42301</guid>
    <pubDate>Sat, 09 May 2026 04:16:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-42301</strong></p>
  <p>pyp2spec generates working Fedora RPM spec file for Python projects. Prior to version 0.14.1, pyp2spec was writing PyPI package metadata (e.g. the summary field) into the generated spec file without escaping RPM macro directives. When a packager then runs rpmbuild, those directives get evaluated, so a malicious package can execute arbitrary commands on the build machine. This issue has been patch…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42301">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-1272 – The Linux Kernel lockdown mode for kernel versions starting on 6.12 and above fo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-1272</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-1272</guid>
    <pubDate>Wed, 18 Feb 2026 21:16:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-1272</strong></p>
  <p>The Linux Kernel lockdown mode for kernel versions starting on 6.12 and above for Fedora Linux has the lockdown mode disabled without any warning. This may allow an attacker to gain access to sensitive information such kernel memory mappings, I/O ports, BPF and kprobes. Additionally unsigned modules can be loaded, leading to execution of untrusted code breaking breaking any Secure Boot protection…</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-306</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-1272">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-38476 – In the Linux kernel, the following vulnerability has been resolved:

rpl: Fix us...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-38476</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-38476</guid>
    <pubDate>Mon, 28 Jul 2025 12:15:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-38476</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  rpl: Fix use-after-free in rpl_do_srh_inline().  Running lwt_dst_cache_ref_loop.sh in selftest with KASAN triggers the splat below [0].  rpl_do_srh_inline() fetches ipv6_hdr(skb) and accesses it after skb_cow_head(), which is illegal as the header could be freed then.  Let's fix it by making oldhdr to a local struct instead of a…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-38476">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-23012 – Fedora Repository 3.8.x includes a service account (fedoraIntCallUser) with defa...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-23012</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-23012</guid>
    <pubDate>Thu, 23 Jan 2025 21:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-23012</strong></p>
  <p>Fedora Repository 3.8.x includes a service account (fedoraIntCallUser) with default credentials and privileges to read read local files by manipulating datastreams. Fedora Repository 3.8.1 was released on 2015-06-11 and is no longer maintained. Migrate to a currently supported version (6.5.1 as of 2025-01-23).</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-1392</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-23012">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-23011 – Fedora Repository 3.8.1 allows path traversal when extracting uploaded archives ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-23011</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-23011</guid>
    <pubDate>Thu, 23 Jan 2025 21:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-23011</strong></p>
  <p>Fedora Repository 3.8.1 allows path traversal when extracting uploaded archives ("Zip Slip"). A remote, authenticated attacker can upload a specially crafted archive that will extract an arbitrary JSP file to a location that can be executed by an unauthenticated GET request. Fedora Repository 3.8.1 was released on 2015-06-11 and is no longer maintained. Migrate to a currently supported version (6…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-23</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-23011">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-3874 – A command injection flaw was found in foreman. This flaw allows an authenticated...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-3874</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-3874</guid>
    <pubDate>Fri, 22 Sep 2023 14:15:44 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-3874</strong></p>
  <p>A command injection flaw was found in foreman. This flaw allows an authenticated user with admin privileges on the foreman instance to transpile commands through CoreOS and Fedora CoreOS configurations in templates, possibly resulting in arbitrary command execution on the underlying operating system.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-3874">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-43816 – containerd is an open source container runtime. On installations using SELinux, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-43816</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-43816</guid>
    <pubDate>Wed, 05 Jan 2022 19:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-43816</strong></p>
  <p>containerd is an open source container runtime. On installations using SELinux, such as EL8 (CentOS, RHEL), Fedora, or SUSE MicroOS, with containerd since v1.5.0-beta.0 as the backing container runtime interface (CRI), an unprivileged pod scheduled to the node may bind mount, via hostPath volume, any privileged, regular file on disk for complete read/write access (sans delete). Such is achieved b…</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-281</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-43816">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-14844 – A flaw was found in, Fedora versions of krb5 from 1.16.1 to, including 1.17.x, i...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-14844</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-14844</guid>
    <pubDate>Thu, 26 Sep 2019 12:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-14844</strong></p>
  <p>A flaw was found in, Fedora versions of krb5 from 1.16.1 to, including 1.17.x, in the way a Kerberos client could crash the KDC by sending one of the RFC 4556 "enctypes". A remote unauthenticated user could use this flaw to crash the KDC.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-628</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-14844">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-7639 – An issue was discovered in gsi-openssh-server 7.9p1 on Fedora 29. If PermitPAMUs...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-7639</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-7639</guid>
    <pubDate>Fri, 08 Feb 2019 11:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-7639</strong></p>
  <p>An issue was discovered in gsi-openssh-server 7.9p1 on Fedora 29. If PermitPAMUserChange is set to yes in the /etc/gsissh/sshd_config file, logins succeed with a valid username and an incorrect password, even though a failure entry is recorded in the /var/log/messages file.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-7639">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-1125 – procps-ng before version 3.3.15 is vulnerable to a stack buffer overflow in pgre...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-1125</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-1125</guid>
    <pubDate>Wed, 23 May 2018 14:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-1125</strong></p>
  <p>procps-ng before version 3.3.15 is vulnerable to a stack buffer overflow in pgrep. This vulnerability is mitigated by FORTIFY, as it involves strncat() to a stack-allocated string. When pgrep is compiled with FORTIFY (as on Red Hat Enterprise Linux and Fedora), the impact is limited to a crash.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-121</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-1125">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-1111 – DHCP packages in Red Hat Enterprise Linux 6 and 7, Fedora 28, and earlier are vu...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-1111</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-1111</guid>
    <pubDate>Thu, 17 May 2018 16:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-1111</strong></p>
  <p>DHCP packages in Red Hat Enterprise Linux 6 and 7, Fedora 28, and earlier are vulnerable to a command injection flaw in the NetworkManager integration script included in the DHCP client. A malicious DHCP server, or an attacker on the local network able to spoof DHCP responses, could use this flaw to execute arbitrary commands with root privileges on systems using NetworkManager and configured to…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-1111">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2013-0159 – The fedora-business-cards package before 1-0.1.beta1.fc17 on Fedora 17 and befor...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-0159</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-0159</guid>
    <pubDate>Tue, 01 May 2018 19:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2013-0159</strong></p>
  <p>The fedora-business-cards package before 1-0.1.beta1.fc17 on Fedora 17 and before 1-0.1.beta1.fc18 on Fedora 18 allows local users to cause a denial of service or write to arbitrary files via a symlink attack on /tmp/fedora-business-cards-buffer.svg.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-59</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-0159">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2017-12170 – Downstream version 1.0.46-1 of pure-ftpd as shipped in Fedora was vulnerable to ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-12170</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-12170</guid>
    <pubDate>Thu, 21 Sep 2017 21:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2017-12170</strong></p>
  <p>Downstream version 1.0.46-1 of pure-ftpd as shipped in Fedora was vulnerable to packaging error due to which the original configuration was ignored after update and service started running with default configuration. This has security implications because of overriding security-related configuration. This issue doesn't affect upstream version of pure-ftpd.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-12170">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2015-3277 – The mod_nss module before 1.0.11 in Fedora allows remote attackers to obtain cip...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-3277</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-3277</guid>
    <pubDate>Wed, 09 Aug 2017 18:29:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2015-3277</strong></p>
  <p>The mod_nss module before 1.0.11 in Fedora allows remote attackers to obtain cipher lists due to incorrect parsing of multi-keyword cipherstring.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-3277">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-7496 – fedora-arm-installer up to and including 1.99.16 is vulnerable to local privileg...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-7496</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-7496</guid>
    <pubDate>Mon, 26 Jun 2017 14:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-7496</strong></p>
  <p>fedora-arm-installer up to and including 1.99.16 is vulnerable to local privilege escalation due to lack of checking the error condition of mount operation failure on unsafely created temporary directories.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-391</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-7496">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2016-0726 – The Fedora Nagios package uses "nagiosadmin" as the default password for the "na...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-0726</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-0726</guid>
    <pubDate>Tue, 06 Jun 2017 18:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2016-0726</strong></p>
  <p>The Fedora Nagios package uses "nagiosadmin" as the default password for the "nagiosadmin" administrator account, which makes it easier for remote attackers to obtain access by leveraging knowledge of the credentials.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-798</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-0726">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-5425 – The Tomcat package on Red Hat Enterprise Linux (RHEL) 7, Fedora, CentOS, Oracle ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-5425</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-5425</guid>
    <pubDate>Thu, 13 Oct 2016 14:59:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-5425</strong></p>
  <p>The Tomcat package on Red Hat Enterprise Linux (RHEL) 7, Fedora, CentOS, Oracle Linux, and possibly other Linux distributions uses weak permissions for /usr/lib/tmpfiles.d/tomcat.conf, which allows local users to gain root privileges by leveraging membership in the tomcat group.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-276</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-5425">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-0741 – slapd/connection.c in 389 Directory Server (formerly Fedora Directory Server) 1...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-0741</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-0741</guid>
    <pubDate>Tue, 19 Apr 2016 21:59:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-0741</strong></p>
  <p>slapd/connection.c in 389 Directory Server (formerly Fedora Directory Server) 1.3.4.x before 1.3.4.7 allows remote attackers to cause a denial of service (infinite loop and connection blocking) by leveraging an abnormally closed connection.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-399</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-0741">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2015-3230 – 389 Directory Server (formerly Fedora Directory Server) before 1.3.3.12 does not...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-3230</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-3230</guid>
    <pubDate>Thu, 29 Oct 2015 20:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2015-3230</strong></p>
  <p>389 Directory Server (formerly Fedora Directory Server) before 1.3.3.12 does not enforce the nsSSL3Ciphers preference when creating an sslSocket, which allows remote attackers to have unspecified impact by requesting to use a disabled cipher.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-254</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-3230">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2013-7283 – Race condition in the libreswan.spec files for Red Hat Enterprise Linux (RHEL) a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-7283</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-7283</guid>
    <pubDate>Thu, 09 Jan 2014 18:07:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2013-7283</strong></p>
  <p>Race condition in the libreswan.spec files for Red Hat Enterprise Linux (RHEL) and Fedora packages in libreswan 3.6 has unspecified impact and attack vectors, involving the /var/tmp/libreswan-nss-pwd temporary file.</p>
  <p><strong>CVSS:</strong> 9.3 · <strong>CWE:</strong> CWE-362</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-7283">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2012-2653 – arpwatch 2.1a15, as used by Red Hat, Debian, Fedora, and possibly others, does n...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2012-2653</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2012-2653</guid>
    <pubDate>Thu, 12 Jul 2012 20:55:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2012-2653</strong></p>
  <p>arpwatch 2.1a15, as used by Red Hat, Debian, Fedora, and possibly others, does not properly drop supplementary groups, which might allow attackers to gain root privileges by leveraging other vulnerabilities in the daemon.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-2653">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2009-1896 – The Java Web Start framework in IcedTea in OpenJDK before 1.6.0.0-20.b16.fc10 on...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2009-1896</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2009-1896</guid>
    <pubDate>Mon, 10 Aug 2009 18:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2009-1896</strong></p>
  <p>The Java Web Start framework in IcedTea in OpenJDK before 1.6.0.0-20.b16.fc10 on Fedora 10, and before 1.6.0.0-27.b16.fc11 on Fedora 11, trusts an entire application when at least one of the listed jar files is trusted, which allows context-dependent attackers to execute arbitrary code without the untrusted-code restrictions via a crafted application, related to NetX.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-264</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2009-1896">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2008-6560 – Buffer overflow in CMAN - The Cluster Manager before 2.03.09-1 on Fedora 9 and R...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2008-6560</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2008-6560</guid>
    <pubDate>Tue, 31 Mar 2009 14:09:53 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2008-6560</strong></p>
  <p>Buffer overflow in CMAN - The Cluster Manager before 2.03.09-1 on Fedora 9 and Red Hat Enterprise Linux (RHEL) 5 allows attackers to cause a denial of service (CPU consumption and memory corruption) via a cluster.conf file with many lines.  NOTE: it is not clear whether this issue crosses privilege boundaries in realistic uses of the product.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2008-6560">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2009-0115 – The Device Mapper multipathing driver (aka multipath-tools or device-mapper-mult...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2009-0115</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2009-0115</guid>
    <pubDate>Mon, 30 Mar 2009 16:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2009-0115</strong></p>
  <p>The Device Mapper multipathing driver (aka multipath-tools or device-mapper-multipath) 0.4.8, as used in SUSE openSUSE, SUSE Linux Enterprise Server (SLES), Fedora, and possibly other operating systems, uses world-writable permissions for the socket file (aka /var/run/multipathd.sock), which allows local users to send arbitrary commands to the multipath daemon.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-732</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2009-0115">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2009-0180 – Certain Fedora build scripts for nfs-utils before 1.1.2-9.fc9 on Fedora 9, and b...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2009-0180</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2009-0180</guid>
    <pubDate>Tue, 20 Jan 2009 16:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2009-0180</strong></p>
  <p>Certain Fedora build scripts for nfs-utils before 1.1.2-9.fc9 on Fedora 9, and before 1.1.4-6.fc10 on Fedora 10, omit TCP Wrapper support, which might allow remote attackers to bypass intended access restrictions, possibly a related issue to CVE-2008-1376.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-264</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2009-0180">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2008-2932 – Heap-based buffer overflow in Red Hat adminutil 1.1.6 allows remote attackers to...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2008-2932</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2008-2932</guid>
    <pubDate>Fri, 12 Sep 2008 16:56:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2008-2932</strong></p>
  <p>Heap-based buffer overflow in Red Hat adminutil 1.1.6 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via % (percent) encoded HTTP input to unspecified CGI scripts in Fedora Directory Server.  NOTE: this vulnerability exists because of an incorrect fix for CVE-2008-2929.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2008-2932">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2008-2930 – Red Hat Directory Server 7.1 before SP7, Red Hat Directory Server 8, and Fedora ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2008-2930</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2008-2930</guid>
    <pubDate>Fri, 29 Aug 2008 18:41:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2008-2930</strong></p>
  <p>Red Hat Directory Server 7.1 before SP7, Red Hat Directory Server 8, and Fedora Directory Server 1.1.1 allow remote attackers to cause a denial of service (CPU consumption and search outage) via crafted LDAP search requests with patterns, related to a single-threaded regular-expression subsystem.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-399</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2008-2930">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2008-3283 – Multiple memory leaks in Red Hat Directory Server 7.1 before SP7, Red Hat Direct...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2008-3283</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2008-3283</guid>
    <pubDate>Fri, 29 Aug 2008 18:41:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2008-3283</strong></p>
  <p>Multiple memory leaks in Red Hat Directory Server 7.1 before SP7, Red Hat Directory Server 8, and Fedora Directory Server 1.1.1 and earlier allow remote attackers to cause a denial of service (memory consumption) via vectors involving (1) the authentication / bind phase and (2) anonymous LDAP search requests.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-399</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2008-3283">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2008-2359 – The default configuration of consolehelper in system-config-network before 1.5.1...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2008-2359</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2008-2359</guid>
    <pubDate>Mon, 02 Jun 2008 21:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2008-2359</strong></p>
  <p>The default configuration of consolehelper in system-config-network before 1.5.10-1 on Fedora 8 lacks the USER=root directive, which allows local users of the workstation console to gain privileges and change the network configuration.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-16</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2008-2359">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2007-5962 – Memory leak in a certain Red Hat patch, applied to vsftpd 2.0.5 on Red Hat Enter...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2007-5962</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2007-5962</guid>
    <pubDate>Thu, 22 May 2008 13:09:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2007-5962</strong></p>
  <p>Memory leak in a certain Red Hat patch, applied to vsftpd 2.0.5 on Red Hat Enterprise Linux (RHEL) 5 and Fedora 6 through 8, and on Foresight Linux and rPath appliances, allows remote attackers to cause a denial of service (memory consumption) via a large number of CWD commands, as demonstrated by an attack on a daemon with the deny_file configuration option.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-399</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2007-5962">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2007-4364 – Fedora Commons before 2.2.1 does not properly handle certain authentication requ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2007-4364</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2007-4364</guid>
    <pubDate>Wed, 15 Aug 2007 19:17:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2007-4364</strong></p>
  <p>Fedora Commons before 2.2.1 does not properly handle certain authentication requests involving Java Naming and Directory Interface (JNDI), related to (1) a nonexistent account name in combination with an empty password, which allows remote attackers to trigger a certain "unexpected / strange response" from an LDAP server, and (2) a reauthentication attempt that throws an exception, which allows r…</p>
  <p><strong>CVSS:</strong> 8.5 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2007-4364">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2006-5170 – pam_ldap in nss_ldap on Red Hat Enterprise Linux 4, Fedora Core 3 and earlier, a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2006-5170</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2006-5170</guid>
    <pubDate>Tue, 10 Oct 2006 04:06:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2006-5170</strong></p>
  <p>pam_ldap in nss_ldap on Red Hat Enterprise Linux 4, Fedora Core 3 and earlier, and possibly other distributions does not return an error condition when an LDAP directory server responds with a PasswordPolicyResponse control response, which causes the pam_authenticate function to return a success code even if authentication has failed, as originally reported for xscreensaver.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-755</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2006-5170">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2006-3742 – The KDE PAM configuration shipped with Fedora Core 5 causes KDM passwords to be ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2006-3742</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2006-3742</guid>
    <pubDate>Wed, 06 Sep 2006 20:04:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2006-3742</strong></p>
  <p>The KDE PAM configuration shipped with Fedora Core 5 causes KDM passwords to be cached, which allows attackers to login without a password by attempting to log in multiple times.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2006-3742">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2006-0453 – The LDAP component in Fedora Directory Server 1.0 allow remote attackers to caus...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2006-0453</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2006-0453</guid>
    <pubDate>Tue, 14 Feb 2006 22:06:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2006-0453</strong></p>
  <p>The LDAP component in Fedora Directory Server 1.0 allow remote attackers to cause a denial of service (crash) via a certain "bad BER sequence" that results in a free of uninitialized memory, as demonstrated using the ProtoVer LDAP test suite.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2006-0453">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
