Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Fedora Number Of NVD 5104 CRITICAL 454 HIGH 2277 MEDIUM 2202 LOW 170
URL https://getfedora.org/
Explanation Fedora is a Red Hat-supported distribution that actively embraces new technologies.

The Fedora Project releases a new version approximately every six months, and provides updated packages (which are maintained) for approximately 13 months.
This provides a mechanism for users to continue to receive package updates at any time, while allowing them to skip a release.

The above text is excerpted from [https://fedoraproject.org/wiki/Fedora_Release_Life_Cycle/ja].

Support is provided for one month (four weeks) after the release of two subsequent versions, roughly one year after the release.
Tag
  • Linux

Add Information URL
No Type Name URL
1 https://fedoraproject.org/wiki/Fedora_Release_Life_Cycle
2 https://fedoraproject.org/wiki/End_of_life
3 https://fedoraproject.org/wiki/Releases
4 https://getfedora.org/server/download/

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
141 Fedora 40 40 April 23, 2024 Oct. 17, 2023 453 2278 2202 170
142 Fedora 39 39 Oct. 17, 2023 Oct. 17, 2023 Nov. 12, 2024 27 140 138 8
143 Fedora 38 38 April 18, 2023 April 18, 2023 May 14, 2024 32 224 240 16
144 Fedora 37 37 Nov. 15, 2022 Nov. 15, 2022 Nov. 14, 2023 45 333 298 18
145 Fedora 36 36 May 6, 2022 May 6, 2022 May 16, 2023 60 341 292 6
146 Fedora 35 35 Nov. 2, 2021 Nov. 2, 2021 Dec. 13, 2022 91 572 411 21
147 Fedora 34 34 April 27, 2021 April 27, 2021 June 7, 2022 93 597 461 28
148 Fedora 34 34 April 20, 2021 April 20, 2021 June 7, 2022 93 597 461 28
149 Fedora 33 33 Oct. 27, 2020 Oct. 27, 2020 Nov. 30, 2021 88 572 505 42
150 Fedora 33 33 Oct. 24, 2020 Oct. 24, 2020 Nov. 30, 2021 88 572 505 42
151 Fedora 32 32 April 28, 2020 April 28, 2020 May 25, 2021 86 388 458 39
152 Fedora 32 32 April 25, 2020 April 25, 2020 May 25, 2021 86 388 458 39
153 Fedora 31 31 Oct. 29, 2019 Oct. 29, 2019 Nov. 24, 2020 90 349 401 28
154 Fedora 31 31 Oct. 25, 2019 Oct. 25, 2019 Nov. 24, 2020 90 349 401 28
155 Fedora 30 30 May 7, 2019 May 7, 2019 May 26, 2020 88 310 313 18
156 Fedora 30 30 May 7, 2019 May 7, 2019 May 26, 2020 88 310 313 18
157 Fedora 29 29 Oct. 30, 2018 Oct. 30, 2018 Nov. 26, 2019 45 182 164 8
158 Fedora 29 29 Oct. 30, 2018 Oct. 30, 2018 Nov. 26, 2019 45 182 164 8
159 Fedora 28 28 May 1, 2018 May 1, 2018 May 28, 2019 12 58 34 2
160 Fedora 28 28 May 1, 2018 May 1, 2018 May 28, 2019 12 58 34 2
161 Fedora 27 27 Nov. 14, 2017 Nov. 14, 2017 Nov. 30, 2018 2 5 5 1
162 Fedora 27 27 Oct. 24, 2017 Oct. 24, 2017 Nov. 30, 2018 2 5 5 1
163 Fedora 26 26 July 11, 2017 July 11, 2017 May 29, 2018 3 7 5 1
164 Fedora 25 25 Nov. 22, 2016 Nov. 22, 2016 Dec. 12, 2017 24 27 17 1
165 Fedora 24 24 June 21, 2016 June 21, 2016 Aug. 8, 2017 33 50 26 1
166 Fedora 23 23 Nov. 3, 2015 Nov. 3, 2015 Dec. 20, 2016 18 78 78 11
167 Fedora 22 22 May 26, 2015 May 26, 2015 July 19, 2016 15 76 93 14
168 Fedora 21 21 Dec. 9, 2014 Dec. 9, 2014 Dec. 1, 2015 4 64 84 10
169 Fedora 20 20 Dec. 17, 2013 Dec. 17, 2013 June 23, 2015 14 60 95 16
170 Fedora 19 19 July 2, 2013 July 2, 2013 Jan. 6, 2015 15 40 52 8
171 Fedora 18 18 Jan. 15, 2013 Jan. 15, 2013 Jan. 14, 2014 11 20 33 4
172 Fedora 17 17 May 29, 2012 May 29, 2012 July 30, 2013 3 18 33 4
173 Fedora 16 16 Nov. 8, 2011 Nov. 8, 2011 Feb. 12, 2013 1 16 29 3
174 Fedora 15 15 May 24, 2011 May 24, 2011 June 26, 2012 0 10 25 3
175 Fedora 14 14 Nov. 2, 2010 Nov. 2, 2010 Dec. 9, 2011 1 11 15 0
176 Fedora 13 13 May 25, 2010 May 25, 2010 June 24, 2011 5 15 25 2
177 Fedora 12 12 Nov. 17, 2009 Nov. 17, 2009 Dec. 2, 2010 3 8 14 1
178 Fedora 11 11 June 9, 2009 June 9, 2009 June 25, 2010 0 10 20 0
179 Fedora 10 10 Nov. 25, 2008 Nov. 25, 2008 Dec. 17, 2009 0 13 13 4
180 Fedora 9 9 May 13, 2008 May 13, 2008 July 10, 2009 2 15 16 1
181 Fedora 8 8 Nov. 8, 2007 Nov. 8, 2007 Jan. 7, 2009 4 10 16 1
182 Fedora 7 7 May 31, 2007 May 31, 2007 June 13, 2008 2 6 13 0
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
141 5.5
-
MEDIUM
Local
An out-of-bounds write issue has been discovered in the backspace handling of the checkType() function in etc.c within the W3M application. This vulnerability is triggered by supplying a specially cr… CWE-787
 Out-of-bounds Write
CVE-2023-4255 cpe:2.3:o:fedoraproject:fedora:39:* 2024-11-21 17:34
2023-12-22
Show GitHub Exploit DB Packet Storm
142 5.3
-
MEDIUM
Network
A flaw was found in the libssh implements abstract layer for message digest (MD) operations implemented by different supported crypto backends. The return values from these were not properly checked,… CWE-252
 Unchecked Return Value
CVE-2023-6918 cpe:2.3:o:fedoraproject:fedora:39:*
cpe:2.3:o:fedoraproject:fedora:38:*
2024-11-21 17:44
2023-12-19
Show GitHub Exploit DB Packet Storm
143 5.9
-
MEDIUM
Network
The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packets are omitted (from… CWE-354
 Improper Validation of Integrity Check Value
CVE-2023-48795 cpe:2.3:o:fedoraproject:fedora:39:*
cpe:2.3:o:fedoraproject:fedora:38:*
2024-11-21 17:32
2023-12-19
Show GitHub Exploit DB Packet Storm
144 8.8
-
HIGH
Network
Type confusion in V8 in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High) CWE-843
Type Confusion
CVE-2023-6702 cpe:2.3:o:fedoraproject:fedora:38:* 2024-11-21 17:44
2023-12-15
Show GitHub Exploit DB Packet Storm
145 7.8
-
HIGH
Local
A template injection flaw was found in Ansible where a user's controller internal templating operations may remove the unsafe designation from template data. This issue could allow an attacker to use… NVD-CWE-Other
CVE-2023-5764 cpe:2.3:o:fedoraproject:fedora:39:*
cpe:2.3:o:fedoraproject:fedora:38:*
2024-11-21 17:42
2023-12-13
Show GitHub Exploit DB Packet Storm
146 5.3
-
MEDIUM
Network
When saving HSTS data to an excessively long file name, curl could end up removing all contents, making subsequent requests using that file unaware of the HSTS status they should otherwise use. CWE-311
Missing Encryption of Sensitive Data
CVE-2023-46219 cpe:2.3:o:fedoraproject:fedora:38:* 2024-11-21 17:28
2023-12-12
Show GitHub Exploit DB Packet Storm
147 5.5
-
MEDIUM
Local
A null pointer dereference vulnerability was found in dpll_pin_parent_pin_set() in drivers/dpll/dpll_netlink.c in the Digital Phase Locked Loop (DPLL) subsystem in the Linux kernel. This issue could… CWE-476
 NULL Pointer Dereference
CVE-2023-6679 cpe:2.3:o:fedoraproject:fedora:38:* 2024-11-21 17:44
2023-12-12
Show GitHub Exploit DB Packet Storm
148 8.8
-
HIGH
Network
Insufficient macro permission validation of The Document Foundation LibreOffice allows an attacker to execute built-in macros without warning. In affected versions LibreOffice supports hyperlinks wi… CWE-281
 Improper Preservation of Permissions
CVE-2023-6186 cpe:2.3:o:fedoraproject:fedora:38:* 2024-11-21 17:43
2023-12-11
Show GitHub Exploit DB Packet Storm
149 8.8
-
HIGH
Network
Improper Input Validation vulnerability in GStreamer integration of The Document Foundation LibreOffice allows an attacker to execute arbitrary GStreamer plugins. In affected versions the filename o… NVD-CWE-noinfo
CVE-2023-6185 cpe:2.3:o:fedoraproject:fedora:38:* 2024-11-21 17:43
2023-12-11
Show GitHub Exploit DB Packet Storm
150 6.3
-
MEDIUM
Adjacent
Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting inject… CWE-287
Improper Authentication
CVE-2023-45866 cpe:2.3:o:fedoraproject:fedora:39:*
cpe:2.3:o:fedoraproject:fedora:38:*
2024-11-21 17:27
2023-12-8
Show GitHub Exploit DB Packet Storm