Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Fedora
(Fedoraproject)Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2021-02-27 | CVE-2021-3197 | An issue was discovered in SaltStack Salt before 3002.5. The salt-api's ssh client is vulnerable to a shell injection by including ProxyCommand in an argument, or via ssh_options provided in an API request. | Debian_linux, Fedora, Salt | 9.8 | ||
2021-04-23 | CVE-2021-31607 | In SaltStack Salt 2016.9 through 3002.6, a command injection vulnerability exists in the snapper module that allows for local privilege escalation on a minion. The attack requires that a file is created with a pathname that is backed up by snapper, and that the master calls the snapper.diff function (which executes popen unsafely). | Fedora, Salt | 7.8 | ||
2021-09-08 | CVE-2021-21996 | An issue was discovered in SaltStack Salt before 3003.3. A user who has control of the source, and source_hash URLs can gain full file system access as root on a salt minion. | Debian_linux, Fedora, Salt | 7.5 | ||
2022-03-09 | CVE-2022-24512 | .NET and Visual Studio Remote Code Execution Vulnerability | Fedora, \.net, \.net_core, Powershell, Visual_studio_2019, Visual_studio_2022 | 6.3 | ||
2022-05-10 | CVE-2022-23267 | .NET and Visual Studio Denial of Service Vulnerability | Fedora, \.net, \.net_core, Powershell, Visual_studio_2019, Visual_studio_2022 | 7.5 | ||
2022-05-10 | CVE-2022-29117 | .NET and Visual Studio Denial of Service Vulnerability | Fedora, \.net, \.net_core, Visual_studio_2019, Visual_studio_2022 | 7.5 | ||
2022-05-10 | CVE-2022-29145 | .NET and Visual Studio Denial of Service Vulnerability | Fedora, \.net, \.net_core, Visual_studio_2019, Visual_studio_2022 | 7.5 | ||
2022-06-15 | CVE-2022-30184 | .NET and Visual Studio Information Disclosure Vulnerability | Fedora, \.net, \.net_core, Nuget, Visual_studio_2019, Visual_studio_2022 | 5.5 | ||
2022-09-13 | CVE-2022-38013 | .NET Core and Visual Studio Denial of Service Vulnerability | Fedora, \.net, \.net_core, Visual_studio_2019, Visual_studio_2022 | 7.5 | ||
2022-10-11 | CVE-2022-41032 | NuGet Client Elevation of Privilege Vulnerability | Fedora, \.net, \.net_core, Visual_studio_2019, Visual_studio_2022 | 7.8 |