Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
Fedora Number Of NVD 5104 CRITICAL 454 HIGH 2277 MEDIUM 2202 LOW 170
URL https://getfedora.org/
Explanation Fedora is a Red Hat-supported distribution that actively embraces new technologies.

The Fedora Project releases a new version approximately every six months, and provides updated packages (which are maintained) for approximately 13 months.
This provides a mechanism for users to continue to receive package updates at any time, while allowing them to skip a release.

The above text is excerpted from [https://fedoraproject.org/wiki/Fedora_Release_Life_Cycle/ja].

Support is provided for one month (four weeks) after the release of two subsequent versions, roughly one year after the release.
Tag
  • Linux

Add Information URL
No Type Name URL
1 https://fedoraproject.org/wiki/Fedora_Release_Life_Cycle
2 https://fedoraproject.org/wiki/End_of_life
3 https://fedoraproject.org/wiki/Releases
4 https://getfedora.org/server/download/

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
4901 Fedora 40 40 April 23, 2024 Oct. 17, 2023 453 2278 2202 170
4902 Fedora 39 39 Oct. 17, 2023 Oct. 17, 2023 Nov. 12, 2024 27 140 138 8
4903 Fedora 38 38 April 18, 2023 April 18, 2023 May 14, 2024 32 224 240 16
4904 Fedora 37 37 Nov. 15, 2022 Nov. 15, 2022 Nov. 14, 2023 45 333 298 18
4905 Fedora 36 36 May 6, 2022 May 6, 2022 May 16, 2023 60 341 292 6
4906 Fedora 35 35 Nov. 2, 2021 Nov. 2, 2021 Dec. 13, 2022 91 572 411 21
4907 Fedora 34 34 April 27, 2021 April 27, 2021 June 7, 2022 93 597 461 28
4908 Fedora 34 34 April 20, 2021 April 20, 2021 June 7, 2022 93 597 461 28
4909 Fedora 33 33 Oct. 27, 2020 Oct. 27, 2020 Nov. 30, 2021 88 572 505 42
4910 Fedora 33 33 Oct. 24, 2020 Oct. 24, 2020 Nov. 30, 2021 88 572 505 42
4911 Fedora 32 32 April 28, 2020 April 28, 2020 May 25, 2021 86 388 458 39
4912 Fedora 32 32 April 25, 2020 April 25, 2020 May 25, 2021 86 388 458 39
4913 Fedora 31 31 Oct. 29, 2019 Oct. 29, 2019 Nov. 24, 2020 90 349 401 28
4914 Fedora 31 31 Oct. 25, 2019 Oct. 25, 2019 Nov. 24, 2020 90 349 401 28
4915 Fedora 30 30 May 7, 2019 May 7, 2019 May 26, 2020 88 310 313 18
4916 Fedora 30 30 May 7, 2019 May 7, 2019 May 26, 2020 88 310 313 18
4917 Fedora 29 29 Oct. 30, 2018 Oct. 30, 2018 Nov. 26, 2019 45 182 164 8
4918 Fedora 29 29 Oct. 30, 2018 Oct. 30, 2018 Nov. 26, 2019 45 182 164 8
4919 Fedora 28 28 May 1, 2018 May 1, 2018 May 28, 2019 12 58 34 2
4920 Fedora 28 28 May 1, 2018 May 1, 2018 May 28, 2019 12 58 34 2
4921 Fedora 27 27 Nov. 14, 2017 Nov. 14, 2017 Nov. 30, 2018 2 5 5 1
4922 Fedora 27 27 Oct. 24, 2017 Oct. 24, 2017 Nov. 30, 2018 2 5 5 1
4923 Fedora 26 26 July 11, 2017 July 11, 2017 May 29, 2018 3 7 5 1
4924 Fedora 25 25 Nov. 22, 2016 Nov. 22, 2016 Dec. 12, 2017 24 27 17 1
4925 Fedora 24 24 June 21, 2016 June 21, 2016 Aug. 8, 2017 33 50 26 1
4926 Fedora 23 23 Nov. 3, 2015 Nov. 3, 2015 Dec. 20, 2016 18 78 78 11
4927 Fedora 22 22 May 26, 2015 May 26, 2015 July 19, 2016 15 76 93 14
4928 Fedora 21 21 Dec. 9, 2014 Dec. 9, 2014 Dec. 1, 2015 4 64 84 10
4929 Fedora 20 20 Dec. 17, 2013 Dec. 17, 2013 June 23, 2015 14 60 95 16
4930 Fedora 19 19 July 2, 2013 July 2, 2013 Jan. 6, 2015 15 40 52 8
4931 Fedora 18 18 Jan. 15, 2013 Jan. 15, 2013 Jan. 14, 2014 11 20 33 4
4932 Fedora 17 17 May 29, 2012 May 29, 2012 July 30, 2013 3 18 33 4
4933 Fedora 16 16 Nov. 8, 2011 Nov. 8, 2011 Feb. 12, 2013 1 16 29 3
4934 Fedora 15 15 May 24, 2011 May 24, 2011 June 26, 2012 0 10 25 3
4935 Fedora 14 14 Nov. 2, 2010 Nov. 2, 2010 Dec. 9, 2011 1 11 15 0
4936 Fedora 13 13 May 25, 2010 May 25, 2010 June 24, 2011 5 15 25 2
4937 Fedora 12 12 Nov. 17, 2009 Nov. 17, 2009 Dec. 2, 2010 3 8 14 1
4938 Fedora 11 11 June 9, 2009 June 9, 2009 June 25, 2010 0 10 20 0
4939 Fedora 10 10 Nov. 25, 2008 Nov. 25, 2008 Dec. 17, 2009 0 13 13 4
4940 Fedora 9 9 May 13, 2008 May 13, 2008 July 10, 2009 2 15 16 1
4941 Fedora 8 8 Nov. 8, 2007 Nov. 8, 2007 Jan. 7, 2009 4 10 16 1
4942 Fedora 7 7 May 31, 2007 May 31, 2007 June 13, 2008 2 6 13 0
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
4901 9.8
6.8
CRITICAL
Network
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, and SeaMonkey before 2.24 allow remote attackers to c… NVD-CWE-noinfo
CVE-2014-1477 cpe:2.3:o:fedoraproject:fedora:20:*
cpe:2.3:o:fedoraproject:fedora:19:*
2024-11-21 11:04
2014-02-6
Show GitHub Exploit DB Packet Storm
4902 -
1.9
LOW Stack-based buffer overflow in socat 1.3.0.0 through 1.7.2.2 and 2.0.0-b1 through 2.0.0-b6 allows local users to cause a denial of service (segmentation fault) via a long server name in the PROXY-CON… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-0019 cpe:2.3:o:fedoraproject:fedora:20:*
cpe:2.3:o:fedoraproject:fedora:19:*
2024-11-21 11:01
2014-02-5
Show GitHub Exploit DB Packet Storm
4903 -
6.8
MEDIUM Multiple cross-site request forgery (CSRF) vulnerabilities in user/profile/index.php in Moodle through 2.2.11, 2.3.x before 2.3.11, 2.4.x before 2.4.8, 2.5.x before 2.5.4, and 2.6.x before 2.6.1 allo… CWE-352
 Origin Validation Error
CVE-2014-0010 cpe:2.3:o:fedoraproject:fedora:20:*
cpe:2.3:o:fedoraproject:fedora:19:*
2024-11-21 11:01
2014-01-21
Show GitHub Exploit DB Packet Storm
4904 -
2.6
LOW Buffer overflow in srtp.c in libsrtp in srtp 1.4.5 and earlier allows remote attackers to cause a denial of service (crash) via vectors related to a length inconsistency in the crypto_policy_set_from… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-2139 cpe:2.3:o:fedoraproject:fedora:20:*
cpe:2.3:o:fedoraproject:fedora:19:*
cpe:2.3:o:fedoraproject:fedora:18:*
2024-11-21 10:51
2014-01-16
Show GitHub Exploit DB Packet Storm
4905 -
6.2
MEDIUM Directory traversal vulnerability in DeviceKit-disks in DeviceKit, as used in Fedora 11 and 12 and possibly other operating systems, allows local users to gain privileges via .. (dot dot) sequences i… CWE-22
Path Traversal
CVE-2010-0746 cpe:2.3:o:fedoraproject:fedora:12:*
cpe:2.3:o:fedoraproject:fedora:11:*
2024-11-21 10:12
2014-01-14
Show GitHub Exploit DB Packet Storm
4906 -
4.3
MEDIUM connection.c in Bip before 0.8.9 does not properly close sockets, which allows remote attackers to cause a denial of service (file descriptor consumption and crash) via multiple failed SSL handshakes… CWE-310
Cryptographic Issues
CVE-2011-5268 cpe:2.3:o:fedoraproject:fedora:20:*
cpe:2.3:o:fedoraproject:fedora:19:*
cpe:2.3:o:fedoraproject:fedora:18:*
2024-11-21 10:34
2013-12-25
Show GitHub Exploit DB Packet Storm
4907 -
5.1
MEDIUM Bip before 0.8.9, when running as a daemon, writes SSL handshake errors to an unexpected file descriptor that was previously associated with stderr before stderr has been closed, which allows remote … CWE-310
Cryptographic Issues
CVE-2013-4550 cpe:2.3:o:fedoraproject:fedora:20:*
cpe:2.3:o:fedoraproject:fedora:19:*
cpe:2.3:o:fedoraproject:fedora:18:*
2024-11-21 10:55
2013-12-25
Show GitHub Exploit DB Packet Storm
4908 -
2.1
LOW thttpd.c in sthttpd before 2.26.4-r2 and thttpd 2.25b use world-readable permissions for /var/log/thttpd.log, which allows local users to obtain sensitive information by reading the file. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-0348 cpe:2.3:o:fedoraproject:fedora:18:*
cpe:2.3:o:fedoraproject:fedora:17:*
2024-11-21 10:47
2013-12-14
Show GitHub Exploit DB Packet Storm
4909 -
4.3
MEDIUM The ruby-openid gem before 2.2.2 for Ruby allows remote OpenID providers to cause a denial of service (CPU consumption) via (1) a large XRDS document or (2) an XML Entity Expansion (XEE) attack. CWE-399
 Resource Management Errors
CVE-2013-1812 cpe:2.3:o:fedoraproject:fedora:18:*
cpe:2.3:o:fedoraproject:fedora:17:*
2024-11-21 10:50
2013-12-13
Show GitHub Exploit DB Packet Storm
4910 5.9
4.3
MEDIUM
Network
Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 do not recognize a user's removal of trust from an EV X.509 certificate, which makes it e… CWE-310
Cryptographic Issues
CVE-2013-6673 cpe:2.3:o:fedoraproject:fedora:20:*
cpe:2.3:o:fedoraproject:fedora:19:*
cpe:2.3:o:fedoraproject:fedora:18:*
2024-11-21 10:59
2013-12-12
Show GitHub Exploit DB Packet Storm