FEDORA-2022-d93b3bd8b9
Packages in this update:
mingw-expat-2.4.9-1.fc36
Update description:
Update to 2.4.9, fixes CVE-2022-30674.
mingw-expat-2.4.9-1.fc36
Update to 2.4.9, fixes CVE-2022-30674.
A buffer overflow vulnerability in stm32_mw_usb_host of STMicroelectronics allows an attacker to execute arbitrary code when the descriptor contains more endpoints than USBH_MAX_NUM_ENDPOINTS. The library is typically integrated when using a RTOS such as FreeRTOS on STM32 MCUs.
firefox-106.0-1.fc35
Updated to 106.0
firefox-106.0-1.fc36
Updated to 106.0
firefox-106.0-1.fc37
Updated to 106.0
kdiskmark-3.1.2-1.el8
Update to latest version
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Oracle VirtualBox. Authentication is not required to exploit this vulnerability.
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Oracle Access Management. Authentication is not required to exploit this vulnerability.
This vulnerability allows local attackers to escalate privileges on affected installations of Oracle VirtualBox. An attacker must first obtain the ability to execute low-privileged code on the target host system in order to exploit this vulnerability.
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Siemens Solid Edge Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.