Known vulnerabilities in OpenShift Service Mesh 2.3.0 - page 3

Version: 2.3.0
Software CPE: cpe:2.3:a:red_hat:openshift_service_mesh:*:*:*:*:*:*:*:*
Total vulnerabilities: 84
Public exploits: 6
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting OpenShift Service Mesh version 2.3.0 OpenShift Service Mesh 2.3.0 is affected by 84 vulnerabilities: 19 high, 48 medium, 17 low Critical High Medium Low

Vulnerabilities (84)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU72432 - Heap-based Buffer Overflow
CVE-2022-48303
CWE-122 High
No
No
2.2.11, 2.3.2, 2.3.8, 2.4.4, 2.5.2 21.02.2023 SB2023022105
SB2023022111
SB2023022112
and 72 more
#VU71379 - Incorrect Regular Expression
CVE-2022-40897
CWE-185 Medium
No
No
2.3.2 20.01.2023 SB2023012008
SB2023012015
SB2023012016
and 99 more
#VU70474 - Integer overflow
CVE-2022-47629
CWE-190 High
No
No
2.3.2, 2.4.8, 2.5.2 22.12.2022 SB2022122202
SB2022122204
SB2022122205
and 98 more
#VU69392 - Resource exhaustion
CVE-2022-45061
CWE-400 Medium
No
No
2.3.2 16.11.2022 SB2022111650
SB2022112824
SB2022112856
and 125 more
#VU68718 - Use After Free
CVE-2022-43680
CWE-416 Medium
No
No
2.3.1, 2.3.2 25.10.2022 SB2022102560
SB2022102566
SB2022103010
and 97 more
#VU66868 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-23648
CWE-79 Medium
No
No
2.3.1 30.08.2022 SB2022083037
SB2022083038
SB2022110844
and 6 more
#VU66153 - Heap-based Buffer Overflow
CVE-2022-37434
CWE-122 High
Public exploit available
No
2.3.1 07.08.2022 SB2022080705
SB2022081833
SB2022081851
and 154 more
#VU66070 - Resource exhaustion
CVE-2022-30633
CWE-400 Medium
No
No
2.2.2, 2.3.1 03.08.2022 SB2022080321
SB2022080323
SB2022080324
and 72 more
#VU66069 - Resource exhaustion
CVE-2022-28131
CWE-400 Medium
No
No
2.2.2, 2.3.1 03.08.2022 SB2022080321
SB2022080323
SB2022080324
and 72 more
#VU66067 - Resource exhaustion
CVE-2022-30632
CWE-400 Medium
No
No
2.2.2, 2.3.1 03.08.2022 SB2022080321
SB2022080323
SB2022080324
and 79 more
#VU66066 - Security Features
CVE-2022-32148
CWE-254 Medium
No
No
2.3.1, 2.4.0 03.08.2022 SB2022080321
SB2022080323
SB2022080324
and 86 more
#VU66063 - Resource exhaustion
CVE-2022-30630
CWE-400 Medium
No
No
2.2.2, 2.3.1 03.08.2022 SB2022080321
SB2022080323
SB2022080324
and 79 more
#VU66062 - Resource exhaustion
CVE-2022-30631
CWE-400 Medium
No
No
2.3.1, 2.4.0 03.08.2022 SB2022080321
SB2022080323
SB2022080324
and 100 more
#VU63822 - Heap-based Buffer Overflow
CVE-2022-30293
CWE-122 High
No
No
2.3.1 30.05.2022 SB2022053014
SB2022053015
SB2022060119
and 30 more
#VU63280 - Use After Free
CVE-2022-26709
CWE-416 High
No
No
2.3.1 16.05.2022 SB2022051701
SB2022051704
SB2022051705
and 36 more
#VU63281 - Use After Free
CVE-2022-26710
CWE-416 High
No
No
2.3.1 16.05.2022 SB2022051701
SB2022051705
SB2022051706
and 34 more
#VU63282 - Use After Free
CVE-2022-26717
CWE-416 High
Public exploit available
No
2.3.1 16.05.2022 SB2022051701
SB2022051704
SB2022051705
and 37 more
#VU63283 - Memory corruption
CVE-2022-26716
CWE-119 High
No
No
2.3.1 16.05.2022 SB2022051701
SB2022051704
SB2022051705
and 36 more
#VU63284 - Memory corruption
CVE-2022-26719
CWE-119 High
No
No
2.3.1 16.05.2022 SB2022051701
SB2022051704
SB2022051705
and 34 more
#VU61333 - Exposure of sensitive information to an unauthorized actor
CVE-2022-22662
CWE-200 Medium
No
No
2.3.1 14.03.2022 SB2022031433
SB2022031434
SB2022031435
and 35 more


Showing elements 41 - 60 out of 84