Known vulnerabilities in bind-utils - page 3
Vendor:
SUSE
Software:
bind-utils
Software CPE:
cpe:2.3:o:suse:bind-utils:*:*:*:*:*:suse_linux:*:*
Website:
https://www.suse.com/
Total vulnerabilities:
68
Public exploits:
4
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
9.16.6-150300.22.62.1
9.16.6-150000.12.91.1
9.11.22-3.74.1
9.16.50-150500.8.41.1
9.16.50-150400.5.65.1
9.18.50-150600.3.32.1
9.20.26-150700.3.29.1
9.18.49-150600.3.29.1
9.16.6-150300.22.59.1
9.18.49-150600.3.26.1
9.20.23-150700.3.25.1
9.16.50-150400.5.62.1
9.16.50-150500.8.38.1
9.11.22-3.71.1
9.16.50-150400.5.59.1
9.16.6-150300.22.56.1
9.20.21-150700.3.18.1
9.18.33-150600.3.21.1
9.16.50-150500.8.35.1
9.11.22-3.68.1
9.16.6-150000.12.88.1
9.20.18-150700.3.15.1
9.16.6-150000.12.85.1
9.18.33-150600.3.18.1
9.16.6-150300.22.53.1
9.16.50-150500.8.32.1
9.16.50-150400.5.56.1
9.11.22-3.65.1
9.20.15-150700.3.12.1
9.16.50-150400.5.49.1
9.16.50-150500.8.27.1
9.18.33-150600.3.9.1
9.20.11-150700.3.9.1
9.20.9-150700.3.3.1
9.16.6-150300.22.50.1
9.11.22-3.60.2
9.16.50-150400.5.46.1
9.16.50-150500.8.24.1
9.18.33-150600.3.6.1
9.16.6-150000.12.80.1
9.11.22-3.57.1
9.16.50-150400.5.43.1
9.16.50-150500.8.21.1
9.16.6-150000.12.77.1
9.16.6-150300.22.47.1
9.18.28-150600.3.3.1
9.16.6-150000.12.74.2
9.16.6-150300.22.44.1
9.16.6-150300.22.30.1
9.16.48-150400.5.40.1
9.16.48-150500.8.16.1
9.16.6-150300.22.41.1
9.16.44-150500.8.12.2
9.16.6-150000.12.71.1
9.11.22-3.49.1
9.16.44-150400.5.37.2
9.16.42-150500.8.3.1
9.11.22-3.46.4
9.16.6-150000.12.68.1
9.9.9P1-63.40.1
9.16.42-150400.5.27.1
9.16.6-150000.12.65.1
9.9.9P1-63.34.1
9.16.6-150000.12.60.1
9.16.6-150300.22.16.1
9.11.22-3.40.1
9.16.6-150300.22.13.1
9.9.9P1-63.28.1
9.9.6P1-0.51.26.1
9.9.9P1-63.25.1
9.16.6-12.44.1
9.16.6-150300.22.27.1
9.16.37-150400.5.17.1
9.16.33-150400.5.11.1
9.16.6-150000.12.63.1
9.16.6-150300.22.21.2
9.9.9P1-63.37.1
9.11.22-3.43.1
9.16.31-150400.5.6.1
9.16.6-12.57.1
9.11.22-3.37.1
9.16.6-22.7.1
9.16.6-12.49.1
9.11.22-3.34.1
Vulnerabilities (68)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU77620 - Exposure of sensitive information to an unauthorized actor CVE-2023-1387 |
CWE-200 | Medium | 9.16.6-150000.12.65.1 | 22.06.2023 |
SB2023062227 SB2023062230 SB2023062231 and 7 more |
||
| #VU75360 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2023-1410 |
CWE-79 | Low | 9.16.6-150000.12.65.1 | 19.04.2023 |
SB2023041950 SB2023041951 SB2023041952 and 11 more |
||
| #VU71531 - Reachable Assertion CVE-2022-3924 |
CWE-617 | Medium | 9.16.37-150400.5.17.1 | 25.01.2023 |
SB2023012556 SB2023012559 SB2023012602 and 19 more |
||
| #VU71530 - Improper input validation CVE-2022-3736 |
CWE-20 | Medium | 9.16.37-150400.5.17.1 | 25.01.2023 |
SB2023012556 SB2023012559 SB2023012602 and 18 more |
||
| #VU71529 - Resource exhaustion CVE-2022-3094 |
CWE-400 | Medium | 9.16.6-150000.12.91.1, 9.16.6-150300.22.27.1, 9.16.37-150400.5.17.1 | 25.01.2023 |
SB2023012556 SB2023012559 SB2023012602 and 47 more |
||
| #VU69691 - Use of Password Hash Instead of Password for Authentication CVE-2022-46146 |
CWE-836 | Low | 9.16.6-150000.12.65.1 | 29.11.2022 |
SB2022112926 SB2022113012 SB2023022044 and 33 more |
||
| #VU68897 - Resource exhaustion CVE-2022-32149 |
CWE-400 | Medium | 9.16.6-150000.12.65.1 | 01.11.2022 |
SB2022110139 SB2022110140 SB2022110142 and 68 more |
||
| #VU68557 - Authentication Bypass Using an Alternate Path or Channel CVE-2022-35957 |
CWE-288 | Low | 9.16.6-150000.12.65.1 | 20.10.2022 |
SB2022092614 SB2022102094 SB2023050969 and 16 more |
||
| #VU68390 - Resource exhaustion CVE-2022-41715 |
CWE-400 | Medium | 9.16.6-150000.12.65.1 | 18.10.2022 |
SB2022101833 SB2022101834 SB2022102005 and 113 more |
||
| #VU67646 - Permissions, Privileges, and Access Controls CVE-2022-36062 |
CWE-264 | Medium | 9.16.6-150000.12.65.1 | 26.09.2022 |
SB2022092614 SB2022102094 SB2023062230 and 10 more |
||
| #VU67549 - Missing release of memory after effective lifetime CVE-2022-38177 |
CWE-401 | Medium | 9.9.9P1-63.37.1, 9.11.22-3.43.1, 9.16.6-150000.12.63.1, 9.16.6-150300.22.21.2, 9.16.33-150400.5.11.1 | 21.09.2022 |
SB2022092131 SB2022092140 SB2022092143 and 52 more |
||
| #VU67548 - Improper input validation CVE-2022-3080 |
CWE-20 | Medium | 9.16.33-150400.5.11.1 | 21.09.2022 |
SB2022092131 SB2022092140 SB2022092147 and 18 more |
||
| #VU67545 - Resource Management Errors CVE-2022-2795 |
CWE-399 | Medium | 9.9.9P1-63.37.1, 9.11.22-3.43.1, 9.16.6-150000.12.63.1, 9.16.6-150300.22.21.2, 9.16.33-150400.5.11.1 | 21.09.2022 |
SB2022092131 SB2022092140 SB2022092143 and 71 more |
||
| #VU67396 - Improper input validation CVE-2022-27664 |
CWE-20 | Medium | 9.16.6-150000.12.65.1 | 15.09.2022 |
SB2022091520 SB2022091521 SB2022092144 and 127 more |
||
| #VU65355 - Incorrect Regular Expression CVE-2020-7753 |
CWE-185 | Medium | 9.16.6-150000.12.65.1 | 15.07.2022 |
SB2020102724 SB2022071510 SB2023062230 and 12 more |
||
| #VU65354 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2022-31097 |
CWE-79 | Low | 9.16.6-150000.12.65.1 | 15.07.2022 |
SB2022071510 SB2022102094 SB2022102641 and 16 more |
||
| #VU65353 - Improper Authentication CVE-2022-31107 |
CWE-287 | High | 9.16.6-150000.12.65.1 | 15.07.2022 |
SB2022071510 SB2022072642 SB2022072643 and 21 more |
||
| #VU62361 - Improper Control of Generation of Code ('Code Injection') CVE-2021-43138 |
CWE-94 | Medium | 9.16.6-150000.12.65.1 | 15.04.2022 |
SB2022041532 SB2022041533 SB2022062103 and 33 more |
||
| #VU61669 - Exposure of sensitive information to an unauthorized actor CVE-2022-0155 |
CWE-200 | Low | 9.16.6-150000.12.65.1 | 28.03.2022 |
SB2022032840 SB2022032843 SB2022071505 and 32 more |
||
| #VU57967 - Improper input validation CVE-2021-3807 |
CWE-20 | Medium | 9.16.6-150000.12.65.1 | 05.11.2021 |
SB2021110513 SB2021112603 SB2022042257 and 51 more |
Showing elements 41 - 60 out of 68