Known vulnerabilities in busybox-warewulf3
Vendor:
SUSE
Software:
busybox-warewulf3
Software CPE:
cpe:2.3:o:suse:busybox-warewulf3:*:*:*:*:*:suse_linux:*:*
Website:
https://www.suse.com/
Total vulnerabilities:
35
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (35)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU141560 - Improper Access Control CVE-2025-60876 |
CWE-284 | Medium | 1.37.0-150500.10.14.1 | 12.08.2026 |
SB2026081244 SB2026081245 SB2026081252 and 9 more |
||
| #VU107931 - Improper input validation CVE-2025-46394 |
CWE-20 | Medium | 1.37.0-150500.10.14.1 | 25.04.2025 |
SB2025042503 SB2025072544 SB2025072545 and 8 more |
||
| #VU93460 - Use After Free CVE-2023-42363 |
CWE-416 | Low | 1.37.0-150500.10.11.1 | 27.06.2024 |
SB2024062758 SB2024062811 SB2024072672 and 11 more |
||
| #VU93459 - Use After Free CVE-2023-42364 |
CWE-416 | Low | 1.37.0-150500.10.11.1 | 27.06.2024 |
SB2024062758 SB2024062811 SB2024081535 and 14 more |
||
| #VU93458 - Use After Free CVE-2023-42365 |
CWE-416 | Low | 1.37.0-150500.10.11.1 | 27.06.2024 |
SB2024062758 SB2024062811 SB2024081535 and 14 more |
||
| #VU80391 - Out-of-bounds write CVE-2022-48174 |
CWE-787 | Medium | 1.35.0-150400.3.11.1, 1.35.0-150500.10.3.3 | 04.09.2023 |
SB2023090428 SB2023090430 SB2023090537 and 16 more |
||
| #VU69654 - Use After Free CVE-2021-42383 |
CWE-416 | Low | 1.35.0-150400.3.3.1 | 28.11.2022 |
SB2021120809 SB2022112852 SB2022112855 and 10 more |
||
| #VU66182 - Use After Free CVE-2022-30065 |
CWE-416 | High | 1.35.0-150400.3.8.1 | 08.08.2022 |
SB2022080820 SB2022080821 SB2022120201 and 8 more |
||
| #VU61584 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2011-5325 |
CWE-22 | Medium | 1.35.0-150400.3.3.1 | 24.03.2022 |
SB20170807113 SB2022032408 SB2021102722 and 4 more |
||
| #VU58692 - Use After Free CVE-2021-42379 |
CWE-416 | Low | 1.35.0-150400.3.3.1 | 08.12.2021 |
SB2021120809 SB2021120810 SB2022012015 and 16 more |
||
| #VU58685 - Use After Free CVE-2021-42384 |
CWE-416 | Low | 1.35.0-150400.3.3.1 | 08.12.2021 |
SB2021120809 SB2021120810 SB2022012015 and 16 more |
||
| #VU58684 - Use After Free CVE-2021-42382 |
CWE-416 | Low | 1.35.0-150400.3.3.1 | 08.12.2021 |
SB2021120809 SB2021120810 SB2021120727 and 15 more |
||
| #VU58683 - Use After Free CVE-2021-42385 |
CWE-416 | Low | 1.35.0-150400.3.3.1 | 08.12.2021 |
SB2021120809 SB2021120810 SB2022012015 and 16 more |
||
| #VU58678 - Use After Free CVE-2021-42386 |
CWE-416 | Low | 1.35.0-150400.3.3.1 | 08.12.2021 |
SB2021120809 SB2021120810 SB2022012015 and 16 more |
||
| #VU58673 - Use After Free CVE-2021-42381 |
CWE-416 | Low | 1.35.0-150400.3.3.1 | 08.12.2021 |
SB2021120809 SB2021120810 SB2021120727 and 15 more |
||
| #VU18673 - Heap-based Buffer Overflow CVE-2016-2148 |
CWE-122 | Medium | 1.35.0-150400.3.3.1 | 04.06.2019 |
SB2017020905 SB2016032210 SB2016120405 and 4 more |
||
| #VU31261 - NULL Pointer Dereference CVE-2015-9261 |
CWE-476 | Low | 1.35.0-150400.3.3.1 | 26.07.2018 |
SB2018072626 SB2022112852 SB2022112855 and 2 more |
||
| #VU33083 - Improper input validation CVE-2014-9645 |
CWE-20 | Low | 1.35.0-150400.3.8.1 | 12.03.2017 |
SB2017031202 SB2015032002 SB2015032902 and 3 more |
||
| #VU33069 - Integer overflow CVE-2016-2147 |
CWE-190 | Medium | 1.35.0-150400.3.3.1 | 09.02.2017 |
SB2017020920 SB2016032209 SB2016120405 and 4 more |
||
| #VU31448 - Resource Management Errors CVE-2016-6301 |
CWE-399 | Medium | 1.35.0-150400.3.3.1 | 09.12.2016 |
SB2016120904 SB2017011815 SB2017010106 and 4 more |
Showing elements 1 - 20 out of 35