Known vulnerabilities in Python 3 Module 15-SP4

Vendor: SUSE
Version: 15-SP4
Software CPE: cpe:2.3:o:suse:python_3_module:*:*:*:*:*:*:*:*
Total vulnerabilities: 15
Public exploits: 2
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Python 3 Module version 15-SP4 Python 3 Module 15-SP4 is affected by 15 vulnerabilities: 3 high, 9 medium, 3 low Critical High Medium Low

Vulnerabilities (15)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU84849 - Command injection
CVE-2023-5752
CWE-77 Medium
No
No
- 28.12.2023 SB2023122824
SB2023122825
SB2023122826
and 32 more
#VU83930 - NULL Pointer Dereference
CVE-2023-49083
CWE-476 Medium
No
No
- 06.12.2023 SB2023120655
SB2023120656
SB2023121440
and 63 more
#VU83291 - Use After Free
CVE-2023-45322
CWE-416 Low
No
No
- 20.11.2023 SB2023112027
SB2023112031
SB2023112032
and 16 more
#VU83261 - Resource exhaustion
CVE-2023-44271
CWE-400 Medium
No
No
- 18.11.2023 SB2023111809
SB2023111810
SB2023111811
and 25 more
#VU82548 - Inefficient Algorithmic Complexity
CVE-2023-46136
CWE-407 Medium
No
No
- 30.10.2023 SB2023103003
SB2023103183
SB2023112907
and 73 more
#VU82547 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2023-46137
CWE-444 Medium
No
No
- 30.10.2023 SB2023103002
SB2023112046
SB2023112942
and 16 more
#VU81044 - Out-of-bounds read
CVE-2023-39615
CWE-125 Medium
No
No
- 21.09.2023 SB2023092155
SB2023092202
SB2023092203
and 61 more
#VU80585 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2023-41105
CWE-22 Low
No
No
- 11.09.2023 SB2023082825
SB2023100328
SB2023100362
and 18 more
#VU80228 - Cleartext Transmission of Sensitive Information
CVE-2023-40217
CWE-319 Medium
No
No
- 01.09.2023 SB2023090142
SB2023090143
SB2023090144
and 139 more
#VU72618 - Improper input validation
CVE-2023-24329
CWE-20 Medium
No
No
- 28.02.2023 SB2023022819
SB2023022822
SB2023030832
and 158 more
#VU69392 - Resource exhaustion
CVE-2022-45061
CWE-400 Medium
No
No
- 16.11.2022 SB2022111650
SB2022112824
SB2022112856
and 125 more
#VU69391 - Deserialization of Untrusted Data
CVE-2022-42919
CWE-502 Low
No
No
- 16.11.2022 SB2022111649
SB2022111655
SB2022111656
and 35 more
#VU68887 - Integer overflow
CVE-2022-37454
CWE-190 High
Public exploit available
No
- 01.11.2022 SB2022110118
SB2022110119
SB2022110209
and 69 more
#VU67583 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2007-4559
CWE-22 High
Public exploit available
No
- 22.09.2022 SB2007082801
SB2022120206
SB2023060825
and 68 more
#VU64573 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2015-20107
CWE-78 High
No
No
- 22.06.2022 SB2022062206
SB2022062207
SB2022062436
and 85 more