Known vulnerabilities in SUSE Linux 12 - page 20

Vendor: SUSE
Software: SUSE Linux
Version: 12
Software CPE: cpe:2.3:o:suse:suse_linux:*:*:*:*:*:*:*:*
Total vulnerabilities: 915
Public exploits: 79
Known exploited (KEV): 18
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux version 12 SUSE Linux 12 is affected by 915 vulnerabilities: 11 critical, 199 high, 188 medium, 517 low Critical High Medium Low

Vulnerabilities (915)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU12272 - Missing release of memory after effective lifetime
CVE-2017-14343
CWE-401 Low
No
No
- 16.04.2018 SB2017083004
SB2018010545
SB2018010437
#VU9781 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CWE-300 Low
No
No
- 26.12.2017 SB2017122212
SB2017122213
#VU9776 - Stack-based buffer overflow
CVE-2017-17806
CWE-121 Low
No
No
- 26.12.2017 SB2017122601
SB2018011107
SB2018022308
and 12 more
#VU9775 - Improper input validation
CVE-2017-17805
CWE-20 Low
No
No
- 26.12.2017 SB2017122601
SB2018011107
SB2018010505
and 12 more
#VU9774 - Exposure of sensitive information to an unauthorized actor
CVE-2017-1000410
CWE-200 Low
No
No
- 26.12.2017 SB2017122601
SB2017122211
SB2017122105
and 9 more
#VU9761 - Out-of-bounds read
CVE-2017-16645
CWE-125 Low
No
No
- 26.12.2017 SB2017122104
SB2017122211
SB2017122105
and 6 more
#VU9760 - Improper input validation
CVE-2017-16646
CWE-20 Low
No
No
- 26.12.2017 SB2017122104
SB2017122211
SB2017122105
and 6 more
#VU9734 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2017-7829
CWE-451 Low
No
No
- 25.12.2017 SB2017122209
SB2017122602
SB2017122603
and 3 more
#VU9733 - Improper input validation
CVE-2017-7848
CWE-20 Low
No
No
- 25.12.2017 SB2017122209
SB2017122602
SB2017122603
and 3 more
#VU9732 - Missing release of memory after effective lifetime
CVE-2017-7847
CWE-401 Low
No
No
- 25.12.2017 SB2017122209
SB2017122602
SB2017122603
and 3 more
#VU9731 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2017-7846
CWE-79 Low
No
No
- 25.12.2017 SB2017122209
SB2017122602
SB2017122603
and 3 more
#VU9154 - Use After Free
CVE-2017-16528
CWE-416 Low
No
No
- 09.11.2017 SB2017110904
SB2017122211
SB2017122105
and 6 more
#VU8868 - Permissions, Privileges, and Access Controls
CVE-2017-10309
CWE-264 Low
Public exploit available
No
- 18.10.2017 SB2017101709
SB2017102901
SB2017120801
and 5 more
#VU8866 - Permissions, Privileges, and Access Controls
CVE-2017-10293
CWE-264 Medium
No
No
- 18.10.2017 SB2017101709
SB2017102901
SB2017121904
and 8 more
#VU33205 - Exposure of sensitive information to an unauthorized actor
CVE-2017-15277
CWE-200 Medium
No
No
- 12.10.2017 SB2017101220
SB2019061655
SB2018010545
and 1 more
#VU46326 - Memory corruption
CVE-2017-15281
CWE-119 High
No
No
- 12.10.2017 SB2018010545
SB2018010437
#VU8816 - Use After Free
CVE-2017-15265
CWE-416 Low
No
No
- 12.10.2017 SB2017101302
SB2017122211
SB2017112130
and 18 more
#VU38356 - Improper input validation
CVE-2017-14174
CWE-20 Medium
No
No
- 07.09.2017 SB2017090730
SB2018010545
SB2018010437
#VU33243 - Memory corruption
CVE-2017-14042
CWE-119 Medium
No
No
- 31.08.2017 SB2017083129
SB2017100317
SB2018010545
and 3 more
#VU7546 - Improper Control of Generation of Code ('Code Injection')
CVE-2017-1000083
CWE-94 High
Public exploit available
No
- 14.07.2017 SB2017071410
SB2017071309
SB2017071706
and 12 more


Showing elements 381 - 400 out of 915