Known vulnerabilities in SUSE Linux Enterprise Desktop 15-SP4 - page 38

Vendor: SUSE
Version: 15-SP4
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_desktop:*:*:*:*:*:*:*:*
Total vulnerabilities: 1016
Public exploits: 40
Known exploited (KEV): 8
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Desktop version 15-SP4 SUSE Linux Enterprise Desktop 15-SP4 is affected by 1016 vulnerabilities: 3 critical, 252 high, 340 medium, 421 low Critical High Medium Low

Vulnerabilities (1016)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU64922 - Missing Encryption of Sensitive Data
CVE-2022-2097
CWE-311 Low
No
No
- 05.07.2022 SB2022070509
SB2022070522
SB2022070531
and 112 more
#VU64685 - Improper Verification of Cryptographic Signature
CVE-2022-32208
CWE-347 Medium
No
No
- 27.06.2022 SB2022062711
SB2022062724
SB2022062816
and 73 more
#VU64684 - Incorrect Default Permissions
CVE-2022-32207
CWE-276 Low
No
No
- 27.06.2022 SB2022062711
SB2022062724
SB2022062816
and 35 more
#VU64682 - Resource exhaustion
CVE-2022-32206
CWE-400 Medium
No
No
- 27.06.2022 SB2022062711
SB2022062724
SB2022062816
and 80 more
#VU64681 - Resource exhaustion
CVE-2022-32205
CWE-400 Medium
No
No
- 27.06.2022 SB2022062711
SB2022062724
SB2022062816
and 32 more
#VU64660 - Improper Authentication
CVE-2022-22967
CWE-287 Low
No
No
- 24.06.2022 SB2022062428
SB2022062430
SB2022062441
and 13 more
#VU64573 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2015-20107
CWE-78 High
No
No
- 22.06.2022 SB2022062206
SB2022062207
SB2022062436
and 85 more
#VU64559 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-2068
CWE-78 Medium
No
No
- 21.06.2022 SB2022062120
SB2022062125
SB2022062236
and 135 more
#VU64086 - Resource exhaustion
CVE-2022-30522
CWE-400 Medium
No
No
- 08.06.2022 SB2022060817
SB2022060901
SB2022061723
and 31 more
#VU64085 - Improper input validation
CVE-2022-29404
CWE-20 Medium
No
No
- 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 30 more
#VU64083 - Out-of-bounds read
CVE-2022-28615
CWE-125 Low
No
No
- 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 41 more
#VU64081 - Out-of-bounds read
CVE-2022-28614
CWE-125 Low
No
No
- 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 36 more
#VU64078 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-26377
CWE-444 Medium
Public exploit available
No
- 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 39 more
#VU63945 - Out-of-bounds read
CVE-2022-1586
CWE-125 Medium
No
No
- 02.06.2022 SB2022060210
SB2022071156
SB2022071217
and 71 more
#VU62768 - Uncontrolled Memory Allocation
CVE-2022-1473
CWE-789 Low
No
No
- 03.05.2022 SB2022050315
SB2022050436
SB2022050532
and 18 more
#VU62767 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2022-1434
CWE-300 Low
No
No
- 03.05.2022 SB2022050315
SB2022050436
SB2022050532
and 10 more
#VU62766 - Security Features
CVE-2022-1343
CWE-254 Medium
No
No
- 03.05.2022 SB2022050315
SB2022050436
SB2022050532
and 14 more
#VU62765 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-1292
CWE-78 Medium
Public exploit available
No
- 03.05.2022 SB2022050315
SB2022050436
SB2022050503
and 141 more
#VU62593 - Improper Authentication
CVE-2022-24882
CWE-287 High
No
No
- 26.04.2022 SB2022042601
SB2022042602
SB2022060721
and 8 more
#VU62592 - Improper Authentication
CVE-2022-24883
CWE-287 High
No
No
- 26.04.2022 SB2022042601
SB2022042602
SB2022060721
and 8 more


Showing elements 741 - 760 out of 1016