Known vulnerabilities in SUSE Linux Enterprise Desktop 15 SP5 - page 3

Vendor: SUSE
Version: SP5
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_desktop_15:*:*:*:*:*:*:*:*
Total vulnerabilities: 3723
Public exploits: 73
Known exploited (KEV): 26
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Desktop 15 version SP5 SUSE Linux Enterprise Desktop 15 SP5 is affected by 3723 vulnerabilities: 16 critical, 281 high, 587 medium, 2838 low Critical High Medium Low

Vulnerabilities (3723)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU120229 - Improper Authentication
CVE-2025-62349
CWE-287 Low
No
No
- 19.12.2025 SB2025121950
SB2025121951
SB2025121952
and 32 more
#VU120228 - Improper Control of Generation of Code ('Code Injection')
CVE-2025-62348
CWE-94 Medium
No
No
- 19.12.2025 SB2025121950
SB2025121951
SB2025121952
and 32 more
#VU118722 - Allocation of Resources Without Limits or Throttling
CVE-2025-47908
CWE-770 Medium
No
No
- 24.11.2025 SB2025112452
SB2025112453
SB2025112454
and 2 more
#VU115138 - Out-of-bounds read
CVE-2025-9086
CWE-125 Low
No
No
- 10.09.2025 SB2025091034
SB2025091144
SB2025091301
and 44 more
#VU115137 - Use of Insufficiently Random Values
CVE-2025-10148
CWE-330 Low
No
No
- 10.09.2025 SB2025091034
SB2025091144
SB2025091301
and 10 more
#VU114096 - Improper input validation
CVE-2025-8715
CWE-20 Medium
No
No
- 14.08.2025 SB2025081496
SB2025081898
SB2025082551
and 52 more
#VU114095 - Improper Control of Generation of Code ('Code Injection')
CVE-2025-8714
CWE-94 Low
Public exploit available
No
- 14.08.2025 SB2025081496
SB2025081898
SB2025082551
and 60 more
#VU114094 - Permissions, Privileges, and Access Controls
CVE-2025-8713
CWE-264 Low
No
No
- 14.08.2025 SB2025081496
SB2025081898
SB2025082551
and 32 more
#VU108834 - Buffer over-read
CVE-2025-4207
CWE-126 Medium
No
No
- 09.05.2025 SB2025050920
SB2025051669
SB20250521157
and 38 more
#VU106253 - Improper input validation
CVE-2025-22870
CWE-20 Medium
Public exploit available
No
- 30.03.2025 SB2025033001
SB2025033002
SB2025033003
and 106 more
#VU105450 - Resource exhaustion
CVE-2025-27144
CWE-400 Medium
No
No
- 07.03.2025 SB2025030735
SB2025030736
SB2025030737
and 80 more
#VU104138 - Improper Link Resolution Before File Access ('Link Following')
CVE-2024-45339
CWE-59 Low
No
No
- 21.02.2025 SB2025022137
SB2025022138
SB2025022141
and 35 more
#VU104016 - Exposure of sensitive information to an unauthorized actor
CVE-2024-22037
CWE-200 Low
No
No
- 17.02.2025 SB2025021737
SB2025021738
SB2025021739
and 5 more
#VU103503 - Exposure of sensitive information to an unauthorized actor
CVE-2024-11741
CWE-200 Medium
No
No
- 03.02.2025 SB2025020329
SB2025022148
SB2025022149
and 1 more
#VU103421 - Argument Injection or Modification
CVE-2025-21613
CWE-88 Low
No
No
- 29.01.2025 SB2025012918
SB2025012919
SB2025012920
and 27 more
#VU101894 - Insufficient Technical Documentation
CVE-2024-51744
CWE-1059 Low
No
No
- 23.12.2024 SB2024122304
SB2024122309
SB20241230139
and 21 more
#VU101777 - Improper Authorization
CVE-2024-45337
CWE-285 Medium
Public exploit available
No
- 13.12.2024 SB2024121332
SB2024121333
SB2024121334
and 93 more
#VU100999 - Information Exposure Through Log Files
CVE-2024-8775
CWE-532 Low
No
No
- 27.11.2024 SB2024112745
SB2024112746
SB2024120371
and 14 more
#VU99259 - Improper Access Control
CVE-2024-8118
CWE-284 Low
No
No
- 22.10.2024 SB20241022375
SB2025021467
SB2025021742
and 1 more
#VU96048 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-6837
CWE-79 Medium
No
No
- 15.08.2024 SB2024081534
SB2025021467
SB2025021742
and 1 more


Showing elements 41 - 60 out of 3723