Known vulnerabilities in SUSE Linux Enterprise High Availability Extension 12

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_high_availability_extension_12:*:*:*:*:*:*:*:*
Total vulnerabilities: 1374
Public exploits: 20
Known exploited (KEV): 8
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise High Availability Extension 12 SUSE Linux Enterprise High Availability Extension 12 is affected by 1374 known vulnerabilities: 14 high, 41 medium, 1319 low Critical High Medium Low

Vulnerabilities (1374)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU139941 - Out-of-bounds write
CVE-2026-6949
CWE-787 Medium
No
No
- 28.07.2026 SB2026072905
SB2026072928
SB2026072935
and 14 more
#VU139942 - Out-of-bounds read
CVE-2026-58216
CWE-125 Low
No
No
- 28.07.2026 SB2026072905
SB2026072928
SB2026072935
and 14 more
#VU139943 - Resource exhaustion
CVE-2026-58218
CWE-400 Medium
No
No
- 28.07.2026 SB2026072905
SB2026072928
SB2026072935
and 14 more
#VU139944 - Improper Access Control
CVE-2026-58221
CWE-284 Medium
No
No
- 28.07.2026 SB2026072905
SB2026072928
SB2026072935
and 14 more
#VU139945 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2026-58222
CWE-89 Low
No
No
- 28.07.2026 SB2026072905
SB2026072928
SB2026072935
and 14 more
#VU139946 - Improper input validation
CVE-2026-58224
CWE-20 Medium
No
No
- 28.07.2026 SB2026072905
SB2026072928
SB2026072935
and 14 more
#VU139974 - Incorrect Permission Assignment for Critical Resource
CVE-2026-15779
CWE-732 Low
No
No
- 21.07.2026 SB2026072928
SB2026072935
SB2026072936
and 9 more
#VU132341 - Improper Access Control
CVE-2026-2340
CWE-284 Low
No
No
- 27.05.2026 SB2026052704
SB2026052705
SB2026052707
and 17 more
#VU132343 - NULL Pointer Dereference
CVE-2026-3238
CWE-476 Medium
No
No
- 27.05.2026 SB2026052704
SB2026052705
SB2026052707
and 13 more
#VU132344 - Command injection
CVE-2026-4408
CWE-77 High
No
No
- 27.05.2026 SB2026052704
SB2026052705
SB2026052707
and 20 more
#VU132345 - Command injection
CVE-2026-4480
CWE-77 High
No
No
- 27.05.2026 SB2026052704
SB2026052705
SB2026052707
and 18 more
#VU117239 - Out-of-bounds read
CVE-2025-9640
CWE-125 Medium
No
No
- 15.10.2025 SB2025101595
SB20251015151
SB20251015152
and 18 more
#VU117238 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2025-10230
CWE-78 High
Available
No
- 15.10.2025 SB2025101595
SB20251015151
SB20251015152
and 18 more
#VU104502 - Use After Free
CVE-2021-47634
CWE-416 Low
No
No
- 26.02.2025 SB20250226319
SB2025031149
SB2025032177
and 2 more
#VU104405 - Missing release of memory after effective lifetime
CVE-2021-47644
CWE-401 Low
No
No
- 26.02.2025 SB20250226222
SB2025031149
SB2025032664
and 3 more
#VU92987 - Resource Management Errors
CVE-2022-48636
CWE-399 Low
No
No
- 20.06.2024 SB20240620267
SB2024070449
SB2024070713
and 17 more
#VU92031 - Improper Locking
CVE-2022-48664
CWE-667 Low
No
No
- 13.06.2024 SB2024061336
SB2024070836
SB2024070837
and 11 more
#VU89997 - Missing release of memory after effective lifetime
CVE-2022-48650
CWE-401 Low
No
No
- 30.05.2024 SB20240530102
SB20240702138
SB20240702139
and 17 more
#VU63575 - Double Free
CVE-2021-37159
CWE-415 Low
No
No
- 24.05.2022 SB2021113018
SB2021113019
SB2022062928
and 31 more
#VU56018 - Memory corruption
CVE-2021-22543
CWE-119 Low
Available
No
- 20.08.2021 SB2021052641
SB2021082206
SB2021083123
and 56 more


Showing elements 1 - 20 out of 1374