Known vulnerabilities in SUSE Linux Enterprise High Availability Extension 15 SP1

Vendor: SUSE
Version: SP1
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_high_availability_extension_15:*:*:*:*:*:*:*:*
Total vulnerabilities: 143
Public exploits: 7
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise High Availability Extension 15 version SP1 SUSE Linux Enterprise High Availability Extension 15 SP1 is affected by 143 vulnerabilities: 2 high, 23 medium, 118 low Critical High Medium Low

Vulnerabilities (143)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU85736 - Incorrect Default Permissions
CVE-2024-23301
CWE-276 Low
No
No
- 23.01.2024 SB2024012363
SB2024012401
SB2024012402
and 14 more
#VU85443 - Out-of-bounds read
CVE-2023-6610
CWE-125 Low
No
No
- 16.01.2024 SB2024011642
SB2024011643
SB2024011644
and 47 more
#VU85442 - Out-of-bounds read
CVE-2023-6606
CWE-125 Low
No
No
- 16.01.2024 SB2024011642
SB2024011643
SB2024011644
and 63 more
#VU85023 - Use After Free
CVE-2023-51779
CWE-416 Low
No
No
- 05.01.2024 SB2024010526
SB2024011643
SB2024011644
and 69 more
#VU85021 - Out-of-bounds write
CVE-2023-6931
CWE-787 Low
No
No
- 05.01.2024 SB2024010524
SB2024011643
SB2024011644
and 99 more
#VU84788 - Out-of-bounds read
CVE-2023-6121
CWE-125 Medium
No
No
- 26.12.2023 SB2023122629
SB2023122701
SB2024011643
and 46 more
#VU84585 - Use After Free
CVE-2023-6932
CWE-416 Low
No
No
- 20.12.2023 SB2023122001
SB2024010909
SB2024011643
and 95 more
#VU84354 - Out-of-bounds write
CVE-2023-45863
CWE-787 Low
No
No
- 12.12.2023 SB20231212112
SB20231212116
SB20231212117
and 54 more
#VU84353 - Out-of-bounds read
CVE-2023-39197
CWE-125 Medium
No
No
- 12.12.2023 SB20231212111
SB20231212116
SB20231212117
and 42 more
#VU83904 - Use After Free
CVE-2023-39198
CWE-416 Low
No
No
- 06.12.2023 SB2023120615
SB2023120618
SB2023121201
and 48 more
#VU83902 - Improper input validation
CVE-2023-45539
CWE-20 Medium
No
No
- 06.12.2023 SB2023082120
SB2023120617
SB2023120620
and 21 more
#VU83381 - Memory corruption
CVE-2023-45871
CWE-119 High
No
No
- 21.11.2023 SB2023112172
SB2023112181
SB2023112183
and 94 more
#VU83311 - Out-of-bounds write
CVE-2023-5717
CWE-787 Low
No
No
- 20.11.2023 SB2023112064
SB2023112182
SB2023112184
and 100 more
#VU82971 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2023-40175
CWE-444 Medium
No
No
- 10.11.2023 SB2023111025
SB2023111028
SB2024021549
and 8 more
#VU79767 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2023-40225
CWE-444 Medium
No
No
- 21.08.2023 SB2023082120
SB2023082121
SB2023082122
and 17 more
#VU79496 - NULL Pointer Dereference
CVE-2023-31083
CWE-476 Low
No
No
- 14.08.2023 SB2023081452
SB2023081456
SB2023081458
and 59 more
#VU72506 - Use After Free
CVE-2023-0461
CWE-416 Low
No
No
- 22.02.2023 SB2023022253
SB2023022256
SB2023030301
and 104 more
#VU66396 - Use After Free
CVE-2022-2586
CWE-416 Low
Public exploit available
Exploited
- 11.08.2022 SB2022081108
SB2022081110
SB2022081111
and 53 more
#VU53578 - Improper Access Control
CVE-2020-26555
CWE-284 Low
No
No
- 26.05.2021 SB2021052614
SB2021060801
SB2021061709
and 35 more
#VU28244 - Cross-Site Request Forgery (CSRF)
CVE-2020-8166
CWE-352 Low
No
No
- 26.05.2020 SB2020052605
SB2020092504
SB2024011540


Showing elements 1 - 20 out of 143