Known vulnerabilities in SUSE Linux Enterprise High Availability Extension 15 SP1 - page 6

Vendor: SUSE
Version: SP1
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_high_availability_extension_15:*:*:*:*:*:*:*:*
Total vulnerabilities: 143
Public exploits: 7
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise High Availability Extension 15 version SP1 SUSE Linux Enterprise High Availability Extension 15 SP1 is affected by 143 vulnerabilities: 2 high, 23 medium, 118 low Critical High Medium Low

Vulnerabilities (143)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU75996 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2023-30772
CWE-362 Low
No
No
- 10.05.2023 SB2023051050
SB2023051052
SB2023051053
and 42 more
#VU75994 - Use After Free
CVE-2023-2162
CWE-416 Low
No
No
- 10.05.2023 SB2023051048
SB2023051052
SB2023051053
and 101 more
#VU75454 - Security Features
CVE-2023-1998
CWE-254 Low
Public exploit available
No
- 24.04.2023 SB2023042434
SB2023042440
SB2023051052
and 55 more
#VU75453 - Use After Free
CVE-2023-1990
CWE-416 Low
No
No
- 24.04.2023 SB2023042432
SB2023042440
SB2023051052
and 50 more
#VU75452 - Use After Free
CVE-2023-1989
CWE-416 Low
No
No
- 24.04.2023 SB2023042431
SB2023042440
SB2023051052
and 80 more
#VU75451 - Use After Free
CVE-2023-1855
CWE-416 Low
No
No
- 24.04.2023 SB2023042430
SB2023042440
SB2023051052
and 59 more
#VU75450 - Use After Free
CVE-2023-1670
CWE-416 Low
No
No
- 24.04.2023 SB2023042429
SB2023042440
SB2023042639
and 48 more
#VU75323 - Out-of-bounds read
CVE-2023-2124
CWE-125 Low
No
No
- 19.04.2023 SB2023041913
SB2023050422
SB2023051052
and 80 more
#VU74690 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2022-20567
CWE-362 Low
No
No
- 10.04.2023 SB2022120550
SB2023041039
SB2023041042
and 6 more
#VU74631 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2023-1390
CWE-835 Medium
No
No
- 10.04.2023 SB2023041035
SB2023041039
SB2023041040
and 40 more
#VU74626 - Missing release of memory after effective lifetime
CVE-2021-3923
CWE-401 Low
No
No
- 10.04.2023 SB2023041030
SB2023041039
SB2023041040
and 16 more
#VU74122 - Use After Free
CVE-2023-1281
CWE-416 Low
No
No
- 28.03.2023 SB2023032818
SB2023032832
SB2023032833
and 85 more
#VU73783 - NULL Pointer Dereference
CVE-2023-1095
CWE-476 Low
No
No
- 17.03.2023 SB2023031717
SB2023031727
SB2023032843
and 35 more
#VU72742 - Type confusion
CVE-2023-1076
CWE-843 Low
No
No
- 03.03.2023 SB2023030317
SB2023031727
SB2023032843
and 47 more
#VU72098 - Use After Free
CVE-2023-0590
CWE-416 Low
No
No
- 09.02.2023 SB2023020962
SB2023020963
SB2023020964
and 80 more
#VU68961 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-27777
CWE-79 Low
No
No
- 03.11.2022 SB2022110317
SB2022110319
SB2022110320
and 2 more
#VU63838 - Use After Free
CVE-2021-4203
CWE-416 Low
No
No
- 31.05.2022 SB2022062928
SB2022062931
SB2022070643
and 42 more
#VU46724 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-15169
CWE-79 Low
No
No
- 11.09.2020 SB2020091507
SB2020092504
SB2023042728
and 3 more
#VU28241 - Cross-Site Request Forgery (CSRF)
CVE-2020-8167
CWE-352 Low
No
No
- 26.05.2020 SB2020052603
SB2020092504
SB2023042728
#VU9884 - Exposure of sensitive information to an unauthorized actor
CVE-2017-5753
CWE-200 Low
Public exploit available
Exploited
- 09.01.2018 SB2018010416
SB2018010502
SB2018010903
and 92 more


Showing elements 101 - 120 out of 143