Known vulnerabilities in SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP3 - page 8

Vendor: SUSE
Version: 15-SP3
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_module_for_packagehub_subpackages:*:*:*:*:*:*:*:*
Total vulnerabilities: 408
Public exploits: 13
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Module for Packagehub Subpackages version 15-SP3 SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP3 is affected by 408 vulnerabilities: 1 critical, 98 high, 178 medium, 131 low Critical High Medium Low

Vulnerabilities (408)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU67361 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2021-39360
CWE-300 Medium
No
No
- 14.09.2022 SB2021082208
SB2022091458
SB2022091459
and 4 more
#VU66922 - Improper input validation
CVE-2022-36059
CWE-20 Low
No
No
- 01.09.2022 SB2022090140
SB2022090306
SB2022090669
and 11 more
#VU66725 - Use After Free
CVE-2022-38476
CWE-416 Low
No
No
- 23.08.2022 SB2022082315
SB2022082316
SB2022082515
and 27 more
#VU66724 - Memory corruption
CVE-2022-38478
CWE-119 High
No
No
- 23.08.2022 SB2022082315
SB2022082316
SB2022082411
and 36 more
#VU66723 - Memory corruption
CVE-2022-38477
CWE-119 High
No
No
- 23.08.2022 SB2022082315
SB2022082316
SB2022082502
and 28 more
#VU66720 - Permissions, Privileges, and Access Controls
CVE-2022-38473
CWE-264 Medium
No
No
- 23.08.2022 SB2022082315
SB2022082316
SB2022082411
and 36 more
#VU66719 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-38472
CWE-451 Medium
No
No
- 23.08.2022 SB2022082315
SB2022082316
SB2022082411
and 35 more
#VU66706 - Improper Handling of Exceptional Conditions
CVE-2022-32990
CWE-755 Low
No
No
- 23.08.2022 SB2022060209
SB2022082306
SB2022090652
and 6 more
#VU66429 - Permissions, Privileges, and Access Controls
CVE-2022-2625
CWE-264 Low
No
No
- 12.08.2022 SB2022081212
SB2022081848
SB2022082547
and 40 more
#VU65795 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-36318
CWE-79 Medium
No
No
- 26.07.2022 SB2022072633
SB2022072634
SB2022072815
and 36 more
#VU65794 - Exposure of resource to wrong sphere
CVE-2022-36314
CWE-668 Low
No
No
- 26.07.2022 SB2022072633
SB2022072906
SB2022091450
and 4 more
#VU65793 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-36319
CWE-451 Low
No
No
- 26.07.2022 SB2022072633
SB2022072634
SB2022072815
and 36 more
#VU64763 - Memory corruption
CVE-2022-34484
CWE-119 High
No
No
- 29.06.2022 SB2022062901
SB2022062902
SB2022062903
and 37 more
#VU64756 - Integer overflow
CVE-2022-34481
CWE-190 Medium
No
No
- 29.06.2022 SB2022062901
SB2022062902
SB2022062903
and 42 more
#VU58432 - Use After Free
CVE-2020-21913
CWE-416 Medium
No
No
- 29.11.2021 SB2021112917
SB2021112918
SB2022021808
and 10 more
#VU57585 - Out-of-bounds write
CVE-2021-41159
CWE-787 High
No
No
- 21.10.2021 SB2021102126
SB2021111204
SB2021111205
and 15 more
#VU57584 - Out-of-bounds write
CVE-2021-41160
CWE-787 High
No
No
- 21.10.2021 SB2021102126
SB2021111204
SB2021111205
and 17 more
#VU55006 - Use After Free
CVE-2021-36980
CWE-416 High
No
No
- 20.07.2021 SB2021072016
SB2021072017
SB2021102110
and 15 more
#VU48482 - Out-of-bounds read
CVE-2020-25713
CWE-125 Medium
No
No
- 17.11.2020 SB2020111717
SB2020112001
SB2020111326
and 8 more
#VU6900 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2017-6512
CWE-362 Low
No
No
- 05.06.2017 SB2017060503
SB2017060504
SB2017091703
and 8 more


Showing elements 141 - 160 out of 408