Known vulnerabilities in SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP4

Vendor: SUSE
Version: 15-SP4
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_module_for_packagehub_subpackages:*:*:*:*:*:*:*:*
Total vulnerabilities: 257
Public exploits: 13
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Module for Packagehub Subpackages version 15-SP4 SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP4 is affected by 257 vulnerabilities: 68 high, 120 medium, 69 low Critical High Medium Low

Vulnerabilities (257)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU72132 - Improper Authentication
CVE-2022-39229
CWE-287 Low
No
No
- 12.02.2023 SB2023021201
SB2023021202
SB2023021203
and 13 more
#VU72131 - Exposure of sensitive information to an unauthorized actor
CVE-2022-39201
CWE-200 Medium
No
No
- 12.02.2023 SB2023021201
SB2023021202
SB2023021203
and 12 more
#VU72130 - Exposure of sensitive information to an unauthorized actor
CVE-2022-31130
CWE-200 Medium
No
No
- 12.02.2023 SB2023021201
SB2023021202
SB2023021203
and 11 more
#VU72128 - Improper Verification of Cryptographic Signature
CVE-2022-31123
CWE-347 Medium
No
No
- 11.02.2023 SB2023021201
SB2023021202
SB2023021203
and 15 more
#VU71716 - Improper Verification of Cryptographic Signature
CVE-2023-0430
CWE-347 Medium
No
No
- 01.02.2023 SB2023020101
SB2023020201
SB2023020602
and 14 more
#VU71620 - Heap-based Buffer Overflow
CVE-2022-48281
CWE-122 High
No
No
- 30.01.2023 SB2023013012
SB2023013014
SB2023013015
and 27 more
#VU71229 - Incorrect Regular Expression
CVE-2023-23603
CWE-185 Low
No
No
- 17.01.2023 SB2023011728
SB2023011729
SB2023011807
and 37 more
#VU71228 - Security Features
CVE-2023-23602
CWE-254 Medium
No
No
- 17.01.2023 SB2023011728
SB2023011729
SB2023011807
and 40 more
#VU71227 - Permissions, Privileges, and Access Controls
CVE-2023-23601
CWE-264 Low
No
No
- 17.01.2023 SB2023011728
SB2023011729
SB2023011807
and 38 more
#VU71225 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-23599
CWE-78 Medium
No
No
- 17.01.2023 SB2023011728
SB2023011729
SB2023011807
and 33 more
#VU71224 - Permissions, Privileges, and Access Controls
CVE-2023-23598
CWE-264 Medium
No
No
- 17.01.2023 SB2023011728
SB2023011729
SB2023011807
and 37 more
#VU70154 - Insufficient UI Warning of Dangerous Operations
CVE-2022-46877
CWE-357 Medium
No
No
- 13.12.2022 SB2022121330
SB2022121511
SB2023011007
and 36 more
#VU70145 - Memory corruption
CVE-2022-46871
CWE-119 High
No
No
- 13.12.2022 SB2022121330
SB2022121511
SB2023011007
and 37 more
#VU69594 - Out-of-bounds read
CVE-2022-39316
CWE-125 Medium
No
No
- 25.11.2022 SB2022112503
SB2022112505
SB2022112508
and 11 more
#VU69592 - Improper Validation of Array Index
CVE-2022-39317
CWE-129 Medium
No
No
- 25.11.2022 SB2022112503
SB2022112505
SB2022112508
and 11 more
#VU69590 - Out-of-bounds read
CVE-2022-41877
CWE-125 Low
No
No
- 25.11.2022 SB2022112503
SB2022112508
SB2023021343
and 12 more
#VU69589 - Out-of-bounds read
CVE-2022-39320
CWE-125 Low
No
No
- 25.11.2022 SB2022112503
SB2022112505
SB2022112508
and 11 more
#VU69588 - Absolute Path Traversal
CVE-2022-39347
CWE-36 Medium
No
No
- 25.11.2022 SB2022112503
SB2022112505
SB2022112508
and 11 more
#VU69485 - Exposure of sensitive information to an unauthorized actor
CVE-2022-39307
CWE-200 Medium
No
No
- 22.11.2022 SB2022112220
SB2023021202
SB2023021203
and 12 more
#VU69484 - Improper input validation
CVE-2022-39306
CWE-20 Medium
No
No
- 22.11.2022 SB2022112220
SB2023021202
SB2023021203
and 12 more


Showing elements 1 - 20 out of 257