Known vulnerabilities in SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP4 - page 8

Vendor: SUSE
Version: 15-SP4
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_module_for_packagehub_subpackages:*:*:*:*:*:*:*:*
Total vulnerabilities: 257
Public exploits: 13
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Module for Packagehub Subpackages version 15-SP4 SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP4 is affected by 257 vulnerabilities: 68 high, 120 medium, 69 low Critical High Medium Low

Vulnerabilities (257)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU68115 - Command injection
CVE-2022-3140
CWE-77 High
No
No
- 11.10.2022 SB2022101127
SB2022101306
SB2022101830
and 7 more
#VU67945 - Resource exhaustion
CVE-2022-36055
CWE-400 Medium
No
No
- 05.10.2022 SB2022100548
SB2022100551
SB2022102004
and 4 more
#VU67505 - Memory corruption
CVE-2022-40962
CWE-119 High
No
No
- 20.09.2022 SB2022092029
SB2022092120
SB2022092137
and 29 more
#VU67501 - Use After Free
CVE-2022-40960
CWE-416 High
No
No
- 20.09.2022 SB2022092029
SB2022092120
SB2022092137
and 29 more
#VU67500 - Security Features
CVE-2022-40959
CWE-254 Medium
No
No
- 20.09.2022 SB2022092029
SB2022092120
SB2022092137
and 29 more
#VU66921 - Security Features
CVE-2022-3034
CWE-254 Medium
No
No
- 01.09.2022 SB2022090140
SB2022090669
SB2022091542
and 11 more
#VU66920 - Security Features
CVE-2022-3032
CWE-254 Low
No
No
- 01.09.2022 SB2022090140
SB2022090669
SB2022091542
and 11 more
#VU66919 - Exposure of sensitive information to an unauthorized actor
CVE-2022-3033
CWE-200 Medium
No
No
- 01.09.2022 SB2022090140
SB2022090669
SB2022091542
and 13 more
#VU66429 - Permissions, Privileges, and Access Controls
CVE-2022-2625
CWE-264 Low
No
No
- 12.08.2022 SB2022081212
SB2022081848
SB2022082547
and 40 more
#VU65796 - Memory corruption
CVE-2022-2505
CWE-119 High
No
No
- 26.07.2022 SB2022072633
SB2022072841
SB2022072906
and 25 more
#VU65768 - Inadequate Encryption Strength
CVE-2022-26307
CWE-326 Low
No
No
- 25.07.2022 SB2022072548
SB2022100634
SB2022101830
and 5 more
#VU65760 - Improper Certificate Validation
CVE-2022-26305
CWE-295 Medium
No
No
- 25.07.2022 SB2022072520
SB2022100634
SB2022101830
and 5 more
#VU65354 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-31097
CWE-79 Low
No
No
- 15.07.2022 SB2022071510
SB2022102094
SB2022102641
and 16 more
#VU65353 - Improper Authentication
CVE-2022-31107
CWE-287 High
No
No
- 15.07.2022 SB2022071510
SB2022072642
SB2022072643
and 21 more
#VU64769 - Improper Verification of Cryptographic Signature
CVE-2022-2226
CWE-347 Low
No
No
- 29.06.2022 SB2022062903
SB2022070102
SB2022070103
and 15 more
#VU64762 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-2200
CWE-94 Medium
No
No
- 29.06.2022 SB2022062901
SB2022062902
SB2022062903
and 36 more
#VU64399 - Cross-Site Request Forgery (CSRF)
CVE-2022-21703
CWE-352 Medium
No
No
- 15.06.2022 SB2022061621
SB2022062026
SB2022102094
and 14 more
#VU64397 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-21702
CWE-79 Low
No
No
- 15.06.2022 SB2022061621
SB2022062026
SB2022102094
and 14 more
#VU64394 - Authorization Bypass Through User-Controlled Key
CVE-2022-21713
CWE-639 Low
No
No
- 15.06.2022 SB2022061621
SB2022062026
SB2022102094
and 13 more
#VU61488 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-24761
CWE-444 Medium
No
No
- 21.03.2022 SB2022032107
SB2022040525
SB2022040622
and 12 more


Showing elements 141 - 160 out of 257