Known vulnerabilities in SUSE Linux Enterprise Module for Python2 15-SP2 - page 2

Vendor: SUSE
Version: 15-SP2
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_module_for_python2:*:*:*:*:*:*:*:*
Total vulnerabilities: 39
Public exploits: 6
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Module for Python2 version 15-SP2 SUSE Linux Enterprise Module for Python2 15-SP2 is affected by 39 vulnerabilities: 1 critical, 9 high, 21 medium, 8 low Critical High Medium Low

Vulnerabilities (39)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU54225 - Use After Free
CVE-2021-3518
CWE-416 High
No
No
- 18.06.2021 SB2020110609
SB2021061811
SB2021063005
and 40 more
#VU54224 - Out-of-bounds write
CVE-2021-3517
CWE-787 High
No
No
- 18.06.2021 SB2020110609
SB2021061811
SB2021063005
and 42 more
#VU54223 - NULL Pointer Dereference
CVE-2021-3537
CWE-476 Medium
No
No
- 18.06.2021 SB2020110609
SB2021061811
SB2021063005
and 27 more
#VU54222 - Use After Free
CVE-2021-3516
CWE-416 High
No
No
- 18.06.2021 SB2020110609
SB2021061811
SB2021063005
and 28 more
#VU52748 - Out-of-bounds read
CVE-2021-20254
CWE-125 Medium
No
No
- 29.04.2021 SB2021042916
SB2021052619
SB2021060941
and 30 more
#VU51702 - Heap-based Buffer Overflow
CVE-2020-27840
CWE-122 High
No
No
- 24.03.2021 SB2021032411
SB2021040625
SB2021052619
and 15 more
#VU51701 - Out-of-bounds read
CVE-2021-20277
CWE-125 Medium
No
No
- 24.03.2021 SB2021032411
SB2021040615
SB2021040625
and 24 more
#VU50988 - Permissions, Privileges, and Access Controls
CVE-2020-28243
CWE-264 Medium
Public exploit available
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50987 - Improper Certificate Validation
CVE-2020-28972
CWE-295 Medium
No
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50986 - Improper Authentication
CVE-2021-3144
CWE-287 High
No
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 28 more
#VU50985 - Improper Certificate Validation
CVE-2020-35662
CWE-295 Medium
No
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50984 - Command injection
CVE-2021-3148
CWE-77 Medium
No
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50983 - Information Exposure Through Log Files
CVE-2021-25284
CWE-532 Low
No
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50982 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-25283
CWE-94 High
No
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50981 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2021-3197
CWE-78 High
No
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50980 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-25282
CWE-22 Medium
Public exploit available
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50979 - Improper Access Control
CVE-2021-25281
CWE-284 Medium
Public exploit available
No
- 28.02.2021 SB2021022809
SB2021022810
SB2021032201
and 29 more
#VU50814 - Improper input validation
CVE-2021-23336
CWE-20 Medium
No
No
- 19.02.2021 SB2021021907
SB2021022001
SB2021022706
and 56 more
#VU50430 - Incorrect Regular Expression
CVE-2020-28493
CWE-185 Medium
No
No
- 01.02.2021 SB2021020905
SB2021020908
SB2021020909
and 21 more


Showing elements 21 - 40 out of 39