Known vulnerabilities in SUSE Linux Enterprise Module for Python2 15-SP3

Vendor: SUSE
Version: 15-SP3
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_module_for_python2:*:*:*:*:*:*:*:*
Total vulnerabilities: 70
Public exploits: 4
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Module for Python2 version 15-SP3 SUSE Linux Enterprise Module for Python2 15-SP3 is affected by 70 vulnerabilities: 1 critical, 12 high, 32 medium, 25 low Critical High Medium Low

Vulnerabilities (70)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU69337 - Integer overflow
CVE-2022-42898
CWE-190 Medium
No
No
- 15.11.2022 SB2022111530
SB2022111610
SB2022111621
and 123 more
#VU69151 - Security Features
CVE-2022-38023
CWE-254 High
No
No
- 09.11.2022 SB2022110912
SB2022121537
SB2022121801
and 46 more
#VU69104 - Permissions, Privileges, and Access Controls
CVE-2022-37967
CWE-264 Low
No
No
- 08.11.2022 SB2022110827
SB2022121537
SB2022121801
and 13 more
#VU69094 - Permissions, Privileges, and Access Controls
CVE-2022-37966
CWE-264 High
No
No
- 08.11.2022 SB2022110822
SB2022121537
SB2022121801
and 23 more
#VU68829 - Resource Management Errors
CVE-2022-40304
CWE-399 Medium
No
No
- 30.10.2022 SB2022103005
SB2022103006
SB2022103007
and 90 more
#VU68828 - Integer overflow
CVE-2022-40303
CWE-190 High
No
No
- 30.10.2022 SB2022103005
SB2022103006
SB2022103007
and 88 more
#VU68701 - Heap-based Buffer Overflow
CVE-2022-3437
CWE-122 Low
No
No
- 25.10.2022 SB2022102524
SB2022102558
SB2022102521
and 33 more
#VU67591 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2021-28861
CWE-601 Low
No
No
- 22.09.2022 SB2022092243
SB2022092244
SB2022093032
and 76 more
#VU67271 - Incorrect Default Permissions
CVE-2022-32743
CWE-276 Medium
No
No
- 13.09.2022 SB2022091372
SB2022091377
SB2022111138
and 5 more
#VU67270 - Use of Insufficiently Random Values
CVE-2022-1615
CWE-330 Low
No
No
- 13.09.2022 SB2022091371
SB2022091377
SB2022091448
and 18 more
#VU66813 - NULL Pointer Dereference
CVE-2022-2309
CWE-476 Medium
No
No
- 29.08.2022 SB2022082928
SB2022082929
SB2022082930
and 28 more
#VU66123 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2016-3709
CWE-79 Medium
No
No
- 05.08.2022 SB2022080507
SB2022080510
SB2022080808
and 43 more
#VU65827 - Use After Free
CVE-2022-32746
CWE-416 Low
No
No
- 27.07.2022 SB2022072721
SB2022072728
SB2022072922
and 30 more
#VU65826 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-32745
CWE-835 Medium
No
No
- 27.07.2022 SB2022072721
SB2022072728
SB2022072922
and 19 more
#VU65825 - Permissions, Privileges, and Access Controls
CVE-2022-32744
CWE-264 Low
No
No
- 27.07.2022 SB2022072721
SB2022072728
SB2022072922
and 20 more
#VU65824 - Missing release of memory after effective lifetime
CVE-2022-32742
CWE-401 Low
No
No
- 27.07.2022 SB2022072721
SB2022072728
SB2022072922
and 36 more
#VU65820 - Permissions, Privileges, and Access Controls
CVE-2022-2031
CWE-264 Medium
No
No
- 27.07.2022 SB2022072721
SB2022072728
SB2022072922
and 15 more
#VU63912 - Security Features
CVE-2022-31799
CWE-254 Medium
No
No
- 01.06.2022 SB2022060117
SB2022061201
SB2022072635
and 13 more
#VU15945 - Exposure of sensitive information to an unauthorized actor
CVE-2018-10903
CWE-200 Low
No
No
- 16.11.2018 SB2018071715
SB2018111903
SB2018102518
and 3 more
#VU15559 - Improper Access Control
CVE-2018-1000805
CWE-284 High
No
No
- 24.10.2018 SB2018090720
SB2018102423
SB2018100403
and 14 more


Showing elements 1 - 20 out of 70