Known vulnerabilities in SUSE Linux Enterprise Server 12-SP2-BCL

Vendor: SUSE
Version: 12-SP2-BCL
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 1207
Public exploits: 44
Known exploited (KEV): 20
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 12-SP2-BCL SUSE Linux Enterprise Server 12-SP2-BCL is affected by 1207 vulnerabilities: 14 critical, 357 high, 374 medium, 462 low Critical High Medium Low

Vulnerabilities (1207)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU72457 - Improper isolation or compartmentalization
CVE-2022-38090
CWE-653 Low
No
No
- 21.02.2023 SB2023022135
SB2023022140
SB2023022141
and 22 more
#VU72456 - Incorrect Default Permissions
CVE-2022-33196
CWE-276 Low
No
No
- 21.02.2023 SB2023022134
SB2023022140
SB2023022141
and 24 more
#VU72448 - Improper Access Control
CVE-2022-21216
CWE-284 Low
No
No
- 21.02.2023 SB2023022131
SB2023022140
SB2023022141
and 21 more
#VU72298 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2023-20052
CWE-611 Medium
Public exploit available
No
- 15.02.2023 SB2023021569
SB2023021570
SB2023022043
and 17 more
#VU72297 - Heap-based Buffer Overflow
CVE-2023-20032
CWE-122 Critical
No
No
- 15.02.2023 SB2023021569
SB2023021570
SB2023022043
and 18 more
#VU72246 - Improper Link Resolution Before File Access ('Link Following')
CVE-2023-22490
CWE-59 Low
No
No
- 15.02.2023 SB2023021529
SB2023021528
SB2023021533
and 31 more
#VU72245 - Improper Link Resolution Before File Access ('Link Following')
CVE-2023-23946
CWE-59 Medium
No
No
- 15.02.2023 SB2023021529
SB2023021528
SB2023021533
and 28 more
#VU72079 - Resource Management Errors
CVE-2022-44267
CWE-399 Low
Public exploit available
No
- 09.02.2023 SB2023020911
SB2023021005
SB2023021560
and 16 more
#VU72078 - Exposure of sensitive information to an unauthorized actor
CVE-2022-44268
CWE-200 Medium
Public exploit available
No
- 09.02.2023 SB2023020911
SB2023021005
SB2023021560
and 16 more
#VU71541 - Improper Access Control
CVE-2022-4662
CWE-284 Low
No
No
- 25.01.2023 SB2023012561
SB2023012565
SB2023012626
and 38 more
#VU71479 - NULL Pointer Dereference
CVE-2022-47929
CWE-476 Medium
No
No
- 24.01.2023 SB2023012444
SB2023012450
SB2023012651
and 62 more
#VU71478 - Type confusion
CVE-2023-23454
CWE-843 Low
No
No
- 24.01.2023 SB2023012443
SB2023012450
SB2023012626
and 91 more
#VU71477 - Type confusion
CVE-2023-23455
CWE-843 Low
No
No
- 24.01.2023 SB2023012442
SB2023012450
SB2023012651
and 86 more
#VU71288 - Improper input validation
CVE-2023-21830
CWE-20 Medium
No
No
- 17.01.2023 SB2023011784
SB2023011785
SB2023012377
and 112 more
#VU71289 - Improper input validation
CVE-2023-21843
CWE-20 Low
No
No
- 17.01.2023 SB2023011784
SB2023011785
SB2023011882
and 146 more
#VU70468 - Improper input validation
CVE-2022-3643
CWE-20 Medium
No
No
- 21.12.2022 SB2022122149
SB2022122164
SB2022122165
and 46 more
#VU69799 - Use After Free
CVE-2022-3564
CWE-416 Low
No
No
- 01.12.2022 SB2022120131
SB2022120150
SB2022120156
and 97 more
#VU69796 - Access of Uninitialized Pointer
CVE-2022-42895
CWE-824 Low
No
No
- 01.12.2022 SB2022120128
SB2022120150
SB2022121445
and 67 more
#VU69795 - Use After Free
CVE-2022-42896
CWE-416 Low
No
No
- 01.12.2022 SB2022120127
SB2022120150
SB2022121445
and 83 more
#VU19987 - Use After Free
CVE-2018-9517
CWE-416 Low
No
No
- 08.08.2019 SB2019080809
SB2019080902
SB2023021567
and 8 more


Showing elements 1 - 20 out of 1207