Known vulnerabilities in SUSE Linux Enterprise Server 12-SP4-LTSS

Vendor: SUSE
Version: 12-SP4-LTSS
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 1327
Public exploits: 54
Known exploited (KEV): 22
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 12-SP4-LTSS SUSE Linux Enterprise Server 12-SP4-LTSS is affected by 1327 vulnerabilities: 15 critical, 363 high, 411 medium, 538 low Critical High Medium Low

Vulnerabilities (1327)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU72457 - Improper isolation or compartmentalization
CVE-2022-38090
CWE-653 Low
No
No
- 21.02.2023 SB2023022135
SB2023022140
SB2023022141
and 22 more
#VU72456 - Incorrect Default Permissions
CVE-2022-33196
CWE-276 Low
No
No
- 21.02.2023 SB2023022134
SB2023022140
SB2023022141
and 24 more
#VU72448 - Improper Access Control
CVE-2022-21216
CWE-284 Low
No
No
- 21.02.2023 SB2023022131
SB2023022140
SB2023022141
and 21 more
#VU72298 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2023-20052
CWE-611 Medium
Public exploit available
No
- 15.02.2023 SB2023021569
SB2023021570
SB2023022043
and 17 more
#VU72297 - Heap-based Buffer Overflow
CVE-2023-20032
CWE-122 Critical
No
No
- 15.02.2023 SB2023021569
SB2023021570
SB2023022043
and 18 more
#VU72246 - Improper Link Resolution Before File Access ('Link Following')
CVE-2023-22490
CWE-59 Low
No
No
- 15.02.2023 SB2023021529
SB2023021528
SB2023021533
and 31 more
#VU72245 - Improper Link Resolution Before File Access ('Link Following')
CVE-2023-23946
CWE-59 Medium
No
No
- 15.02.2023 SB2023021529
SB2023021528
SB2023021533
and 28 more
#VU72088 - Out-of-bounds read
CVE-2022-41862
CWE-125 Medium
No
No
- 09.02.2023 SB2023020953
SB2023021334
SB2023021335
and 47 more
#VU72079 - Resource Management Errors
CVE-2022-44267
CWE-399 Low
Public exploit available
No
- 09.02.2023 SB2023020911
SB2023021005
SB2023021560
and 16 more
#VU72078 - Exposure of sensitive information to an unauthorized actor
CVE-2022-44268
CWE-200 Medium
Public exploit available
No
- 09.02.2023 SB2023020911
SB2023021005
SB2023021560
and 16 more
#VU71541 - Improper Access Control
CVE-2022-4662
CWE-284 Low
No
No
- 25.01.2023 SB2023012561
SB2023012565
SB2023012626
and 38 more
#VU71479 - NULL Pointer Dereference
CVE-2022-47929
CWE-476 Medium
No
No
- 24.01.2023 SB2023012444
SB2023012450
SB2023012651
and 62 more
#VU71478 - Type confusion
CVE-2023-23454
CWE-843 Low
No
No
- 24.01.2023 SB2023012443
SB2023012450
SB2023012626
and 91 more
#VU71288 - Improper input validation
CVE-2023-21830
CWE-20 Medium
No
No
- 17.01.2023 SB2023011784
SB2023011785
SB2023012377
and 112 more
#VU71289 - Improper input validation
CVE-2023-21843
CWE-20 Low
No
No
- 17.01.2023 SB2023011784
SB2023011785
SB2023011882
and 146 more
#VU70474 - Integer overflow
CVE-2022-47629
CWE-190 High
No
No
- 22.12.2022 SB2022122202
SB2022122204
SB2022122205
and 98 more
#VU70108 - Memory corruption
CVE-2022-23468
CWE-119 Medium
No
No
- 12.12.2022 SB2022121204
SB2023010229
SB2023010519
and 11 more
#VU70106 - Memory corruption
CVE-2022-23480
CWE-119 High
No
No
- 12.12.2022 SB2022121204
SB2023010229
SB2023010519
and 11 more
#VU70105 - Memory corruption
CVE-2022-23479
CWE-119 High
No
No
- 12.12.2022 SB2022121204
SB2023010229
SB2023010519
and 11 more
#VU69799 - Use After Free
CVE-2022-3564
CWE-416 Low
No
No
- 01.12.2022 SB2022120131
SB2022120150
SB2022120156
and 97 more


Showing elements 1 - 20 out of 1327