Known vulnerabilities in SUSE Linux Enterprise Server 12-SP4-LTSS - page 27

Vendor: SUSE
Version: 12-SP4-LTSS
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 1327
Public exploits: 54
Known exploited (KEV): 22
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 12-SP4-LTSS SUSE Linux Enterprise Server 12-SP4-LTSS is affected by 1327 vulnerabilities: 15 critical, 363 high, 411 medium, 538 low Critical High Medium Low

Vulnerabilities (1327)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU65223 - Out-of-bounds write
CVE-2022-2320
CWE-787 Low
No
No
- 13.07.2022 SB2022071303
SB2022071304
SB2022071305
and 28 more
#VU65222 - Out-of-bounds write
CVE-2022-2319
CWE-787 Low
No
No
- 13.07.2022 SB2022071303
SB2022071304
SB2022071305
and 25 more
#VU64944 - Use After Free
CVE-2022-33981
CWE-416 Low
No
No
- 06.07.2022 SB2022070606
SB2022070743
SB2022071346
and 37 more
#VU64922 - Missing Encryption of Sensitive Data
CVE-2022-2097
CWE-311 Low
No
No
- 05.07.2022 SB2022070509
SB2022070522
SB2022070531
and 112 more
#VU64573 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2015-20107
CWE-78 High
No
No
- 22.06.2022 SB2022062206
SB2022062207
SB2022062436
and 85 more
#VU64559 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-2068
CWE-78 Medium
No
No
- 21.06.2022 SB2022062120
SB2022062125
SB2022062236
and 135 more
#VU64484 - Reachable Assertion
CVE-2021-46784
CWE-617 Medium
No
No
- 18.06.2022 SB2022061801
SB2022062237
SB2022062908
and 20 more
#VU63827 - Use After Free
CVE-2021-46669
CWE-416 Medium
No
No
- 31.05.2022 SB2022061533
SB2022061727
SB2022062431
and 27 more
#VU63520 - Memory corruption
CVE-2022-27386
CWE-119 Low
No
No
- 23.05.2022 SB2022052321
SB2022052322
SB2022061533
and 21 more
#VU63519 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2022-27384
CWE-89 Low
No
No
- 23.05.2022 SB2022052321
SB2022052322
SB2022061533
and 21 more
#VU63517 - Use After Free
CVE-2022-27383
CWE-416 Low
No
No
- 23.05.2022 SB2022052321
SB2022052322
SB2022061533
and 21 more
#VU63515 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2022-27381
CWE-89 Low
No
No
- 23.05.2022 SB2022052321
SB2022052322
SB2022061533
and 23 more
#VU63514 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2022-27380
CWE-89 Low
No
No
- 23.05.2022 SB2022052321
SB2022052322
SB2022061533
and 22 more
#VU63510 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2022-27378
CWE-89 Low
No
No
- 23.05.2022 SB2022052321
SB2022052322
SB2022061533
and 21 more
#VU63508 - Use After Free
CVE-2022-27377
CWE-416 Low
No
No
- 23.05.2022 SB2022052321
SB2022052322
SB2022061533
and 23 more
#VU62830 - Heap-based Buffer Overflow
CVE-2022-24903
CWE-122 High
No
No
- 05.05.2022 SB2022050524
SB2022050920
SB2022052425
and 45 more
#VU62765 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-1292
CWE-78 Medium
Public exploit available
No
- 03.05.2022 SB2022050315
SB2022050436
SB2022050503
and 141 more
#VU62418 - Improper input validation
CVE-2022-21427
CWE-20 Medium
No
No
- 19.04.2022 SB2022041949
SB2022050323
SB2022050434
and 24 more
#VU53017 - Improper input validation
CVE-2021-28651
CWE-20 Medium
No
No
- 10.05.2021 SB2021051025
SB2021051925
SB2021052636
and 14 more
#VU51248 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2020-25097
CWE-444 Medium
No
No
- 08.03.2021 SB2021030801
SB2021032504
SB2021041206
and 16 more


Showing elements 521 - 540 out of 1327