Known vulnerabilities in SUSE Linux Enterprise Server 12-SP4-LTSS - page 3

Vendor: SUSE
Version: 12-SP4-LTSS
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 1327
Public exploits: 54
Known exploited (KEV): 22
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 12-SP4-LTSS SUSE Linux Enterprise Server 12-SP4-LTSS is affected by 1327 vulnerabilities: 15 critical, 363 high, 411 medium, 538 low Critical High Medium Low

Vulnerabilities (1327)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU71620 - Heap-based Buffer Overflow
CVE-2022-48281
CWE-122 High
No
No
- 30.01.2023 SB2023013012
SB2023013014
SB2023013015
and 27 more
#VU71560 - Heap-based Buffer Overflow
CVE-2023-0288
CWE-122 High
No
No
- 26.01.2023 SB2023012622
SB2023013071
SB2023013073
and 15 more
#VU71558 - Heap-based Buffer Overflow
CVE-2023-0433
CWE-122 High
No
No
- 26.01.2023 SB2023012624
SB2023012627
SB2023013071
and 21 more
#VU71486 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2021-20251
CWE-362 Low
No
No
- 24.01.2023 SB2023012451
SB2023012452
SB2023012453
and 13 more
#VU71473 - Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection')
CVE-2022-4254
CWE-90 High
No
No
- 24.01.2023 SB2023012437
SB2023012440
SB2023012457
and 13 more
#VU71243 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2022-37436
CWE-113 Medium
No
No
- 17.01.2023 SB2023011740
SB2023011805
SB2023012728
and 33 more
#VU71242 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-36760
CWE-444 Medium
No
No
- 17.01.2023 SB2023011740
SB2023011805
SB2023012728
and 33 more
#VU71241 - Memory corruption
CVE-2006-20001
CWE-119 Medium
No
No
- 17.01.2023 SB2023011740
SB2023011805
SB2023012728
and 28 more
#VU71236 - Untrusted Search Path
CVE-2022-4883
CWE-426 Low
No
No
- 17.01.2023 SB2023011734
SB2023011737
SB2023011806
and 38 more
#VU71235 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-44617
CWE-835 Low
No
No
- 17.01.2023 SB2023011734
SB2023011737
SB2023011806
and 34 more
#VU71234 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-46285
CWE-835 Low
Public exploit available
No
- 17.01.2023 SB2023011734
SB2023011737
SB2023011806
and 35 more
#VU70723 - Out-of-bounds write
CVE-2023-0054
CWE-787 High
No
No
- 05.01.2023 SB2023010521
SB2023013071
SB2023013073
and 16 more
#VU70722 - Heap-based Buffer Overflow
CVE-2023-0051
CWE-122 High
No
No
- 05.01.2023 SB2023010521
SB2023010522
SB2023013071
and 14 more
#VU70505 - NULL Pointer Dereference
CVE-2022-41860
CWE-476 Medium
No
No
- 27.12.2022 SB2022122727
SB2022122728
SB2022122729
and 14 more
#VU70504 - Exposure of sensitive information to an unauthorized actor
CVE-2022-41859
CWE-200 Low
No
No
- 27.12.2022 SB2022122727
SB2022122728
SB2022122729
and 14 more
#VU69153 - Exposure of sensitive information to an unauthorized actor
CVE-2022-23824
CWE-200 Medium
No
No
- 09.11.2022 SB2022110914
SB2023012540
SB2023012654
and 9 more
#VU69151 - Security Features
CVE-2022-38023
CWE-254 High
No
No
- 09.11.2022 SB2022110912
SB2022121537
SB2022121801
and 46 more
#VU69094 - Permissions, Privileges, and Access Controls
CVE-2022-37966
CWE-264 High
No
No
- 08.11.2022 SB2022110822
SB2022121537
SB2022121801
and 23 more
#VU67750 - Externally-generated error message containing sensitive information
CVE-2022-39176
CWE-211 Low
No
No
- 29.09.2022 SB2022062042
SB2023012655
SB2023012656
and 5 more
#VU64523 - Improper input validation
CVE-2022-39177
CWE-20 Medium
No
No
- 20.06.2022 SB2022062042
SB2022062043
SB2023012655
and 6 more


Showing elements 41 - 60 out of 1327