Known vulnerabilities in SUSE Linux Enterprise Server 12-SP4 - page 3

Vendor: SUSE
Version: 12-SP4
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 218
Public exploits: 13
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 12-SP4 SUSE Linux Enterprise Server 12-SP4 is affected by 218 vulnerabilities: 15 high, 70 medium, 133 low Critical High Medium Low

Vulnerabilities (218)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU70470 - Resource Management Errors
CVE-2022-42329
CWE-399 Medium
No
No
- 21.12.2022 SB2022122163
SB2022122164
SB2022122165
and 43 more
#VU70469 - Resource Management Errors
CVE-2022-42328
CWE-399 Medium
No
No
- 21.12.2022 SB2022122163
SB2022122164
SB2022122165
and 45 more
#VU70467 - NULL Pointer Dereference
CVE-2022-41858
CWE-476 Low
No
No
- 21.12.2022 SB2022122146
SB2022122159
SB2022122164
and 43 more
#VU70464 - Integer overflow
CVE-2022-45934
CWE-190 Low
No
No
- 21.12.2022 SB2022122143
SB2022122159
SB2022122164
and 72 more
#VU70442 - Stack-based buffer overflow
CVE-2022-4378
CWE-121 Low
No
No
- 20.12.2022 SB2022122008
SB2022122123
SB2022122124
and 124 more
#VU69805 - Double Free
CVE-2022-4095
CWE-415 Low
No
No
- 01.12.2022 SB2022120134
SB2022120150
SB2022122159
and 46 more
#VU69796 - Access of Uninitialized Pointer
CVE-2022-42895
CWE-824 Low
No
No
- 01.12.2022 SB2022120128
SB2022120150
SB2022121445
and 67 more
#VU69795 - Use After Free
CVE-2022-42896
CWE-416 Low
No
No
- 01.12.2022 SB2022120127
SB2022120150
SB2022121445
and 83 more
#VU69792 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2022-41850
CWE-362 Low
No
No
- 01.12.2022 SB2022120124
SB2022120150
SB2022121004
and 56 more
#VU69766 - Memory corruption
CVE-2022-43945
CWE-119 Medium
No
No
- 30.11.2022 SB2022113040
SB2022120150
SB2022120156
and 111 more
#VU69392 - Resource exhaustion
CVE-2022-45061
CWE-400 Medium
No
No
- 16.11.2022 SB2022111650
SB2022112824
SB2022112856
and 125 more
#VU69297 - Use After Free
CVE-2022-42703
CWE-416 Low
Public exploit available
No
- 14.11.2022 SB2022111444
SB2022111701
SB2022111702
and 87 more
#VU69296 - Out-of-bounds write
CVE-2022-43750
CWE-787 Low
No
No
- 14.11.2022 SB2022111443
SB2022113032
SB2022113033
and 72 more
#VU68855 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-39348
CWE-79 Low
No
No
- 31.10.2022 SB2022103137
SB20221115106
SB2022111743
and 12 more
#VU68339 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2022-41848
CWE-362 Low
No
No
- 15.10.2022 SB2022101503
SB2022101507
SB2022101508
and 16 more
#VU67915 - Use After Free
CVE-2022-40307
CWE-416 Low
No
No
- 05.10.2022 SB2022100504
SB2022101105
SB2022101994
and 41 more
#VU67760 - Type conversion
CVE-2020-10735
CWE-704 Medium
No
No
- 29.09.2022 SB2022092968
SB2022092970
SB2022093032
and 86 more
#VU67587 - Improper Access Control
CVE-2022-40768
CWE-284 Low
No
No
- 22.09.2022 SB2022092233
SB2022102001
SB2022102677
and 45 more
#VU26355 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2020-10108
CWE-444 Medium
No
No
- 24.03.2020 SB2020031234
SB2020032419
SB2020043012
and 11 more
#VU31043 - Improper input validation
CVE-2019-12387
CWE-20 Medium
No
No
- 10.06.2019 SB2019061006
SB2019072125
SB2019072129
and 4 more


Showing elements 41 - 60 out of 218