Known vulnerabilities in SUSE Linux Enterprise Server 12-SP5

Vendor: SUSE
Version: 12-SP5
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 1647
Public exploits: 69
Known exploited (KEV): 24
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 12-SP5 SUSE Linux Enterprise Server 12-SP5 is affected by 1647 vulnerabilities: 14 critical, 407 high, 558 medium, 668 low Critical High Medium Low

Vulnerabilities (1647)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU72457 - Improper isolation or compartmentalization
CVE-2022-38090
CWE-653 Low
No
No
- 21.02.2023 SB2023022135
SB2023022140
SB2023022141
and 22 more
#VU72456 - Incorrect Default Permissions
CVE-2022-33196
CWE-276 Low
No
No
- 21.02.2023 SB2023022134
SB2023022140
SB2023022141
and 24 more
#VU72448 - Improper Access Control
CVE-2022-21216
CWE-284 Low
No
No
- 21.02.2023 SB2023022131
SB2023022140
SB2023022141
and 21 more
#VU72432 - Heap-based Buffer Overflow
CVE-2022-48303
CWE-122 High
No
No
- 21.02.2023 SB2023022105
SB2023022111
SB2023022112
and 72 more
#VU72337 - Allocation of Resources Without Limits or Throttling
CVE-2023-23916
CWE-770 Medium
No
No
- 16.02.2023 SB2023021668
SB2023021670
SB2023021671
and 89 more
#VU72246 - Improper Link Resolution Before File Access ('Link Following')
CVE-2023-22490
CWE-59 Low
No
No
- 15.02.2023 SB2023021529
SB2023021528
SB2023021533
and 31 more
#VU72245 - Improper Link Resolution Before File Access ('Link Following')
CVE-2023-23946
CWE-59 Medium
No
No
- 15.02.2023 SB2023021529
SB2023021528
SB2023021533
and 28 more
#VU72079 - Resource Management Errors
CVE-2022-44267
CWE-399 Low
Public exploit available
No
- 09.02.2023 SB2023020911
SB2023021005
SB2023021560
and 16 more
#VU72078 - Exposure of sensitive information to an unauthorized actor
CVE-2022-44268
CWE-200 Medium
Public exploit available
No
- 09.02.2023 SB2023020911
SB2023021005
SB2023021560
and 16 more
#VU71437 - Memory corruption
CVE-2023-23517
CWE-119 High
No
No
- 23.01.2023 SB2023012333
SB2023012334
SB2023012335
and 21 more
#VU71436 - Memory corruption
CVE-2023-23518
CWE-119 High
No
No
- 23.01.2023 SB2023012333
SB2023012334
SB2023012335
and 22 more
#VU71287 - Improper input validation
CVE-2023-21835
CWE-20 Medium
No
No
- 17.01.2023 SB2023011784
SB2023011785
SB2023011882
and 67 more
#VU71288 - Improper input validation
CVE-2023-21830
CWE-20 Medium
No
No
- 17.01.2023 SB2023011784
SB2023011785
SB2023012377
and 112 more
#VU71289 - Improper input validation
CVE-2023-21843
CWE-20 Low
No
No
- 17.01.2023 SB2023011784
SB2023011785
SB2023011882
and 146 more
#VU70518 - Use After Free
CVE-2022-42826
CWE-416 High
No
No
- 28.12.2022 SB2022122809
SB2022102521
SB2022102437
and 18 more
#VU67849 - Use of Insufficiently Random Values
CVE-2022-35255
CWE-330 Medium
No
No
- 03.10.2022 SB2022100401
SB2022100402
SB2022100528
and 40 more
#VU65282 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-32215
CWE-444 Medium
No
No
- 13.07.2022 SB2022071338
SB2022071610
SB2022071611
and 54 more
#VU65278 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-32214
CWE-444 Medium
No
No
- 13.07.2022 SB2022071338
SB2022071610
SB2022071611
and 36 more
#VU65275 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-32213
CWE-444 Medium
No
No
- 13.07.2022 SB2022071338
SB2022071610
SB2022071611
and 55 more
#VU65273 - Improper Check or Handling of Exceptional Conditions
CVE-2022-32212
CWE-703 Medium
No
No
- 13.07.2022 SB2022071338
SB2022071610
SB2022071611
and 48 more


Showing elements 1 - 20 out of 1647