Known vulnerabilities in SUSE Linux Enterprise Server 15-SP1-LTSS - page 2

Vendor: SUSE
Version: 15-SP1-LTSS
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 1499
Public exploits: 59
Known exploited (KEV): 24
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 15-SP1-LTSS SUSE Linux Enterprise Server 15-SP1-LTSS is affected by 1499 vulnerabilities: 16 critical, 355 high, 535 medium, 593 low Critical High Medium Low

Vulnerabilities (1499)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU72085 - Improper input validation
CVE-2022-48279
CWE-20 Medium
No
No
- 09.02.2023 SB2023020946
SB2023020948
SB2023020949
and 15 more
#VU71995 - Use After Free
CVE-2023-0215
CWE-416 Medium
No
No
- 07.02.2023 SB2023020742
SB2023020747
SB2023020748
and 209 more
#VU71993 - Information Exposure Through Timing Discrepancy
CVE-2022-4304
CWE-208 Medium
No
No
- 07.02.2023 SB2023020742
SB2023020748
SB2023020767
and 222 more
#VU71992 - Type confusion
CVE-2023-0286
CWE-843 High
No
No
- 07.02.2023 SB2023020742
SB2023020747
SB2023020748
and 223 more
#VU71991 - Use After Free
CVE-2023-0494
CWE-416 Low
No
No
- 07.02.2023 SB2023020729
SB2023020730
SB2023020731
and 42 more
#VU71754 - Integer overflow
CVE-2022-25147
CWE-190 High
No
No
- 02.02.2023 SB2023020210
SB2023020212
SB2023020942
and 47 more
#VU71620 - Heap-based Buffer Overflow
CVE-2022-48281
CWE-122 High
No
No
- 30.01.2023 SB2023013012
SB2023013014
SB2023013015
and 27 more
#VU71486 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2021-20251
CWE-362 Low
No
No
- 24.01.2023 SB2023012451
SB2023012452
SB2023012453
and 13 more
#VU71473 - Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection')
CVE-2022-4254
CWE-90 High
No
No
- 24.01.2023 SB2023012437
SB2023012440
SB2023012457
and 13 more
#VU71470 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-4515
CWE-78 High
No
No
- 24.01.2023 SB2023012423
SB2023012430
SB2023020149
and 5 more
#VU71341 - Missing release of memory after effective lifetime
CVE-2023-0417
CWE-401 Medium
No
No
- 19.01.2023 SB2023011907
SB2023021030
SB2023011810
and 3 more
#VU71340 - Improper input validation
CVE-2023-0413
CWE-20 Medium
No
No
- 19.01.2023 SB2023011907
SB2023021030
SB2023011810
and 3 more
#VU71339 - Improper input validation
CVE-2023-0416
CWE-20 Medium
No
No
- 19.01.2023 SB2023011907
SB2023021030
SB2023011810
and 3 more
#VU71338 - Improper input validation
CVE-2023-0415
CWE-20 Medium
No
No
- 19.01.2023 SB2023011907
SB2023021030
SB2023011810
and 3 more
#VU71243 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2022-37436
CWE-113 Medium
No
No
- 17.01.2023 SB2023011740
SB2023011805
SB2023012728
and 33 more
#VU71242 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-36760
CWE-444 Medium
No
No
- 17.01.2023 SB2023011740
SB2023011805
SB2023012728
and 33 more
#VU71241 - Memory corruption
CVE-2006-20001
CWE-119 Medium
No
No
- 17.01.2023 SB2023011740
SB2023011805
SB2023012728
and 28 more
#VU69094 - Permissions, Privileges, and Access Controls
CVE-2022-37966
CWE-264 High
No
No
- 08.11.2022 SB2022110822
SB2022121537
SB2022121801
and 23 more
#VU68495 - Out-of-bounds read
CVE-2022-41742
CWE-125 Medium
No
No
- 19.10.2022 SB2022101941
SB2022111503
SB2022111601
and 34 more
#VU68494 - Out-of-bounds read
CVE-2022-41741
CWE-125 Medium
No
No
- 19.10.2022 SB2022101941
SB2022111503
SB2022111601
and 32 more


Showing elements 21 - 40 out of 1499