Known vulnerabilities in SUSE Linux Enterprise Server 15-SP1-LTSS - page 24

Vendor: SUSE
Version: 15-SP1-LTSS
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 1499
Public exploits: 59
Known exploited (KEV): 24
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 15-SP1-LTSS SUSE Linux Enterprise Server 15-SP1-LTSS is affected by 1499 vulnerabilities: 16 critical, 355 high, 535 medium, 593 low Critical High Medium Low

Vulnerabilities (1499)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU66639 - Heap-based Buffer Overflow
CVE-2022-0204
CWE-122 Low
No
No
- 18.08.2022 SB2022081856
SB2022081857
SB2022082428
and 8 more
#VU66596 - Heap-based Buffer Overflow
CVE-2022-34503
CWE-122 High
No
No
- 17.08.2022 SB2022081758
SB2022081759
SB2022081760
and 4 more
#VU66595 - Heap-based Buffer Overflow
CVE-2021-36978
CWE-122 High
No
No
- 17.08.2022 SB2021072930
SB2022081759
SB2022081760
and 4 more
#VU66594 - Stack-based buffer overflow
CVE-2022-34835
CWE-121 Low
No
No
- 17.08.2022 SB2022081749
SB2022081752
SB2022081753
and 8 more
#VU66591 - Out-of-bounds read
CVE-2022-1462
CWE-125 Low
No
No
- 17.08.2022 SB2022081737
SB2022081739
SB2022081740
and 49 more
#VU66590 - Out-of-bounds write
CVE-2021-33656
CWE-787 Low
No
No
- 17.08.2022 SB2022081736
SB2022081739
SB2022081740
and 48 more
#VU66589 - NULL Pointer Dereference
CVE-2020-36558
CWE-476 Low
No
No
- 17.08.2022 SB2022081735
SB2022081739
SB2022081740
and 32 more
#VU66588 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2020-36557
CWE-362 Low
No
No
- 17.08.2022 SB2022081734
SB2022081739
SB2022081740
and 21 more
#VU66522 - Exposure of sensitive information to an unauthorized actor
CVE-2022-21233
CWE-200 Low
No
No
- 16.08.2022 SB2022081610
SB2022081724
SB2022081725
and 20 more
#VU66476 - Improper input validation
CVE-2022-36946
CWE-20 Medium
Public exploit available
No
- 13.08.2022 SB2022081305
SB2022081647
SB2022081739
and 73 more
#VU65833 - Out-of-bounds write
CVE-2021-33655
CWE-787 Low
No
No
- 27.07.2022 SB2022072725
SB2022072814
SB2022081739
and 77 more
#VU65824 - Missing release of memory after effective lifetime
CVE-2022-32742
CWE-401 Low
No
No
- 27.07.2022 SB2022072721
SB2022072728
SB2022072922
and 36 more
#VU65282 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-32215
CWE-444 Medium
No
No
- 13.07.2022 SB2022071338
SB2022071610
SB2022071611
and 54 more
#VU65278 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-32214
CWE-444 Medium
No
No
- 13.07.2022 SB2022071338
SB2022071610
SB2022071611
and 36 more
#VU65275 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-32213
CWE-444 Medium
No
No
- 13.07.2022 SB2022071338
SB2022071610
SB2022071611
and 55 more
#VU65273 - Improper Check or Handling of Exceptional Conditions
CVE-2022-32212
CWE-703 Medium
No
No
- 13.07.2022 SB2022071338
SB2022071610
SB2022071611
and 48 more
#VU64208 - Permissions, Privileges, and Access Controls
CVE-2022-20166
CWE-264 Low
No
No
- 13.06.2022 SB2022061414
SB2022081739
SB2022081740
and 16 more
#VU61254 - Use After Free
CVE-2021-22940
CWE-416 Medium
No
No
- 11.03.2022 SB2021081615
SB2022031104
SB2022060618
and 23 more
#VU59234 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2021-22960
CWE-444 Medium
No
No
- 05.01.2022 SB2022010523
SB2022010524
SB2022042806
and 40 more
#VU59233 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2021-22959
CWE-444 Medium
No
No
- 05.01.2022 SB2022010523
SB2022010524
SB2022011841
and 43 more


Showing elements 461 - 480 out of 1499