Known vulnerabilities in SUSE Linux Enterprise Server 15-SP2-LTSS - page 16

Vendor: SUSE
Version: 15-SP2-LTSS
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 1118
Public exploits: 41
Known exploited (KEV): 14
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 15-SP2-LTSS SUSE Linux Enterprise Server 15-SP2-LTSS is affected by 1118 vulnerabilities: 8 critical, 290 high, 396 medium, 424 low Critical High Medium Low

Vulnerabilities (1118)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU68887 - Integer overflow
CVE-2022-37454
CWE-190 High
Public exploit available
No
- 01.11.2022 SB2022110118
SB2022110119
SB2022110209
and 69 more
#VU68858 - Off-by-one Error
CVE-2021-46848
CWE-193 Medium
No
No
- 31.10.2022 SB2022103141
SB2022103142
SB2022103143
and 84 more
#VU68829 - Resource Management Errors
CVE-2022-40304
CWE-399 Medium
No
No
- 30.10.2022 SB2022103005
SB2022103006
SB2022103007
and 90 more
#VU68828 - Integer overflow
CVE-2022-40303
CWE-190 High
No
No
- 30.10.2022 SB2022103005
SB2022103006
SB2022103007
and 88 more
#VU68718 - Use After Free
CVE-2022-43680
CWE-416 Medium
No
No
- 25.10.2022 SB2022102560
SB2022102566
SB2022103010
and 97 more
#VU68416 - Missing release of memory after effective lifetime
CVE-2022-3551
CWE-401 Low
No
No
- 18.10.2022 SB2022101844
SB2022101847
SB2022110129
and 28 more
#VU68415 - Memory corruption
CVE-2022-3550
CWE-119 Low
No
No
- 18.10.2022 SB2022101844
SB2022101847
SB2022110129
and 27 more
#VU67971 - Use After Free
CVE-2022-42012
CWE-416 Low
No
No
- 06.10.2022 SB2022100645
SB2022100708
SB2022102733
and 57 more
#VU67970 - Out-of-bounds read
CVE-2022-42011
CWE-125 Low
No
No
- 06.10.2022 SB2022100645
SB2022100708
SB2022102733
and 57 more
#VU67969 - Reachable Assertion
CVE-2022-42010
CWE-617 Low
No
No
- 06.10.2022 SB2022100645
SB2022100708
SB2022102733
and 58 more
#VU67760 - Type conversion
CVE-2020-10735
CWE-704 Medium
No
No
- 29.09.2022 SB2022092968
SB2022092970
SB2022093032
and 86 more
#VU67414 - Improper Validation of Array Index
CVE-2022-35737
CWE-129 Medium
Public exploit available
No
- 15.09.2022 SB2022091537
SB2022092034
SB2022092682
and 72 more
#VU66123 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2016-3709
CWE-79 Medium
No
No
- 05.08.2022 SB2022080507
SB2022080510
SB2022080808
and 43 more
#VU64008 - Resource exhaustion
CVE-2022-1708
CWE-400 Medium
No
No
- 07.06.2022 SB2022060707
SB2022061334
SB2022061627
and 15 more
#VU63627 - Memory corruption
CVE-2021-36690
CWE-119 Low
No
No
- 25.05.2022 SB2022050533
SB2022071831
SB2022092034
and 16 more
#VU63448 - Improper input validation
CVE-2018-20846
CWE-20 Low
No
No
- 19.05.2022 SB2022102739
SB2022111840
SB2022040723
#VU49517 - Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')
CVE-2021-23926
CWE-776 High
No
No
- 14.01.2021 SB2021011401
SB2022072039
SB2022081823
and 21 more
#VU49185 - Heap-based Buffer Overflow
CVE-2020-27814
CWE-122 High
No
No
- 29.12.2020 SB2020122906
SB2020122920
SB2021012622
and 15 more
#VU49184 - Memory corruption
CVE-2020-27824
CWE-119 High
No
No
- 29.12.2020 SB2020122906
SB2020122921
SB2021040622
and 15 more
#VU30142 - Memory corruption
CVE-2018-21010
CWE-119 High
No
No
- 05.09.2019 SB2019090523
SB2019122638
SB2021012622
and 3 more


Showing elements 301 - 320 out of 1118