Known vulnerabilities in SUSE Linux Enterprise Server 15-SP2-LTSS - page 30

Vendor: SUSE
Version: 15-SP2-LTSS
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 1118
Public exploits: 41
Known exploited (KEV): 14
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 15-SP2-LTSS SUSE Linux Enterprise Server 15-SP2-LTSS is affected by 1118 vulnerabilities: 8 critical, 290 high, 396 medium, 424 low Critical High Medium Low

Vulnerabilities (1118)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU65801 - Resource exhaustion
CVE-2022-33745
CWE-400 Medium
No
No
- 26.07.2022 SB2022072636
SB2022072724
SB2022072730
and 10 more
#VU65771 - Information Exposure Through Timing Discrepancy
CVE-2020-25657
CWE-208 Medium
No
No
- 26.07.2022 SB2021011288
SB2022072601
SB2022072602
and 7 more
#VU65362 - Improper input validation
CVE-2021-33620
CWE-20 Medium
No
No
- 15.07.2022 SB2022071601
SB2022072641
SB2023022337
and 6 more
#VU65223 - Out-of-bounds write
CVE-2022-2320
CWE-787 Low
No
No
- 13.07.2022 SB2022071303
SB2022071304
SB2022071305
and 28 more
#VU65222 - Out-of-bounds write
CVE-2022-2319
CWE-787 Low
No
No
- 13.07.2022 SB2022071303
SB2022071304
SB2022071305
and 25 more
#VU65204 - Type confusion
CVE-2022-23825
CWE-843 Low
No
No
- 12.07.2022 SB2022071249
SB2022071256
SB2022071302
and 39 more
#VU65119 - Permissions, Privileges, and Access Controls
CVE-2022-30550
CWE-264 Medium
No
No
- 11.07.2022 SB2022071169
SB2022071171
SB2022071911
and 10 more
#VU64573 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2015-20107
CWE-78 High
No
No
- 22.06.2022 SB2022062206
SB2022062207
SB2022062436
and 85 more
#VU64484 - Reachable Assertion
CVE-2021-46784
CWE-617 Medium
No
No
- 18.06.2022 SB2022061801
SB2022062237
SB2022062908
and 20 more
#VU64448 - Memory corruption
CVE-2022-26363
CWE-119 High
No
No
- 16.06.2022 SB2022061629
SB2022061636
SB2022062429
and 17 more
#VU64447 - Memory corruption
CVE-2022-26364
CWE-119 High
No
No
- 16.06.2022 SB2022061629
SB2022061636
SB2022062429
and 17 more
#VU64446 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2022-26362
CWE-362 High
No
No
- 16.06.2022 SB2022061629
SB2022061636
SB2022062429
and 16 more
#VU64078 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-26377
CWE-444 Medium
Public exploit available
No
- 08.06.2022 SB2022060817
SB2022060901
SB2022061611
and 39 more
#VU63877 - Use of Uninitialized Variable
CVE-2022-31741
CWE-457 High
No
No
- 31.05.2022 SB2022053116
SB2022053126
SB2022060107
and 40 more
#VU63285 - Resource Management Errors
CVE-2022-22677
CWE-399 Low
No
No
- 16.05.2022 SB2022051701
SB2022051705
SB2022070510
and 9 more
#VU63281 - Use After Free
CVE-2022-26710
CWE-416 High
No
No
- 16.05.2022 SB2022051701
SB2022051705
SB2022051706
and 34 more
#VU63168 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2022-29217
CWE-327 Medium
No
No
- 13.05.2022 SB2022051319
SB2022071428
SB2022071429
and 12 more
#VU62512 - Improper input validation
CVE-2021-3572
CWE-20 Medium
No
No
- 22.04.2022 SB2022042257
SB2022042259
SB2021071390
and 51 more
#VU61333 - Exposure of sensitive information to an unauthorized actor
CVE-2022-22662
CWE-200 Medium
No
No
- 14.03.2022 SB2022031433
SB2022031434
SB2022031435
and 35 more
#VU58477 - Heap-based Buffer Overflow
CVE-2021-43527
CWE-122 High
No
No
- 01.12.2021 SB2021120123
SB2021120124
SB2021120201
and 66 more


Showing elements 581 - 600 out of 1118