Known vulnerabilities in SUSE Linux Enterprise Server 15-SP2-LTSS - page 4

Vendor: SUSE
Version: 15-SP2-LTSS
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 1118
Public exploits: 41
Known exploited (KEV): 14
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 15-SP2-LTSS SUSE Linux Enterprise Server 15-SP2-LTSS is affected by 1118 vulnerabilities: 8 critical, 290 high, 396 medium, 424 low Critical High Medium Low

Vulnerabilities (1118)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU71486 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2021-20251
CWE-362 Low
No
No
- 24.01.2023 SB2023012451
SB2023012452
SB2023012453
and 13 more
#VU71470 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-4515
CWE-78 High
No
No
- 24.01.2023 SB2023012423
SB2023012430
SB2023020149
and 5 more
#VU71398 - Insufficient Verification of Data Authenticity
CVE-2022-23491
CWE-345 High
No
No
- 20.01.2023 SB2023012034
SB2023012035
SB2023012036
and 51 more
#VU71376 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-22643
CWE-78 Low
No
No
- 20.01.2023 SB2023012018
SB2023012550
#VU71332 - Improper input validation
CVE-2023-22809
CWE-20 Low
Public exploit available
No
- 18.01.2023 SB20230118100
SB20230118104
SB20230118105
and 55 more
#VU71236 - Untrusted Search Path
CVE-2022-4883
CWE-426 Low
No
No
- 17.01.2023 SB2023011734
SB2023011737
SB2023011806
and 38 more
#VU71235 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-44617
CWE-835 Low
No
No
- 17.01.2023 SB2023011734
SB2023011737
SB2023011806
and 34 more
#VU71234 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-46285
CWE-835 Low
Public exploit available
No
- 17.01.2023 SB2023011734
SB2023011737
SB2023011806
and 35 more
#VU70154 - Insufficient UI Warning of Dangerous Operations
CVE-2022-46877
CWE-357 Medium
No
No
- 13.12.2022 SB2022121330
SB2022121511
SB2023011007
and 36 more
#VU70145 - Memory corruption
CVE-2022-46871
CWE-119 High
No
No
- 13.12.2022 SB2022121330
SB2022121511
SB2023011007
and 37 more
#VU70107 - Memory corruption
CVE-2022-23477
CWE-119 High
No
No
- 12.12.2022 SB2022121204
SB2023012639
SB2023091901
and 7 more
#VU69240 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-45063
CWE-78 High
No
No
- 11.11.2022 SB2022111113
SB2022112204
SB2023011810
and 11 more
#VU69153 - Exposure of sensitive information to an unauthorized actor
CVE-2022-23824
CWE-200 Medium
No
No
- 09.11.2022 SB2022110914
SB2023012540
SB2023012654
and 9 more
#VU69151 - Security Features
CVE-2022-38023
CWE-254 High
No
No
- 09.11.2022 SB2022110912
SB2022121537
SB2022121801
and 46 more
#VU69094 - Permissions, Privileges, and Access Controls
CVE-2022-37966
CWE-264 High
No
No
- 08.11.2022 SB2022110822
SB2022121537
SB2022121801
and 23 more
#VU68967 - Stack-based buffer overflow
CVE-2022-3479
CWE-121 Medium
No
No
- 04.11.2022 SB2022110401
SB2022110406
SB2022121901
and 18 more
#VU68495 - Out-of-bounds read
CVE-2022-41742
CWE-125 Medium
No
No
- 19.10.2022 SB2022101941
SB2022111503
SB2022111601
and 34 more
#VU68494 - Out-of-bounds read
CVE-2022-41741
CWE-125 Medium
No
No
- 19.10.2022 SB2022101941
SB2022111503
SB2022111601
and 32 more
#VU67750 - Externally-generated error message containing sensitive information
CVE-2022-39176
CWE-211 Low
No
No
- 29.09.2022 SB2022062042
SB2023012655
SB2023012656
and 5 more
#VU64523 - Improper input validation
CVE-2022-39177
CWE-20 Medium
No
No
- 20.06.2022 SB2022062042
SB2022062043
SB2023012655
and 6 more


Showing elements 61 - 80 out of 1118