Known vulnerabilities in SUSE Linux Enterprise Server 15-SP3-LTSS - page 29

Vendor: SUSE
Version: 15-SP3-LTSS
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 723
Public exploits: 37
Known exploited (KEV): 9
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 15-SP3-LTSS SUSE Linux Enterprise Server 15-SP3-LTSS is affected by 723 vulnerabilities: 2 critical, 137 high, 269 medium, 315 low Critical High Medium Low

Vulnerabilities (723)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU82817 - Incorrect Permission Assignment for Critical Resource
CVE-2022-22941
CWE-732 Medium
No
No
- 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 21 more
#VU82815 - Authentication Bypass by Capture-replay
CVE-2022-22936
CWE-294 Medium
No
No
- 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 21 more
#VU82801 - Insufficient Verification of Data Authenticity
CVE-2022-22935
CWE-345 Medium
No
No
- 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 20 more
#VU82800 - Cryptographic Issues
CVE-2022-22934
CWE-310 Low
No
No
- 07.11.2023 SB2022032942
SB2023110714
SB2022033035
and 21 more
#VU81665 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2021-4001
CWE-362 Low
No
No
- 05.10.2023 SB2022012123
SB2023100562
SB20220111102
and 9 more
#VU65086 - Out-of-bounds read
CVE-2021-44269
CWE-125 Low
No
No
- 11.07.2022 SB2022071110
SB2022071111
SB2022110849
and 9 more
#VU62403 - Improper input validation
CVE-2021-22570
CWE-20 Medium
No
No
- 19.04.2022 SB2022041949
SB2022062233
SB2022100638
and 34 more
#VU61608 - Improper Authentication
CVE-2022-0547
CWE-287 Medium
No
No
- 24.03.2022 SB2022032420
SB2022032423
SB2022040412
and 17 more
#VU61566 - Exposure of sensitive information to an unauthorized actor
CVE-2021-26401
CWE-200 Low
No
No
- 23.03.2022 SB2022032309
SB2022051728
SB2022051831
and 30 more
#VU61422 - Reliance on Reverse DNS Resolution for a Security-Critical Action
CVE-2021-25220
CWE-350 Medium
No
No
- 17.03.2022 SB2022031701
SB2022031719
SB2022031725
and 57 more
#VU61287 - Improper input validation
CVE-2022-22719
CWE-20 Medium
No
No
- 14.03.2022 SB2022031416
SB2022031504
SB2022031724
and 32 more
#VU61286 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-22720
CWE-444 Medium
No
No
- 14.03.2022 SB2022031416
SB2022031504
SB2022031724
and 56 more
#VU61285 - Integer overflow
CVE-2022-22721
CWE-190 High
No
No
- 14.03.2022 SB2022031416
SB2022031504
SB2022031724
and 39 more
#VU61284 - Out-of-bounds write
CVE-2022-23943
CWE-787 High
No
No
- 14.03.2022 SB2022031416
SB2022031504
SB2022031724
and 34 more
#VU61271 - Heap-based Buffer Overflow
CVE-2022-25636
CWE-122 Low
Public exploit available
No
- 13.03.2022 SB2022031307
SB2022031308
SB2022031401
and 26 more
#VU61245 - Permissions, Privileges, and Access Controls
CVE-2022-0492
CWE-264 Low
Public exploit available
Exploited
- 10.03.2022 SB2022031028
SB2022031032
SB2022031033
and 63 more
#VU61181 - Use After Free
CVE-2022-0487
CWE-416 Low
Public exploit available
No
- 08.03.2022 SB2022030853
SB2022031308
SB2022031401
and 18 more
#VU59459 - Use After Free
CVE-2021-36976
CWE-416 Medium
No
No
- 11.01.2022 SB2021072064
SB2022011140
SB2022031433
and 13 more
#VU48696 - Out-of-bounds read
CVE-2020-29130
CWE-125 Medium
No
No
- 27.11.2020 SB2020112716
SB2020120311
SB2020120506
and 8 more
#VU33268 - Out-of-bounds read
CVE-2017-5601
CWE-125 Medium
No
No
- 28.01.2017 SB2017012808
SB2017020106
SB2022061550
and 4 more


Showing elements 561 - 580 out of 723