Known vulnerabilities in SUSE Linux Enterprise Server 15-SP3 - page 20

Vendor: SUSE
Version: 15-SP3
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 778
Public exploits: 23
Known exploited (KEV): 4
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 15-SP3 SUSE Linux Enterprise Server 15-SP3 is affected by 778 vulnerabilities: 1 critical, 178 high, 255 medium, 344 low Critical High Medium Low

Vulnerabilities (778)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU67508 - Out-of-bounds read
CVE-2022-39190
CWE-125 Low
No
No
- 20.09.2022 SB2022092040
SB2022092046
SB2022092047
and 15 more
#VU67479 - Use After Free
CVE-2022-2977
CWE-416 Low
No
No
- 20.09.2022 SB2022092005
SB2022092007
SB2022092008
and 25 more
#VU67477 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2022-3028
CWE-362 Low
No
No
- 20.09.2022 SB2022092003
SB2022092006
SB2022092007
and 63 more
#VU67414 - Improper Validation of Array Index
CVE-2022-35737
CWE-129 Medium
Public exploit available
No
- 15.09.2022 SB2022091537
SB2022092034
SB2022092682
and 72 more
#VU67361 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2021-39360
CWE-300 Medium
No
No
- 14.09.2022 SB2021082208
SB2022091458
SB2022091459
and 4 more
#VU67277 - Out-of-bounds read
CVE-2022-37032
CWE-125 Medium
Public exploit available
No
- 13.09.2022 SB2022091376
SB2022091378
SB2022101848
and 10 more
#VU67275 - Missing release of memory after effective lifetime
CVE-2019-25074
CWE-401 Medium
No
No
- 13.09.2022 SB2022091376
SB2022091378
#VU66922 - Improper input validation
CVE-2022-36059
CWE-20 Low
No
No
- 01.09.2022 SB2022090140
SB2022090306
SB2022090669
and 11 more
#VU66921 - Security Features
CVE-2022-3034
CWE-254 Medium
No
No
- 01.09.2022 SB2022090140
SB2022090669
SB2022091542
and 11 more
#VU66920 - Security Features
CVE-2022-3032
CWE-254 Low
No
No
- 01.09.2022 SB2022090140
SB2022090669
SB2022091542
and 11 more
#VU66919 - Exposure of sensitive information to an unauthorized actor
CVE-2022-3033
CWE-200 Medium
No
No
- 01.09.2022 SB2022090140
SB2022090669
SB2022091542
and 13 more
#VU66550 - Resource Management Errors
CVE-2022-36879
CWE-399 Low
No
No
- 16.08.2022 SB2022081643
SB2022081647
SB2022082923
and 47 more
#VU66152 - Resource exhaustion
CVE-2021-46828
CWE-400 Medium
No
No
- 07.08.2022 SB2022080701
SB2022080703
SB2022090161
and 20 more
#VU65639 - Out-of-bounds write
CVE-2022-27404
CWE-787 High
No
No
- 21.07.2022 SB2022072115
SB2022072116
SB2022072122
and 48 more
#VU64769 - Improper Verification of Cryptographic Signature
CVE-2022-2226
CWE-347 Low
No
No
- 29.06.2022 SB2022062903
SB2022070102
SB2022070103
and 15 more
#VU63881 - Security Features
CVE-2022-31744
CWE-254 Medium
No
No
- 31.05.2022 SB2022053116
SB2022061323
SB2022062901
and 32 more
#VU63627 - Memory corruption
CVE-2021-36690
CWE-119 Low
No
No
- 25.05.2022 SB2022050533
SB2022071831
SB2022092034
and 16 more
#VU58365 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2021-41819
CWE-451 Medium
No
No
- 25.11.2021 SB2021112503
SB2022011920
SB2022020413
and 21 more
#VU31897 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2020-14001
CWE-74 High
No
No
- 27.07.2020 SB2020072739
SB2020081409
SB2020061736
and 8 more
#VU6900 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2017-6512
CWE-362 Low
No
No
- 05.06.2017 SB2017060503
SB2017060504
SB2017091703
and 8 more


Showing elements 381 - 400 out of 778