Known vulnerabilities in SUSE Linux Enterprise Server 15-SP4 - page 10

Vendor: SUSE
Version: 15-SP4
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 1220
Public exploits: 45
Known exploited (KEV): 8
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 15-SP4 SUSE Linux Enterprise Server 15-SP4 is affected by 1220 vulnerabilities: 3 critical, 280 high, 443 medium, 494 low Critical High Medium Low

Vulnerabilities (1220)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU70715 - Use of Uninitialized Resource
CVE-2022-34266
CWE-908 Low
No
No
- 05.01.2023 SB2023010511
SB2023010512
SB2023010513
and 2 more
#VU70668 - Incorrect Default Permissions
CVE-2022-31254
CWE-276 Low
No
No
- 04.01.2023 SB2023010404
SB2023010405
SB2023010406
and 3 more
#VU70623 - Improper Link Resolution Before File Access ('Link Following')
CVE-2021-21272
CWE-59 Medium
No
No
- 03.01.2023 SB2021012530
SB2023010307
#VU70620 - Improper input validation
CVE-2022-23524
CWE-20 Medium
No
No
- 03.01.2023 SB2023010306
SB2023010307
SB2023041126
and 7 more
#VU70619 - Improper input validation
CVE-2022-23525
CWE-20 Medium
No
No
- 03.01.2023 SB2023010306
SB2023010307
SB2023041126
and 5 more
#VU70618 - Improper input validation
CVE-2022-23526
CWE-20 Medium
No
No
- 03.01.2023 SB2023010306
SB2023010307
SB2023041126
and 9 more
#VU70598 - NULL Pointer Dereference
CVE-2022-3109
CWE-476 Medium
No
No
- 02.01.2023 SB2023010231
SB2023010234
SB2023010235
and 12 more
#VU70147 - Improper input validation
CVE-2022-46874
CWE-20 Medium
No
No
- 13.12.2022 SB2022121330
SB2022121453
SB2022121454
and 39 more
#VU70104 - Integer overflow
CVE-2022-23484
CWE-190 High
No
No
- 12.12.2022 SB2022121204
SB2023010229
SB2023010519
and 11 more
#VU70103 - Out-of-bounds read
CVE-2022-23483
CWE-125 Medium
No
No
- 12.12.2022 SB2022121204
SB2023010229
SB2023010519
and 11 more
#VU70101 - Out-of-bounds read
CVE-2022-23493
CWE-125 High
No
No
- 12.12.2022 SB2022121204
SB2023010519
SB2023021031
and 8 more
#VU70096 - NULL Pointer Dereference
CVE-2022-37290
CWE-476 Low
No
No
- 09.12.2022 SB2022120921
SB2022120922
SB2022120923
and 12 more
#VU69403 - Stack-based buffer overflow
CVE-2022-34526
CWE-121 Medium
No
No
- 17.11.2022 SB2022111718
SB2022111719
SB2023010401
and 11 more
#VU69402 - Double Free
CVE-2022-2519
CWE-415 Medium
No
No
- 17.11.2022 SB2022111718
SB2022111719
SB2023010511
and 23 more
#VU69401 - Release of invalid pointer or reference
CVE-2022-2521
CWE-763 Medium
No
No
- 17.11.2022 SB2022111718
SB2022111719
SB2023010512
and 21 more
#VU69400 - Reachable Assertion
CVE-2022-2520
CWE-617 Medium
No
No
- 17.11.2022 SB2022111718
SB2022111719
SB2023010512
and 21 more
#VU67140 - Out-of-bounds read
CVE-2022-2868
CWE-125 Low
No
No
- 09.09.2022 SB2022090904
SB2022090905
SB2022111719
and 23 more
#VU67138 - Integer underflow
CVE-2022-2869
CWE-191 High
No
No
- 09.09.2022 SB2022090904
SB2022090905
SB2022111719
and 23 more
#VU67137 - Integer underflow
CVE-2022-2867
CWE-191 High
No
No
- 09.09.2022 SB2022090904
SB2022090905
SB2022111719
and 24 more
#VU66447 - Overly Permissive Cross-domain Whitelist
CVE-2022-1996
CWE-942 Low
No
No
- 12.08.2022 SB2022081216
SB2022081228
SB2022081229
and 65 more


Showing elements 181 - 200 out of 1220