Known vulnerabilities in SUSE Linux Enterprise Server 15-SP4 - page 33

Vendor: SUSE
Version: 15-SP4
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 1220
Public exploits: 45
Known exploited (KEV): 8
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server version 15-SP4 SUSE Linux Enterprise Server 15-SP4 is affected by 1220 vulnerabilities: 3 critical, 280 high, 443 medium, 494 low Critical High Medium Low

Vulnerabilities (1220)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU67277 - Out-of-bounds read
CVE-2022-37032
CWE-125 Medium
Public exploit available
No
- 13.09.2022 SB2022091376
SB2022091378
SB2022101848
and 10 more
#VU67275 - Missing release of memory after effective lifetime
CVE-2019-25074
CWE-401 Medium
No
No
- 13.09.2022 SB2022091376
SB2022091378
#VU67271 - Incorrect Default Permissions
CVE-2022-32743
CWE-276 Medium
No
No
- 13.09.2022 SB2022091372
SB2022091377
SB2022111138
and 5 more
#VU67270 - Use of Insufficiently Random Values
CVE-2022-1615
CWE-330 Low
No
No
- 13.09.2022 SB2022091371
SB2022091377
SB2022091448
and 18 more
#VU67164 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2022-35948
CWE-93 Medium
No
No
- 11.09.2022 SB2022091109
SB2022091110
SB2022091217
and 4 more
#VU67163 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2022-31150
CWE-93 Medium
No
No
- 11.09.2022 SB2022091108
SB2022091110
SB2022091217
and 2 more
#VU66990 - NULL Pointer Dereference
CVE-2022-2850
CWE-476 Medium
No
No
- 06.09.2022 SB2022090601
SB2022090606
SB2022091702
and 11 more
#VU66922 - Improper input validation
CVE-2022-36059
CWE-20 Low
No
No
- 01.09.2022 SB2022090140
SB2022090306
SB2022090669
and 11 more
#VU66921 - Security Features
CVE-2022-3034
CWE-254 Medium
No
No
- 01.09.2022 SB2022090140
SB2022090669
SB2022091542
and 11 more
#VU66920 - Security Features
CVE-2022-3032
CWE-254 Low
No
No
- 01.09.2022 SB2022090140
SB2022090669
SB2022091542
and 11 more
#VU66919 - Exposure of sensitive information to an unauthorized actor
CVE-2022-3033
CWE-200 Medium
No
No
- 01.09.2022 SB2022090140
SB2022090669
SB2022091542
and 13 more
#VU66698 - Exposure of sensitive information to an unauthorized actor
CVE-2022-29244
CWE-200 Medium
No
No
- 22.08.2022 SB2022082252
SB2022082253
SB2022091110
and 15 more
#VU65639 - Out-of-bounds write
CVE-2022-27404
CWE-787 High
No
No
- 21.07.2022 SB2022072115
SB2022072116
SB2022072122
and 48 more
#VU65638 - Out-of-bounds read
CVE-2022-27406
CWE-125 Medium
No
No
- 21.07.2022 SB2022072115
SB2022072116
SB2022072122
and 41 more
#VU65637 - Out-of-bounds read
CVE-2022-27405
CWE-125 Medium
No
No
- 21.07.2022 SB2022072115
SB2022072116
SB2022072122
and 39 more
#VU65287 - Permissions, Privileges, and Access Controls
CVE-2022-29187
CWE-264 Medium
No
No
- 13.07.2022 SB2022071347
SB2022071348
SB2022071350
and 30 more
#VU64769 - Improper Verification of Cryptographic Signature
CVE-2022-2226
CWE-347 Low
No
No
- 29.06.2022 SB2022062903
SB2022070102
SB2022070103
and 15 more
#VU63881 - Security Features
CVE-2022-31744
CWE-254 Medium
No
No
- 31.05.2022 SB2022053116
SB2022061323
SB2022062901
and 32 more
#VU31897 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2020-14001
CWE-74 High
No
No
- 27.07.2020 SB2020072739
SB2020081409
SB2020061736
and 8 more
#VU6900 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2017-6512
CWE-362 Low
No
No
- 05.06.2017 SB2017060503
SB2017060504
SB2017091703
and 8 more


Showing elements 641 - 660 out of 1220