Known vulnerabilities in SUSE Linux Enterprise Server 12 SP5 - page 249

Vendor: SUSE
Version: SP5
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server_12:*:*:*:*:*:*:*:*
Total vulnerabilities: 5421
Public exploits: 132
Known exploited (KEV): 52
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server 12 version SP5 SUSE Linux Enterprise Server 12 SP5 is affected by 5421 vulnerabilities: 28 critical, 636 high, 1153 medium, 3603 low Critical High Medium Low

Vulnerabilities (5421)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU79963 - Out-of-bounds read
CVE-2023-4156
CWE-125 Low
No
No
- 24.08.2023 SB2023082451
SB2023082453
SB2023082810
and 9 more
#VU79962 - Heap-based Buffer Overflow
CVE-2023-40305
CWE-122 High
No
No
- 24.08.2023 SB2023082446
SB2023082447
SB2023082448
and 8 more
#VU79836 - Inefficient Regular Expression Complexity
CVE-2023-26112
CWE-1333 Medium
No
No
- 22.08.2023 SB2023082229
SB2023082230
SB2023082231
and 8 more
#VU79633 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2023-20197
CWE-835 Medium
No
No
- 16.08.2023 SB20230816163
SB20230821217
SB20230821218
and 21 more
#VU79586 - Access of Uninitialized Pointer
CVE-2023-36054
CWE-824 Medium
No
No
- 16.08.2023 SB2023081621
SB2023081623
SB2023081624
and 51 more
#VU79455 - Permissions, Privileges, and Access Controls
CVE-2023-39418
CWE-264 Low
No
No
- 11.08.2023 SB2023081132
SB2023081716
SB2023081720
and 22 more
#VU79454 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2023-39417
CWE-89 Medium
No
No
- 11.08.2023 SB2023081132
SB2023081715
SB2023081716
and 60 more
#VU79378 - Unauthorized Error Injection Can Degrade Hardware Redundancy
CVE-2022-41804
CWE-1334 Low
No
No
- 11.08.2023 SB2023081104
SB2023081150
SB2023081203
and 17 more
#VU79377 - Improper Access Control
CVE-2023-23908
CWE-284 Low
No
No
- 11.08.2023 SB2023081103
SB2023081150
SB2023081203
and 21 more
#VU79112 - Integer overflow
CVE-2022-41409
CWE-190 Medium
No
No
- 07.08.2023 SB2023080749
SB2023080750
SB2023081617
and 10 more
#VU79041 - Memory corruption
CVE-2023-38559
CWE-119 Medium
No
No
- 07.08.2023 SB2023080739
SB2023080850
SB2023081723
and 18 more
#VU78978 - Memory corruption
CVE-2023-3824
CWE-119 Critical
Public exploit available
Exploited
- 06.08.2023 SB2023080604
SB2023081704
SB20230821142
and 32 more
#VU78977 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2023-3823
CWE-611 High
No
No
- 06.08.2023 SB2023080604
SB2023081704
SB20230821142
and 31 more
#VU78944 - Heap-based Buffer Overflow
CVE-2023-3745
CWE-122 Medium
No
No
- 04.08.2023 SB2023080415
SB2023080419
SB2023080914
and 2 more
#VU78901 - Deserialization of Untrusted Data
CVE-2022-40609
CWE-502 High
No
No
- 03.08.2023 SB2023080307
SB2023080808
SB2023080809
and 56 more
#VU78326 - Out-of-bounds write
CVE-2023-35001
CWE-787 Low
Public exploit available
No
- 17.07.2023 SB2023071735
SB2023071736
SB2023072077
and 129 more
#VU77495 - Use After Free
CVE-2023-2985
CWE-416 Low
No
No
- 17.06.2023 SB2023061701
SB2023061704
SB2023061705
and 40 more
#VU72557 - Memory corruption
CVE-2022-4904
CWE-119 Low
No
No
- 24.02.2023 SB2023022410
SB2023022502
SB2023030233
and 38 more
#VU34442 - Improper input validation
CVE-2020-11879
CWE-20 Medium
No
No
- 17.04.2020 SB2020041730
SB2023082246
#VU12911 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2018-3639
CWE-362 Low
No
No
- 22.05.2018 SB2018052201
SB2018052207
SB2018052208
and 142 more


Showing elements 4961 - 4980 out of 5421