Known vulnerabilities in SUSE Linux Enterprise Server 15 SP4 LTSS - page 31

Vendor: SUSE
Version: LTSS
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server_15_sp4:*:*:*:*:*:*:*:*
Total vulnerabilities: 3703
Public exploits: 95
Known exploited (KEV): 28
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server 15 SP4 version LTSS SUSE Linux Enterprise Server 15 SP4 LTSS is affected by 3703 vulnerabilities: 18 critical, 420 high, 828 medium, 2436 low Critical High Medium Low

Vulnerabilities (3703)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU133144 - Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-29518
CWE-367 Low
No
No
- 01.06.2026 SB2026060174
SB2026060175
SB2026060184
and 18 more
#VU132319 - Information Exposure Through Timing Discrepancy
CVE-2026-47783
CWE-208 Low
No
No
- 26.05.2026 SB2026052674
SB20260528298
SB20260529197
and 4 more
#VU132320 - Information Exposure Through Timing Discrepancy
CVE-2026-47784
CWE-208 Low
No
No
- 26.05.2026 SB2026052674
SB20260528278
SB20260528298
and 3 more
#VU131544 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2026-46483
CWE-78 Low
No
No
- 15.05.2026 SB2026051517
SB2026052130
SB2026052523
and 20 more
#VU130925 - Heap-based Buffer Overflow
CVE-2026-45130
CWE-122 Medium
No
No
- 11.05.2026 SB2026051150
SB2026052726
SB2026052760
and 10 more
#VU130216 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2026-41417
CWE-93 Medium
No
No
- 05.05.2026 SB20260505124
SB2026051351
SB2026051901
and 6 more
#VU130215 - Resource exhaustion
CVE-2026-42587
CWE-400 Medium
No
No
- 05.05.2026 SB20260505124
SB2026052040
SB20260528254
and 12 more
#VU130214 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2026-42581
CWE-444 Medium
No
No
- 05.05.2026 SB20260505124
SB2026052040
SB20260528254
and 12 more
#VU130213 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2026-42586
CWE-93 High
No
No
- 05.05.2026 SB20260505124
SB2026060936
SB2026060963
#VU130212 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2026-42578
CWE-113 Medium
No
No
- 05.05.2026 SB20260505124
SB2026051907
SB20260528254
and 6 more
#VU130211 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2026-42580
CWE-444 Medium
No
No
- 05.05.2026 SB20260505124
SB2026052040
SB20260528254
and 6 more
#VU130210 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2026-42585
CWE-444 Medium
No
No
- 05.05.2026 SB20260505124
SB2026052040
SB20260528254
and 13 more
#VU130208 - Null Byte Interaction Error (Poison Null Byte)
CVE-2026-42579
CWE-626 Medium
No
No
- 05.05.2026 SB20260505124
SB2026060936
SB2026060963
and 7 more
#VU130207 - Uncontrolled Memory Allocation
CVE-2026-42582
CWE-789 Medium
No
No
- 05.05.2026 SB20260505124
SB2026060963
#VU130206 - Allocation of Resources Without Limits or Throttling
CVE-2026-42583
CWE-770 Medium
No
No
- 05.05.2026 SB20260505124
SB2026052039
SB20260528254
and 8 more
#VU130205 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2026-42584
CWE-444 Medium
No
No
- 05.05.2026 SB20260505124
SB2026052040
SB20260528254
and 13 more
#VU130204 - Resource exhaustion
CVE-2026-44248
CWE-400 Medium
No
No
- 05.05.2026 SB20260505124
SB2026060963
#VU129539 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2026-44656
CWE-78 Medium
No
No
- 04.05.2026 SB2026050476
SB2026052760
SB2026052762
and 9 more
#VU120348 - Out-of-bounds read
CVE-2025-10158
CWE-125 Medium
No
No
- 26.12.2025 SB2025122689
SB2025122697
SB2025122698
and 27 more
#VU102729 - Heap-based Buffer Overflow
CVE-2024-12084
CWE-122 Critical
Public exploit available
No
- 14.01.2025 SB2025011495
SB2025011504
SB2025011530
and 25 more


Showing elements 601 - 620 out of 3703