Known vulnerabilities in SUSE Linux Enterprise Server 15 SP5 LTSS

Vendor: SUSE
Version: LTSS
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server_15_sp5:*:*:*:*:*:*:*:*
Total vulnerabilities: 3512
Public exploits: 83
Known exploited (KEV): 24
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server 15 SP5 version LTSS SUSE Linux Enterprise Server 15 SP5 LTSS is affected by 3512 vulnerabilities: 18 critical, 380 high, 742 medium, 2372 low Critical High Medium Low

Vulnerabilities (3512)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU140622 - Improper Link Resolution Before File Access ('Link Following')
CVE-2026-39822
CWE-59 Low
No
No
- 31.07.2026 SB2026073128
SB20260731126
SB20260731127
and 8 more
#VU140621 - Exposure of sensitive information to an unauthorized actor
CVE-2026-42505
CWE-200 Medium
No
No
- 31.07.2026 SB2026073128
SB20260731146
SB20260731147
and 5 more
#VU140620 - Resource exhaustion
CVE-2026-27145
CWE-400 Medium
No
No
- 31.07.2026 SB2026073127
SB2026073129
SB2026073130
and 35 more
#VU140619 - Resource exhaustion
CVE-2026-42504
CWE-400 Medium
No
No
- 31.07.2026 SB2026073127
SB20260731138
SB20260731143
and 5 more
#VU140618 - Improper Output Neutralization for Logs
CVE-2026-42507
CWE-117 Medium
No
No
- 31.07.2026 SB2026073127
SB20260731115
SB20260731143
and 6 more
#VU140607 - Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-32282
CWE-367 Low
No
No
- 31.07.2026 SB2026073125
SB2026073160
SB2026073161
and 49 more
#VU140606 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2026-32289
CWE-79 Medium
No
No
- 31.07.2026 SB2026073125
SB20260731139
SB20260731140
and 3 more
#VU140604 - Memory corruption
CVE-2026-27144
CWE-119 Low
No
No
- 31.07.2026 SB2026073125
SB2026073157
SB2026073158
and 11 more
#VU140603 - Integer overflow
CVE-2026-27143
CWE-190 Low
No
No
- 31.07.2026 SB2026073125
SB2026073157
SB2026073158
and 11 more
#VU140602 - Allocation of Resources Without Limits or Throttling
CVE-2026-32288
CWE-770 Medium
No
No
- 31.07.2026 SB2026073125
SB2026073155
SB2026073156
and 8 more
#VU140601 - Protection Mechanism Failure
CVE-2026-27140
CWE-693 High
No
No
- 31.07.2026 SB2026073125
SB2026073155
SB2026073156
and 15 more
#VU140600 - Improper input validation
CVE-2026-32281
CWE-20 Medium
No
No
- 31.07.2026 SB2026073125
SB2026073183
SB2026073184
and 32 more
#VU140599 - Resource exhaustion
CVE-2026-32280
CWE-400 Medium
No
No
- 31.07.2026 SB2026073125
SB2026073160
SB2026073161
and 63 more
#VU137847 - Heap-based Buffer Overflow
CVE-2026-42533
CWE-122 High
No
No
- 16.07.2026 SB2026071606
SB20260721112
SB20260721113
and 3 more
#VU136680 - Dependency on Vulnerable Third-Party Component
CVE-2026-32283
CWE-1395 Medium
No
No
- 02.07.2026 SB2026070218
SB2026070239
SB2026070240
and 59 more
#VU135702 - Improper Control of Generation of Code ('Code Injection')
CVE-2026-59856
CWE-94 High
No
No
- 29.06.2026 SB2026062909
SB20260715103
SB2026072430
and 3 more
#VU135701 - Improper Control of Generation of Code ('Code Injection')
CVE-2026-59858
CWE-94 Medium
No
No
- 29.06.2026 SB2026062908
SB20260715103
SB2026072526
and 3 more
#VU135167 - Out-of-bounds write
CVE-2026-59857
CWE-787 Low
No
No
- 25.06.2026 SB2026062530
SB20260715103
SB2026072526
and 1 more
#VU134864 - Out-of-bounds read
CVE-2026-48142
CWE-125 Medium
No
No
- 18.06.2026 SB2026061844
SB2026061845
SB2026061846
and 8 more
#VU134861 - Heap-based Buffer Overflow
CVE-2026-42055
CWE-122 High
No
No
- 18.06.2026 SB2026061844
SB2026061845
SB2026061846
and 10 more


Showing elements 1 - 20 out of 3512