Known vulnerabilities in SUSE Linux Enterprise Workstation Extension 15-SP2

Vendor: SUSE
Version: 15-SP2
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_workstation_extension:*:*:*:*:*:*:*:*
Total vulnerabilities: 235
Public exploits: 6
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Workstation Extension version 15-SP2 SUSE Linux Enterprise Workstation Extension 15-SP2 is affected by 235 vulnerabilities: 41 high, 48 medium, 146 low Critical High Medium Low

Vulnerabilities (235)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU59099 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2021-45463
CWE-78 High
No
No
- 28.12.2021 SB2021122817
SB2021122818
SB2022011816
and 12 more
#VU57881 - Security Features
CVE-2021-38507
CWE-254 Low
No
No
- 02.11.2021 SB2021110228
SB2021110311
SB2021110501
and 25 more
#VU57880 - Insufficient UI Warning of Dangerous Operations
CVE-2021-38506
CWE-357 Medium
No
No
- 02.11.2021 SB2021110228
SB2021110311
SB2021110501
and 25 more
#VU57879 - Exposure of sensitive information to an unauthorized actor
CVE-2021-38505
CWE-200 Low
No
No
- 02.11.2021 SB2021110228
SB2021110311
SB2021111016
and 3 more
#VU57878 - Use After Free
CVE-2021-38504
CWE-416 High
No
No
- 02.11.2021 SB2021110228
SB2021110311
SB2021110501
and 25 more
#VU57876 - Security Features
CVE-2021-38503
CWE-254 High
No
No
- 02.11.2021 SB2021110228
SB2021110311
SB2021110501
and 25 more
#VU57241 - Cleartext Transmission of Sensitive Information
CVE-2021-38502
CWE-319 Medium
No
No
- 12.10.2021 SB2021101208
SB2021101342
SB2021101343
and 7 more
#VU57068 - Memory corruption
CVE-2021-38501
CWE-119 High
No
No
- 05.10.2021 SB2021100515
SB2021101208
SB2021101326
and 20 more
#VU57067 - Use After Free
CVE-2021-38498
CWE-416 High
No
No
- 05.10.2021 SB2021100515
SB2021101208
SB2021101326
and 20 more
#VU57066 - Origin Validation Error
CVE-2021-38497
CWE-346 Medium
No
No
- 05.10.2021 SB2021100515
SB2021101208
SB2021101326
and 20 more
#VU57065 - Memory corruption
CVE-2021-38500
CWE-119 High
No
No
- 05.10.2021 SB2021100515
SB2021100803
SB2021101208
and 22 more
#VU57064 - Use After Free
CVE-2021-38496
CWE-416 High
No
No
- 05.10.2021 SB2021100515
SB2021100803
SB2021101208
and 21 more
#VU56376 - Memory corruption
CVE-2021-38495
CWE-119 High
No
No
- 07.09.2021 SB2021090711
SB2021090801
SB2021100414
and 11 more
#VU56374 - Memory corruption
CVE-2021-38493
CWE-119 High
No
No
- 07.09.2021 SB2021090711
SB2021090801
SB2021091202
and 17 more
#VU56373 - Improper input validation
CVE-2021-38492
CWE-20 Medium
No
No
- 07.09.2021 SB2021090711
SB2021090801
SB2021100414
and 8 more
#VU55935 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2021-29991
CWE-113 Medium
No
No
- 18.08.2021 SB2021081805
SB2021100414
SB2021092228
and 8 more
#VU55687 - Type confusion
CVE-2021-29982
CWE-843 Low
No
No
- 10.08.2021 SB2021081008
SB2021081102
SB2021100414
and 10 more
#VU55686 - Insufficient UI Warning of Dangerous Operations
CVE-2021-29987
CWE-357 Low
No
No
- 10.08.2021 SB2021081008
SB2021081102
SB2021100414
and 10 more
#VU55679 - Improper input validation
CVE-2021-29981
CWE-20 High
No
No
- 10.08.2021 SB2021081008
SB2021081102
SB2021100414
and 10 more
#VU55598 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2021-32810
CWE-362 High
No
No
- 05.08.2021 SB2021080510
SB2021100515
SB2021101208
and 34 more


Showing elements 1 - 20 out of 235