Known vulnerabilities in SUSE Linux Enterprise Workstation Extension 15-SP3 - page 8

Vendor: SUSE
Version: 15-SP3
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_workstation_extension:*:*:*:*:*:*:*:*
Total vulnerabilities: 515
Public exploits: 23
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Workstation Extension version 15-SP3 SUSE Linux Enterprise Workstation Extension 15-SP3 is affected by 515 vulnerabilities: 82 high, 103 medium, 330 low Critical High Medium Low

Vulnerabilities (515)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU67361 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2021-39360
CWE-300 Medium
No
No
- 14.09.2022 SB2021082208
SB2022091458
SB2022091459
and 4 more
#VU67136 - Integer overflow
CVE-2020-13999
CWE-190 High
No
No
- 08.09.2022 SB2020061535
SB2022090851
SB2022090852
and 3 more
#VU66811 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2020-36516
CWE-327 Medium
No
No
- 29.08.2022 SB2022022601
SB2022082925
SB2022082926
and 40 more
#VU66725 - Use After Free
CVE-2022-38476
CWE-416 Low
No
No
- 23.08.2022 SB2022082315
SB2022082316
SB2022082515
and 27 more
#VU66724 - Memory corruption
CVE-2022-38478
CWE-119 High
No
No
- 23.08.2022 SB2022082315
SB2022082316
SB2022082411
and 36 more
#VU66723 - Memory corruption
CVE-2022-38477
CWE-119 High
No
No
- 23.08.2022 SB2022082315
SB2022082316
SB2022082502
and 28 more
#VU66720 - Permissions, Privileges, and Access Controls
CVE-2022-38473
CWE-264 Medium
No
No
- 23.08.2022 SB2022082315
SB2022082316
SB2022082411
and 36 more
#VU66719 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-38472
CWE-451 Medium
No
No
- 23.08.2022 SB2022082315
SB2022082316
SB2022082411
and 35 more
#VU66706 - Improper Handling of Exceptional Conditions
CVE-2022-32990
CWE-755 Low
No
No
- 23.08.2022 SB2022060209
SB2022082306
SB2022090652
and 6 more
#VU66592 - Security Features
CVE-2022-21505
CWE-254 Low
No
No
- 17.08.2022 SB2022081738
SB2022081742
SB2022081744
and 14 more
#VU66591 - Out-of-bounds read
CVE-2022-1462
CWE-125 Low
No
No
- 17.08.2022 SB2022081737
SB2022081739
SB2022081740
and 49 more
#VU66590 - Out-of-bounds write
CVE-2021-33656
CWE-787 Low
No
No
- 17.08.2022 SB2022081736
SB2022081739
SB2022081740
and 48 more
#VU66589 - NULL Pointer Dereference
CVE-2020-36558
CWE-476 Low
No
No
- 17.08.2022 SB2022081735
SB2022081739
SB2022081740
and 32 more
#VU66588 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2020-36557
CWE-362 Low
No
No
- 17.08.2022 SB2022081734
SB2022081739
SB2022081740
and 21 more
#VU65833 - Out-of-bounds write
CVE-2021-33655
CWE-787 Low
No
No
- 27.07.2022 SB2022072725
SB2022072814
SB2022081739
and 77 more
#VU65795 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-36318
CWE-79 Medium
No
No
- 26.07.2022 SB2022072633
SB2022072634
SB2022072815
and 36 more
#VU65794 - Exposure of resource to wrong sphere
CVE-2022-36314
CWE-668 Low
No
No
- 26.07.2022 SB2022072633
SB2022072906
SB2022091450
and 4 more
#VU65793 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-36319
CWE-451 Low
No
No
- 26.07.2022 SB2022072633
SB2022072634
SB2022072815
and 36 more
#VU64208 - Permissions, Privileges, and Access Controls
CVE-2022-20166
CWE-264 Low
No
No
- 13.06.2022 SB2022061414
SB2022081739
SB2022081740
and 16 more
#VU63633 - Integer overflow
CVE-2022-1116
CWE-190 Low
No
No
- 25.05.2022 SB2022052605
SB2022060110
SB2022060303
and 18 more


Showing elements 141 - 160 out of 515