Known vulnerabilities in SUSE Linux Enterprise Workstation Extension 15-SP4

Vendor: SUSE
Version: 15-SP4
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_workstation_extension:*:*:*:*:*:*:*:*
Total vulnerabilities: 317
Public exploits: 19
Known exploited (KEV): 4
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Workstation Extension version 15-SP4 SUSE Linux Enterprise Workstation Extension 15-SP4 is affected by 317 vulnerabilities: 46 high, 69 medium, 202 low Critical High Medium Low

Vulnerabilities (317)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU72328 - Use After Free
CVE-2022-4382
CWE-416 Low
No
No
- 16.02.2023 SB2023021640
SB2023021641
SB2023021642
and 22 more
#VU72098 - Use After Free
CVE-2023-0590
CWE-416 Low
No
No
- 09.02.2023 SB2023020962
SB2023020963
SB2023020964
and 80 more
#VU71716 - Improper Verification of Cryptographic Signature
CVE-2023-0430
CWE-347 Medium
No
No
- 01.02.2023 SB2023020101
SB2023020201
SB2023020602
and 14 more
#VU71482 - Use After Free
CVE-2023-0266
CWE-416 High
No
Exploited
- 24.01.2023 SB2023012447
SB2023012450
SB2023012651
and 88 more
#VU71479 - NULL Pointer Dereference
CVE-2022-47929
CWE-476 Medium
No
No
- 24.01.2023 SB2023012444
SB2023012450
SB2023012651
and 62 more
#VU71478 - Type confusion
CVE-2023-23454
CWE-843 Low
No
No
- 24.01.2023 SB2023012443
SB2023012450
SB2023012626
and 91 more
#VU71477 - Type confusion
CVE-2023-23455
CWE-843 Low
No
No
- 24.01.2023 SB2023012442
SB2023012450
SB2023012651
and 86 more
#VU71227 - Permissions, Privileges, and Access Controls
CVE-2023-23601
CWE-264 Low
No
No
- 17.01.2023 SB2023011728
SB2023011729
SB2023011807
and 38 more
#VU71225 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-23599
CWE-78 Medium
No
No
- 17.01.2023 SB2023011728
SB2023011729
SB2023011807
and 33 more
#VU71224 - Permissions, Privileges, and Access Controls
CVE-2023-23598
CWE-264 Medium
No
No
- 17.01.2023 SB2023011728
SB2023011729
SB2023011807
and 37 more
#VU71173 - Integer overflow
CVE-2023-0179
CWE-190 Low
Public exploit available
No
- 16.01.2023 SB2023011603
SB2023012450
SB2023021001
and 49 more
#VU71138 - NULL Pointer Dereference
CVE-2023-0122
CWE-476 Medium
No
No
- 12.01.2023 SB2023011235
SB2023021642
SB2023022342
and 5 more
#VU70154 - Insufficient UI Warning of Dangerous Operations
CVE-2022-46877
CWE-357 Medium
No
No
- 13.12.2022 SB2022121330
SB2022121511
SB2023011007
and 36 more
#VU70145 - Memory corruption
CVE-2022-46871
CWE-119 High
No
No
- 13.12.2022 SB2022121330
SB2022121511
SB2023011007
and 37 more
#VU69594 - Out-of-bounds read
CVE-2022-39316
CWE-125 Medium
No
No
- 25.11.2022 SB2022112503
SB2022112505
SB2022112508
and 11 more
#VU69592 - Improper Validation of Array Index
CVE-2022-39317
CWE-129 Medium
No
No
- 25.11.2022 SB2022112503
SB2022112505
SB2022112508
and 11 more
#VU69590 - Out-of-bounds read
CVE-2022-41877
CWE-125 Low
No
No
- 25.11.2022 SB2022112503
SB2022112508
SB2023021343
and 12 more
#VU69589 - Out-of-bounds read
CVE-2022-39320
CWE-125 Low
No
No
- 25.11.2022 SB2022112503
SB2022112505
SB2022112508
and 11 more
#VU69588 - Absolute Path Traversal
CVE-2022-39347
CWE-36 Medium
No
No
- 25.11.2022 SB2022112503
SB2022112505
SB2022112508
and 11 more
#VU53098 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2020-24588
CWE-451 Low
No
No
- 11.05.2021 SB2021051118
SB2021051227
SB2021051708
and 52 more


Showing elements 1 - 20 out of 317