Known vulnerabilities in SUSE Linux Enterprise Workstation Extension 15-SP4 - page 9

Vendor: SUSE
Version: 15-SP4
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_workstation_extension:*:*:*:*:*:*:*:*
Total vulnerabilities: 317
Public exploits: 19
Known exploited (KEV): 4
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Workstation Extension version 15-SP4 SUSE Linux Enterprise Workstation Extension 15-SP4 is affected by 317 vulnerabilities: 46 high, 69 medium, 202 low Critical High Medium Low

Vulnerabilities (317)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU68115 - Command injection
CVE-2022-3140
CWE-77 High
No
No
- 11.10.2022 SB2022101127
SB2022101306
SB2022101830
and 7 more
#VU67972 - Missing release of memory after effective lifetime
CVE-2020-29260
CWE-401 Medium
No
No
- 06.10.2022 SB2022100646
SB2022100647
SB2022111531
and 3 more
#VU67911 - Exposure of sensitive information to an unauthorized actor
CVE-2021-42523
CWE-200 Medium
No
No
- 04.10.2022 SB2022100447
SB2022100448
SB2022112240
and 5 more
#VU67743 - Insufficient Verification of Data Authenticity
CVE-2022-39251
CWE-345 Low
No
No
- 29.09.2022 SB2022092924
SB2022092925
SB2022093040
and 12 more
#VU67512 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2016-3695
CWE-74 Low
No
No
- 20.09.2022 SB2017122926
SB2022092046
SB2022092047
and 6 more
#VU67505 - Memory corruption
CVE-2022-40962
CWE-119 High
No
No
- 20.09.2022 SB2022092029
SB2022092120
SB2022092137
and 29 more
#VU67504 - Improper input validation
CVE-2022-40957
CWE-20 Medium
No
No
- 20.09.2022 SB2022092029
SB2022092120
SB2022092137
and 28 more
#VU67503 - Security Features
CVE-2022-40956
CWE-254 Medium
No
No
- 20.09.2022 SB2022092029
SB2022092120
SB2022092137
and 30 more
#VU67502 - Security Features
CVE-2022-40958
CWE-254 Medium
No
No
- 20.09.2022 SB2022092029
SB2022092120
SB2022092137
and 30 more
#VU67501 - Use After Free
CVE-2022-40960
CWE-416 High
No
No
- 20.09.2022 SB2022092029
SB2022092120
SB2022092137
and 29 more
#VU67500 - Security Features
CVE-2022-40959
CWE-254 Medium
No
No
- 20.09.2022 SB2022092029
SB2022092120
SB2022092137
and 29 more
#VU67474 - Out-of-bounds write
CVE-2022-20369
CWE-787 Low
No
No
- 20.09.2022 SB2022092006
SB2022092007
SB2022092008
and 37 more
#VU67473 - Out-of-bounds read
CVE-2022-20368
CWE-125 Low
No
No
- 19.09.2022 SB2022092006
SB2022092007
SB2022092008
and 44 more
#VU66812 - Integer underflow
CVE-2022-2639
CWE-191 Low
Public exploit available
No
- 29.08.2022 SB2022082924
SB2022082925
SB2022082926
and 51 more
#VU66811 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2020-36516
CWE-327 Medium
No
No
- 29.08.2022 SB2022022601
SB2022082925
SB2022082926
and 40 more
#VU66397 - Double Free
CVE-2022-2588
CWE-415 Low
Public exploit available
Exploited
- 11.08.2022 SB2022081109
SB2022081110
SB2022081111
and 99 more
#VU65768 - Inadequate Encryption Strength
CVE-2022-26307
CWE-326 Low
No
No
- 25.07.2022 SB2022072548
SB2022100634
SB2022101830
and 5 more
#VU65760 - Improper Certificate Validation
CVE-2022-26305
CWE-295 Medium
No
No
- 25.07.2022 SB2022072520
SB2022100634
SB2022101830
and 5 more
#VU63923 - Improper Access Control
CVE-2021-4037
CWE-284 Low
No
No
- 02.06.2022 SB2022060205
SB2022060206
SB2022062928
and 37 more
#VU63535 - Resource exhaustion
CVE-2021-33135
CWE-400 Low
No
No
- 23.05.2022 SB2022052314
SB2022092047
SB2022092049
and 2 more


Showing elements 161 - 180 out of 317