Known vulnerabilities in SUSE OpenStack Cloud 8 - page 7

Vendor: SUSE
Version: 8
Software CPE: cpe:2.3:o:suse:suse_openstack_cloud:*:*:*:*:*:*:*:*
Total vulnerabilities: 802
Public exploits: 42
Known exploited (KEV): 21
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE OpenStack Cloud version 8 SUSE OpenStack Cloud 8 is affected by 802 vulnerabilities: 12 critical, 229 high, 277 medium, 284 low Critical High Medium Low

Vulnerabilities (802)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU63947 - Memory corruption
CVE-2022-1270
CWE-119 High
No
No
- 02.06.2022 SB2022060208
SB2022092951
SB2022112601
and 6 more
#VU63822 - Heap-based Buffer Overflow
CVE-2022-30293
CWE-122 High
No
No
- 30.05.2022 SB2022053014
SB2022053015
SB2022060119
and 30 more
#VU63282 - Use After Free
CVE-2022-26717
CWE-416 High
Public exploit available
No
- 16.05.2022 SB2022051701
SB2022051704
SB2022051705
and 37 more
#VU63284 - Memory corruption
CVE-2022-26719
CWE-119 High
No
No
- 16.05.2022 SB2022051701
SB2022051704
SB2022051705
and 34 more
#VU63126 - Permissions, Privileges, and Access Controls
CVE-2022-1552
CWE-264 Medium
No
No
- 12.05.2022 SB2022051213
SB2022051303
SB2022051304
and 48 more
#VU62851 - Memory corruption
CVE-2022-28463
CWE-119 High
No
No
- 09.05.2022 SB2022050924
SB2022060125
SB2022060203
and 9 more
#VU61422 - Reliance on Reverse DNS Resolution for a Security-Critical Action
CVE-2021-25220
CWE-350 Medium
No
No
- 17.03.2022 SB2022031701
SB2022031719
SB2022031725
and 57 more
#VU59320 - Resource exhaustion
CVE-2021-40797
CWE-400 Medium
No
No
- 09.01.2022 SB2021090835
SB2022010907
SB2022032433
and 3 more
#VU58503 - Cross-Site Request Forgery (CSRF)
CVE-2021-44227
CWE-352 Medium
No
No
- 03.12.2021 SB2021120305
SB2021120306
SB2021120314
and 12 more
#VU58350 - Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
CVE-2021-43332
CWE-338 Low
No
No
- 24.11.2021 SB2021112406
SB2021111823
SB2022053136
and 2 more
#VU58349 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-43331
CWE-79 Low
No
No
- 24.11.2021 SB2021112406
SB2021111823
SB2022053136
and 2 more
#VU58348 - Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
CVE-2021-42096
CWE-338 Medium
No
No
- 24.11.2021 SB2021112405
SB2021112417
SB2021112419
and 9 more
#VU57242 - Improper Access Control
CVE-2021-40085
CWE-284 Low
No
No
- 12.10.2021 SB2021101209
SB2022053134
SB2023051224
and 5 more
#VU11306 - Stack-based buffer overflow
CVE-2018-1000140
CWE-121 High
No
Exploited
- 28.03.2018 SB2018032808
SB2018032809
SB2018032810
and 12 more
#VU9591 - Permissions, Privileges, and Access Controls
CVE-2017-13080
CWE-264 Low
No
No
- 08.12.2017 SB2017101724
SB2017101630
SB2017101631
and 13 more
#VU8840 - Key Management Errors
CVE-2017-13080
CWE-320 Medium
No
No
- 17.10.2017 SB2017101702
SB2017101703
SB2017101704
and 78 more
#VU8839 - Key Management Errors
CVE-2017-13079
CWE-320 High
No
No
- 17.10.2017 SB2017101702
SB2017101704
SB2017101706
and 27 more
#VU8838 - Key Management Errors
CVE-2017-13078
CWE-320 High
No
No
- 17.10.2017 SB2017101702
SB2017101704
SB2017101706
and 30 more
#VU8837 - Key Management Errors
CVE-2017-13077
CWE-320 High
No
No
- 17.10.2017 SB2017101702
SB2017101704
SB2017101706
and 27 more
#VU40604 - Improper input validation
CVE-2015-8041
CWE-20 Medium
No
No
- 09.11.2015 SB2015110914
SB2022052630


Showing elements 121 - 140 out of 802