Known vulnerabilities in SUSE Package Hub 15 15-SP4

Vendor: SUSE
Version: 15-SP4
Software CPE: cpe:2.3:o:suse:suse_package_hub_15:*:*:*:*:*:*:*:*
Total vulnerabilities: 289
Public exploits: 8
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Package Hub 15 version 15-SP4 SUSE Package Hub 15 15-SP4 is affected by 289 vulnerabilities: 3 critical, 84 high, 121 medium, 81 low Critical High Medium Low

Vulnerabilities (289)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU114096 - Improper input validation
CVE-2025-8715
CWE-20 Medium
No
No
- 14.08.2025 SB2025081496
SB2025081898
SB2025082551
and 51 more
#VU114095 - Improper Control of Generation of Code ('Code Injection')
CVE-2025-8714
CWE-94 Low
Public exploit available
No
- 14.08.2025 SB2025081496
SB2025081898
SB2025082551
and 53 more
#VU114094 - Permissions, Privileges, and Access Controls
CVE-2025-8713
CWE-264 Low
No
No
- 14.08.2025 SB2025081496
SB2025081898
SB2025082551
and 31 more
#VU108834 - Buffer over-read
CVE-2025-4207
CWE-126 Medium
No
No
- 09.05.2025 SB2025050920
SB2025051669
SB20250521157
and 37 more
#VU84726 - Out-of-bounds write
CVE-2022-43358
CWE-787 High
No
No
- 22.12.2023 SB2023122242
SB2023122245
SB2024031214
and 3 more
#VU84725 - Out-of-bounds write
CVE-2022-43357
CWE-787 High
No
No
- 22.12.2023 SB2023122242
SB2023122245
SB2024031214
and 2 more
#VU84724 - Stack-based buffer overflow
CVE-2022-26592
CWE-121 High
No
No
- 22.12.2023 SB2023122242
SB2023122245
SB2024031214
and 1 more
#VU84093 - Security Features
CVE-2023-6186
CWE-254 High
No
No
- 12.12.2023 SB2023121213
SB2023121221
SB2023121223
and 16 more
#VU84092 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-6185
CWE-78 High
No
No
- 12.12.2023 SB2023121210
SB2023121221
SB2023121223
and 18 more
#VU83513 - Heap-based Buffer Overflow
CVE-2023-40475
CWE-122 High
No
No
- 27.11.2023 SB2023110947
SB2023112801
SB2023112976
and 13 more
#VU83303 - Reachable Assertion
CVE-2023-38472
CWE-617 Low
No
No
- 20.11.2023 SB2023112056
SB2023112057
SB2023112113
and 31 more
#VU83223 - Use After Free
CVE-2023-44446
CWE-416 High
No
No
- 16.11.2023 SB2023111617
SB2023111748
SB2023112602
and 30 more
#VU82980 - Improper input validation
CVE-2023-27043
CWE-20 Medium
No
No
- 10.11.2023 SB2023041957
SB2023111064
SB2023111315
and 120 more
#VU80403 - Integer underflow
CVE-2023-39350
CWE-191 Medium
No
No
- 04.09.2023 SB2023090425
SB2023090438
SB2023090439
and 10 more
#VU80402 - Out-of-bounds write
CVE-2023-39352
CWE-787 High
No
No
- 04.09.2023 SB2023090425
SB2023090438
SB2023090439
and 11 more
#VU80400 - Out-of-bounds read
CVE-2023-39353
CWE-125 Medium
No
No
- 04.09.2023 SB2023090425
SB2023090438
SB2023090439
and 10 more
#VU80399 - NULL Pointer Dereference
CVE-2023-39351
CWE-476 Medium
No
No
- 04.09.2023 SB2023090425
SB2023090438
SB2023090439
and 10 more
#VU80397 - Out-of-bounds read
CVE-2023-39354
CWE-125 Low
No
No
- 04.09.2023 SB2023090425
SB2023090438
SB2023090439
and 10 more
#VU77004 - Memory corruption
CVE-2023-34416
CWE-119 High
No
No
- 06.06.2023 SB2023060653
SB2023060676
SB2023060710
and 39 more
#VU77002 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2023-34414
CWE-451 Medium
No
No
- 06.06.2023 SB2023060653
SB2023060676
SB2023060710
and 38 more


Showing elements 1 - 20 out of 289