Known Vulnerabilities for Leap by Opensuse
Listed below are 10 of the newest known vulnerabilities associated with "Leap" by "Opensuse".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-32182 json | A Improper Link Resolution Before File Access ('Link Following') vulnerability in SUSE SUSE Linux Enterprise Desktop 15 SP5 p... | 7.8 - HIGH | 2023-09-19 | 2023-09-25 |
| CVE-2023-22643 json | An Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in libzypp-plugin... | 7.8 - HIGH | 2023-02-07 | 2023-02-14 |
| CVE-2022-45153 json | An Incorrect Default Permissions vulnerability in saphanabootstrap-formula of SUSE Linux Enterprise Module for SAP Applicatio... | 7.8 - HIGH | 2023-02-15 | 2023-02-24 |
| CVE-2022-31254 json | A Incorrect Default Permissions vulnerability in rmt-server-regsharing service of SUSE Linux Enterprise Server for SAP 15, SU... | 7.8 - HIGH | 2023-02-07 | 2023-02-14 |
| CVE-2022-31252 json | A Incorrect Authorization vulnerability in chkstat of SUSE Linux Enterprise Server 12-SP5; openSUSE Leap 15.3, openSUSE Leap ... | 4.4 - MEDIUM | 2022-10-06 | 2022-11-07 |
| CVE-2021-46142 json | An issue was discovered in uriparser before 0.9.6. It performs invalid free operations in uriNormalizeSyntax. | 5.5 - MEDIUM | 2022-01-06 | 2023-11-07 |
| CVE-2021-46141 json | An issue was discovered in uriparser before 0.9.6. It performs invalid free operations in uriFreeUriMembers and uriMakeOwner. | 5.5 - MEDIUM | 2022-01-06 | 2023-11-07 |
| CVE-2021-41819 json | CGI::Cookie.parse in Ruby through 2.6.8 mishandles security prefixes in cookie names. This also affects the CGI gem through 0... | 7.5 - HIGH | 2022-01-01 | 2024-01-24 |
| CVE-2021-41817 json | Date.parse in the date gem through 3.2.0 for Ruby allows ReDoS (regular expression Denial of Service) via a long string. The ... | 7.5 - HIGH | 2022-01-01 | 2024-01-24 |
| CVE-2021-31998 json | A Incorrect Default Permissions vulnerability in the packaging of inn of SUSE Linux Enterprise Server 11-SP3; openSUSE Backpo... | 7.8 - HIGH | 2021-06-10 | 2021-06-24 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Opensuse | Leap | 42.3 | |||
| Operating System | Opensuse | Leap | 42.2 | |||
| Operating System | Opensuse | Leap | 42.1 | |||
| Operating System | Opensuse | Leap | 42.0 | |||
| Operating System | Opensuse | Leap | 15.2 | |||
| Operating System | Opensuse | Leap | 15.1 | |||
| Operating System | Opensuse | Leap | 15.0 |