Suse / Suse Linux
205 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2024-12087 | Rsync: path traversal vulnerability in rsync | HIGH | 7.5 | Jan 14, 2025 |
| CVE-2024-12086 | Rsync: rsync server leaks arbitrary client files | MEDIUM | 6.8 | Jan 14, 2025 |
| CVE-2024-12085 | Rsync: info leak via uninitialized stack contents | HIGH | 7.5 | Jan 14, 2025 |
| CVE-2017-3224 | Open Shortest Path First (OSPF) protocol implementations may improperly determine LSA recency in affected Quagga and downstream implementations (SUSE, openSUSE… | HIGH | 8.2 | Jul 24, 2018 |
| CVE-2010-0230 | SUSE Linux Enterprise 10 SP3 (SLE10-SP3) and openSUSE 11.2 configures postfix to listen on all network interfaces, which might allow remote attackers to bypass… | HIGH | 7.5 | Jan 22, 2010 |
| CVE-2009-1648 | The YaST2 LDAP module in yast2-ldap-server on SUSE Linux Enterprise Server 11 (aka SLE11) does not enable the firewall in certain circumstances involving reboo… | HIGH | 7.5 | Jul 5, 2009 |
| CVE-2008-3949 | emacs: Python interactive shell arbitrary code execution | HIGH | 7.2 | Sep 22, 2008 |
| CVE-2003-1538 | susehelp in SuSE Linux 8.1, Enterprise Server 8, Office Server, and Openexchange Server 4 does not properly filter shell metacharacters, which allows remote at… | MEDIUM | 6.4 | Dec 20, 2007 |
| CVE-2007-6167 | Untrusted search path vulnerability in yast2-core in SUSE Linux might allow local users to execute arbitrary code by creating a malicious yast2 module in the c… | HIGH | 7.2 | Nov 29, 2007 |
| CVE-2007-5471 | libgssapi before 0.6-13.7, as used by the ISC BIND named daemon in SUSE Linux Enterprise Server 10 SP 1, terminates upon an initialization error, which allows… | HIGH | 7.8 | Oct 16, 2007 |
| CVE-2007-5196 | Unspecified vulnerability in the SSL implementation in Groupwise client system in the novell-groupwise-client package in SUSE Linux Enterprise Desktop 10 allow… | HIGH | 7.5 | Oct 14, 2007 |
| CVE-2007-5195 | Unspecified vulnerability in the SSL implementation in Groupwise client system in the novell-groupwise-client package in SUSE Linux Enterprise Desktop 10 allow… | MEDIUM | 6.8 | Oct 14, 2007 |
| CVE-2007-4432 | Untrusted search path vulnerability in the wrapper scripts for the (1) rug, (2) zen-updater, (3) zen-installer, and (4) zen-remover programs on SUSE Linux 10.1… | MEDIUM | 4.6 | Aug 20, 2007 |
| CVE-2007-4394 | Unspecified vulnerability in a "core clean" cron job created by the findutils-locate package on SUSE Linux 10.0 and 10.1 and Enterprise Server 9 and 10 before… | LOW | 2.1 | Aug 17, 2007 |
| CVE-2007-4393 | The installation script for orarun on SUSE Linux before 20070810 places the oracle user into the disk group, which allows the local oracle user to read or writ… | MEDIUM | 4.6 | Aug 17, 2007 |
| CVE-2007-4074 | The default configuration of Centre for Speech Technology Research (CSTR) Festival 1.95 beta (aka 2.0 beta) on Gentoo Linux, SUSE Linux, and possibly other dis… | HIGH | 10.0 | Jul 30, 2007 |
| CVE-2007-2654 | xfs_fsr in xfsdump creates a .fsr temporary directory with insecure permissions, which allows local users to read or overwrite arbitrary files on xfs filesyste… | MEDIUM | 4.4 | May 14, 2007 |
| CVE-2007-0460 | Multiple buffer overflows in ulogd for SUSE Linux 9.3 up to 10.1, and possibly other distributions, have unknown impact and attack vectors related to "improper… | HIGH | 10.0 | Jan 24, 2007 |
| CVE-2006-6662 | Unspecified vulnerability in Linux User Management (novell-lum) on SUSE Linux Enterprise Desktop 10 and Open Enterprise Server 9, under unspecified conditions,… | MEDIUM | 4.1 | Dec 20, 2006 |
| CVE-2006-5616 | Multiple unspecified vulnerabilities in OpenPBS, as used in SUSE Linux 9.2 through 10.1, allow attackers to execute arbitrary code via unspecified vectors. | HIGH | 10.0 | Oct 31, 2006 |
| CVE-2006-2658 | Directory traversal vulnerability in the xsp component in mod_mono in Mono/C# web server, as used in SUSE Open-Enterprise-Server 1 and SUSE Linux 9.2 through 1… | MEDIUM | 5.0 | Sep 12, 2006 |
| CVE-2006-2752 | The RedCarpet /etc/ximian/rcd.conf configuration file in Novell Linux Desktop 9 and SUSE SLES 9 has world-readable permissions, which allows attackers to obtai… | MEDIUM | 6.4 | Jun 1, 2006 |
| CVE-2006-2703 | The RedCarpet command-line client (rug) does not verify SSL certificates from a server, which allows remote attackers to read network traffic and execute comma… | MEDIUM | 5.0 | Jun 1, 2006 |
| CVE-2005-4790 | tomboy and blam uses insecure LD_LIBRARY_PATH | MEDIUM | 6.9 | Apr 26, 2006 |
| CVE-2005-4789 | resmgr in SUSE Linux 9.2 and 9.3, and possibly other distributions, does not properly enforce class-specific exclude rules in some situations, which allows loc… | LOW | 2.1 | Apr 26, 2006 |
Showing 1 to 25 of 205 CVEs