Suse Linux Enterprise Software Development Kit

Vendor:

First CVE: Nov 21, 2012 · Active for 13 years

35
Total CVEs
More Total CVEs than 96% of tracked products
5.8
Avg CVEs / Year
Higher CVE frequency than 90% of tracked products
7.8
Avg CVSS
Higher Avg CVSS than 63% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Suse Linux Enterprise Software Development Kit over time

Volume of CVEsAvg CVSS Base Score
First CVE
Nov 21, 2012
13 years ago
Most Recent CVE
Jan 4, 2018
3,124 days ago

CVE Severity & Scoring

Suse Linux Enterprise Software Development Kit35 CVEs
All CVEs352,708 CVEs
LowMediumHighCritical
Attack Vector
Local3 (8.6%)
Network23 (65.7%)
Unknown8 (22.9%)
Physical1 (2.9%)
Adjacent Network0 (0.0%)
Attack Complexity
Low25 (71.4%)
High2 (5.7%)
Unknown8 (22.9%)
User Interaction
None21 (60.0%)
Unknown8 (22.9%)
Required6 (17.1%)
Privileges Required
Low2 (5.7%)
High0 (0.0%)
None25 (71.4%)
Unknown8 (22.9%)

Top CVEs

Signals from CVEs in this product scope (35 CVEs).

35 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
The Web IDL implementation in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allows remote attackers to execute arbit
Mar 19, 20149.887NOYES
Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allow remote attackers to bypass the popup blocker via unspecified vec
Mar 19, 20149.884NOYES
Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side
Jan 4, 20185.683NOYES
Use-after-free vulnerability in the TypeObject class in the JavaScript engine in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey b
Mar 19, 201410.051NONO
The nsGfxScrollFrameInner::IsLTR function in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 allows remote attackers t
Dec 11, 20139.837NONO
vmtypedarrayobject.cpp in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 does not validate the length of the destinat
Mar 19, 20149.836NONO
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 allow re
Dec 11, 20139.836NONO
The RFC 5011 implementation in rdata.c in ISC BIND 9.7.x and 9.8.x before 9.8.5-P2, 9.8.6b1, 9.9.x before 9.9.3-P2, and 9.9.4b1, and DNSco BIND 9.9.3-S1 before 9.9.3-S1-P1 and 9.9.
Jul 29, 20137.835NONO
Use-after-free vulnerability in the PresShell::DispatchSynthMouseMove function in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey
Dec 11, 20139.834NONO
Buffer overflow in the _cairo_truetype_index_to_ucs4 function in cairo, as used in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey
Mar 19, 20148.831NONO

Exploit Exposure

Signals from CVEs in this product scope (35 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
2 CVEs
5.7% of CVEs· 97th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
3 CVEs
8.6% of CVEs· 89th percentile

Social Chatter

Signals from CVEs in this product scope (35 CVEs).

Media Mentions

Signals from CVEs in this product scope (35 CVEs).

Top CNAs Publishing CVEs For Suse Linux Enterprise Software Development Kit

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
12.025.00.5%00
1226.263.6%01
11.0318.012.4%02
1126.549.1%01