Opensuse Factory
10 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Opensuse Factory, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
Opensuse Factory CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 1 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 10 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- High4
- Medium5
- Low1
Latest CVEs
The 10 most recently published vulnerabilities affecting Opensuse Factory.
- CVE-2024-22038DoS attacks, information leaks etc. with crafted Git repositories in obs-scm-bridge7.3
- CVE-2022-45155obs-service-go_modules: arbitrary directory delete5.5
- CVE-2022-31256sendmail: mail to root privilege escalation via sm-client.pre script7.7
- CVE-2022-31251slurm: %post for slurm-testsuite operates as root in user owned directory6.5
- CVE-2021-46705grub2-once uses fixed file name in /var/tmp5.1
- CVE-2021-32000clone-master-clean-up: dangerous file system operations3.2
- CVE-2019-3681osc: stores downloaded (supposed) RPM in network-controlled filesystem paths7.5
- CVE-2020-8024Problematic permissions in hylafax+ packaging allow escalation from uucp to other users5.3
- CVE-2019-3699Local privilege escalation from user privoxy to root7.7
- CVE-2011-1551SUSE openSUSE Factory assigns ownership of the /var/log/cobbler/ directory tree to the web-service user account, which might allow local users to gain privileges by leveraging access to this accoun...6.9
Product grouping is registry-driven, with AI assist and human review. How it works