CVE Tools

Suse Linux Enterprise Server

2,154 CVEs tracked. 15 of them are in CISA KEV.

This hub aggregates every CVE we track for Suse Linux Enterprise Server, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.

Suse Linux Enterprise Server CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Suse Linux Enterprise Server CVEs per month
MonthCVEs
2024-1077
2024-1134
2024-1285
2025-0157
2025-0253
2025-0388
2025-0446
2025-0532
2025-0647
2025-0760
2025-0825
2025-099
2025-1012
2025-119
2025-124
2026-0110
2026-022
2026-0318
2026-042
2026-0512
2026-061
2026-070
2026-080
2026-092

Severity

How the 2,154 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical22110%
  • High92743%
  • Medium92843%
  • Low784%

Latest CVEs

The 15 most recently published vulnerabilities affecting Suse Linux Enterprise Server.

  1. CVE-2026-44950fs_read_glyphs() heap buffer overflow via cumulative glyph data overflow in libXfont29.0
  2. CVE-2026-59679fs_read_glyphs() heap OOB read/write via encoding array index mismatch in libXfont29.0
  3. CVE-2026-46243smb: client: reject userspace cifs.spnego descriptions7.1
  4. CVE-2026-41054Missing exit out of permission check in haveged could lead to root exploit7.8
  5. CVE-2026-6638PostgreSQL REFRESH PUBLICATION allows SQL injection via table name3.7
  6. CVE-2026-6637PostgreSQL refint allows stack buffer overflow and SQL injection8.8
  7. CVE-2026-6575PostgreSQL pg_restore_attribute_stats accepts values that cause query planning to read past end of stats array4.3
  8. CVE-2026-6478PostgreSQL discloses MD5-hashed passwords via covert timing channel6.5
  9. CVE-2026-6479PostgreSQL SSL/GSS init causes denial of service, via uncontrolled recursion7.5
  10. CVE-2026-6477PostgreSQL libpq lo_* functions let server superuser overwrite client stack memory8.8
  11. CVE-2026-6475PostgreSQL pg_basebackup and pg_rewind can overwrite unrelated files of origin superuser choice8.8
  12. CVE-2026-6476PostgreSQL pg_createsubscriber allows SQL injection via subscription name7.2
  13. CVE-2026-6474PostgreSQL timeofday() can disclose portions of server memory4.3
  14. CVE-2026-6473PostgreSQL server undersizes allocations, via integer wraparound8.8
  15. CVE-2026-6472PostgreSQL CREATE TYPE does not check multirange schema CREATE privilege5.4

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store