Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Nozomi Matsuzawa

#44981of 53,635
5.5Total CVSS
Vulnerabilities · 1
PT-2023-14620
5.5
2023-02-15
Suse · Suse Linux Enterprise Server 15 Sp3 · CVE-2022-45154
**Name of the Vulnerable Software and Affected Versions** SUSE Linux Enterprise Server 12 supportutils versions 3.0.10-95.51.1 and prior versions SUSE Linux Enterprise Server 15 supportutils versions 3.1.21-150000.5.44.1 and prior versions SUSE Linux Enterprise Server 15 SP3 supportutils versions 3.1.21-150300.7.35.15.1 and prior versions **Description** A Cleartext Storage of Sensitive Information issue in supportutils of SUSE Linux Enterprise Server allows attackers that gain access to the support logs to obtain knowledge of the stored credentials. **Recommendations** For SUSE Linux Enterprise Server 12 supportutils versions 3.0.10-95.51.1 and prior versions, update to a version later than 3.0.10-95.51.1 to resolve the issue. For SUSE Linux Enterprise Server 15 supportutils versions 3.1.21-150000.5.44.1 and prior versions, update to a version later than 3.1.21-150000.5.44.1 to resolve the issue. For SUSE Linux Enterprise Server 15 SP3 supportutils versions 3.1.21-150300.7.35.15.1 and prior versions, update to a version later than 3.1.21-150300.7.35.15.1 to resolve the issue.