2024 CVE Vulnerabilities

39,243 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-36894HIGH7.8In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: Fix race between aio_cancel() an...
CVE-2024-36893MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: usb: typec: tcpm: Check for port partner validity b...
CVE-2024-36892MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mm/slub: avoid zeroing outside-object freepointer f...
CVE-2024-36891MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: maple_tree: fix mas_empty_area_rev() null pointer d...
CVE-2024-36890MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mm/slab: make __free(kfree) accept error pointers ...
CVE-2024-36889MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mptcp: ensure snd_nxt is properly initialized on co...
CVE-2024-36888MEDIUM6.2In the Linux kernel, the following vulnerability has been resolved: workqueue: Fix selection of wake_cpu in kick_pool()...
CVE-2024-36887MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: e1000e: change usleep_range to udelay in PHY mdic a...
CVE-2024-36886HIGH7.8In the Linux kernel, the following vulnerability has been resolved: tipc: fix UAF in error path Sam Page (sam4k) worki...
CVE-2024-36885Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-36884MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: iommu/arm-smmu: Use the correct type in nvidia_smmu...
CVE-2024-36883HIGH7.1In the Linux kernel, the following vulnerability has been resolved: net: fix out-of-bounds access in ops_init net_allo...
CVE-2024-36882MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mm: use memalloc_nofs_save() in page_cache_ra_order...
CVE-2024-36881MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mm/userfaultfd: reset ptes when close() for wr-prot...
CVE-2024-36880HIGH7.8In the Linux kernel, the following vulnerability has been resolved: Bluetooth: qca: add missing firmware sanity checks ...
CVE-2024-36033HIGH7.1In the Linux kernel, the following vulnerability has been resolved: Bluetooth: qca: fix info leak when fetching board i...
CVE-2024-36032HIGH7.1In the Linux kernel, the following vulnerability has been resolved: Bluetooth: qca: fix info leak when fetching fw buil...
CVE-2024-36031CRITICAL9.8In the Linux kernel, the following vulnerability has been resolved: keys: Fix overwrite of key expiration on instantiat...
CVE-2024-36030HIGH7.1In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: fix the double free in rvu_npc_freeme...
CVE-2024-36029MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mmc: sdhci-msm: pervent access to suspended control...
CVE-2024-36028MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: fix DEBUG_LOCKS_WARN_ON(1) when dissolv...
CVE-2024-36027HIGH7.1In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: do not flag ZEROOUT on non-dirty exte...
CVE-2024-35432MEDIUM6.1ZKTeco ZKBio CVSecurity 6.1.1 is vulnerable to Cross Site Scripting (XSS) via an Audio File. An authenticated user can i...
CVE-2024-35430HIGH8.1In ZKTeco ZKBio CVSecurity v6.1.1_R and earlier (fixed in 6.1.3_R) an authenticated user can bypass password checks whil...
CVE-2024-35358MEDIUM6.5A vulnerability has been discovered in Diño Physics School Assistant version 2.3. The vulnerability impacts an unidentif...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now