2024 CVE Vulnerabilities
39,243 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-36894 | HIGH | 7.8 | 0.3% | May 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: Fix race between aio_cancel() an... |
| CVE-2024-36893 | MEDIUM | 5.5 | 0.2% | May 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: usb: typec: tcpm: Check for port partner validity b... |
| CVE-2024-36892 | MEDIUM | 5.5 | 0.2% | May 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: mm/slub: avoid zeroing outside-object freepointer f... |
| CVE-2024-36891 | MEDIUM | 5.5 | 0.2% | May 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: maple_tree: fix mas_empty_area_rev() null pointer d... |
| CVE-2024-36890 | MEDIUM | 5.5 | 0.2% | May 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: mm/slab: make __free(kfree) accept error pointers ... |
| CVE-2024-36889 | MEDIUM | 5.5 | 0.3% | May 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: mptcp: ensure snd_nxt is properly initialized on co... |
| CVE-2024-36888 | MEDIUM | 6.2 | 0.2% | May 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: workqueue: Fix selection of wake_cpu in kick_pool()... |
| CVE-2024-36887 | MEDIUM | 5.5 | 0.2% | May 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: e1000e: change usleep_range to udelay in PHY mdic a... |
| CVE-2024-36886 | HIGH | 7.8 | 1.3% | May 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: tipc: fix UAF in error path Sam Page (sam4k) worki... |
| CVE-2024-36885 | — | — | — | May 30, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-36884 | MEDIUM | 5.5 | 0.2% | May 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: iommu/arm-smmu: Use the correct type in nvidia_smmu... |
| CVE-2024-36883 | HIGH | 7.1 | 0.3% | May 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: fix out-of-bounds access in ops_init net_allo... |
| CVE-2024-36882 | MEDIUM | 5.5 | 0.2% | May 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: mm: use memalloc_nofs_save() in page_cache_ra_order... |
| CVE-2024-36881 | MEDIUM | 5.5 | 0.2% | May 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: mm/userfaultfd: reset ptes when close() for wr-prot... |
| CVE-2024-36880 | HIGH | 7.8 | 0.2% | May 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: qca: add missing firmware sanity checks ... |
| CVE-2024-36033 | HIGH | 7.1 | 0.2% | May 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: qca: fix info leak when fetching board i... |
| CVE-2024-36032 | HIGH | 7.1 | 0.2% | May 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: qca: fix info leak when fetching fw buil... |
| CVE-2024-36031 | CRITICAL | 9.8 | 0.7% | May 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: keys: Fix overwrite of key expiration on instantiat... |
| CVE-2024-36030 | HIGH | 7.1 | 0.2% | May 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: fix the double free in rvu_npc_freeme... |
| CVE-2024-36029 | MEDIUM | 5.5 | 0.2% | May 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: mmc: sdhci-msm: pervent access to suspended control... |
| CVE-2024-36028 | MEDIUM | 4.7 | 0.2% | May 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: fix DEBUG_LOCKS_WARN_ON(1) when dissolv... |
| CVE-2024-36027 | HIGH | 7.1 | 0.2% | May 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: do not flag ZEROOUT on non-dirty exte... |
| CVE-2024-35432 | MEDIUM | 6.1 | 0.4% | May 30, 2024 | ZKTeco ZKBio CVSecurity 6.1.1 is vulnerable to Cross Site Scripting (XSS) via an Audio File. An authenticated user can i... |
| CVE-2024-35430 | HIGH | 8.1 | 0.6% | May 30, 2024 | In ZKTeco ZKBio CVSecurity v6.1.1_R and earlier (fixed in 6.1.3_R) an authenticated user can bypass password checks whil... |
| CVE-2024-35358 | MEDIUM | 6.5 | 0.4% | May 30, 2024 | A vulnerability has been discovered in Diño Physics School Assistant version 2.3. The vulnerability impacts an unidentif... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now