2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-3296MEDIUM5.9A timing-based side-channel flaw exists in the rust-openssl package, which could be sufficient to recover a plaintext ac...
CVE-2024-31082HIGH7.3A heap-based buffer over-read vulnerability was found in the X.org server's ProcAppleDRICreatePixmap() function. This is...
CVE-2024-31081HIGH7.3A heap-based buffer over-read vulnerability was found in the X.org server's ProcXIPassiveGrabDevice() function. This iss...
CVE-2024-31080HIGH7.3A heap-based buffer over-read vulnerability was found in the X.org server's ProcXIGetSelectedEvents() function. This iss...
CVE-2024-2759HIGH7.5Improper access control vulnerability in Apaczka plugin for PrestaShop allows information gathering from saved templates...
CVE-2024-2700HIGH7A vulnerability was found in the quarkus-core component. Quarkus captures local environment variables from the Quarkus n...
CVE-2024-27575HIGH7.5INOTEC Sicherheitstechnik WebServer CPS220/64 3.3.19 allows a remote attacker to read arbitrary files via absolute path ...
CVE-2024-3262MEDIUM5.5Information exposure vulnerability in RT software affecting version 4.4.1. This vulnerability allows an attacker with lo...
CVE-2024-26809MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_pipapo: release elements in clon...
CVE-2024-26808HIGH7.8In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_chain_filter: handle NETDEV_UNREGIST...
CVE-2024-26807MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: Both cadence-quadspi ->runtime_suspend() and ->runt...
CVE-2024-26806MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: spi: cadence-qspi: remove system-wide suspend helpe...
CVE-2024-26805MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: netlink: Fix kernel-infoleak-after-free in __skb_da...
CVE-2024-26804HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net: ip_tunnel: prevent perpetual headroom growth ...
CVE-2024-26803MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: veth: clear GRO when clearing XDP even when do...
CVE-2024-26802MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: stmmac: Clear variable when destroying workqueue C...
CVE-2024-26801MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Avoid potential use-after-free in hci_er...
CVE-2024-26800HIGH7.8In the Linux kernel, the following vulnerability has been resolved: tls: fix use-after-free on failed backlog decryptio...
CVE-2024-26799HIGH7In the Linux kernel, the following vulnerability has been resolved: ASoC: qcom: Fix uninitialized pointer dmactl In th...
CVE-2024-26798MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: fbcon: always restore the old font data in fbcon_do...
CVE-2024-26797HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Prevent potential buffer overflow ...
CVE-2024-26796MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drivers: perf: ctr_get_width function for legacy is...
CVE-2024-26795MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: riscv: Sparse-Memory/vmemmap out-of-bounds fix Off...
CVE-2024-26794Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-26793HIGH7.8In the Linux kernel, the following vulnerability has been resolved: gtp: fix use-after-free and null-ptr-deref in gtp_n...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now