2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-33617HIGH8.2Insufficient control flow management in some Intel(R) QAT Engine for OpenSSL software before version v1.6.1 may allow in...
CVE-2024-32483HIGH8.2Improper access control for some Intel(R) EMA software before version 1.13.1.0 may allow an authenticated user to potent...
CVE-2024-31158HIGH8.7Improper input validation in UEFI firmware in some Intel(R) Server Board S2600BP Family may allow a privileged user to p...
CVE-2024-31154HIGH8.7Improper input validation in UEFI firmware for some Intel(R) Server S2600BPBR may allow a privileged user to potentially...
CVE-2024-31074HIGH8.2Observable timing discrepancy in some Intel(R) QAT Engine for OpenSSL software before version v1.6.1 may allow informati...
CVE-2024-29079HIGH7.8Insufficient control flow management in some Intel(R) VROC software before version 8.6.0.3001 may allow an authenticated...
CVE-2024-28885HIGH8.2Observable discrepancy in some Intel(R) QAT Engine for OpenSSL software before version v1.6.1 may allow information disc...
CVE-2024-28028HIGH7.7Improper input validation in some Intel(R) Neural Compressor software before version v3.0 may allow an unauthenticated u...
CVE-2024-24985HIGH8.5Exposure of resource to wrong sphere in some Intel(R) processors with Intel(R) ACTM may allow a privileged user to poten...
CVE-2024-23918HIGH8.8Improper conditions check in some Intel(R) Xeon(R) processor memory controller configurations when using Intel(R) SGX ma...
CVE-2024-22185HIGH8.5Time-of-check Time-of-use Race Condition in some Intel(R) processors with Intel(R) ACTM may allow a privileged user to p...
CVE-2024-21850HIGH8.3Sensitive information in resource not removed before reuse in some Intel(R) TDX Seamldr module software before version 1...
CVE-2024-21820HIGH8.5Incorrect default permissions in some Intel(R) Xeon(R) processor memory controller configurations when using Intel(R) SG...
CVE-2024-21799HIGH7.1Path traversal for some Intel(R) Extension for Transformers software before version 1.5 may allow an authenticated user ...
CVE-2024-43093HIGH7.3In shouldHideDocument of ExternalStorageProvider.java, there is a possible bypass of a file path filter designed to prev...
CVE-2024-43089HIGH7.8In updateInternal of MediaProvider.java , there is a possible access of another app's files due to a missing permission ...
CVE-2024-43088HIGH7.8In multiple functions in AppInfoBase.java, there is a possible way to manipulate app permission settings belonging to an...
CVE-2024-43087HIGH7.8In getInstalledAccessibilityPreferences of AccessibilitySettings.java, there is a possible way to hide an enabled access...
CVE-2024-43085HIGH7.8In handleMessage of UsbDeviceManager.java, there is a possible method to access device contents over USB without unlocki...
CVE-2024-43081HIGH7.8In installExistingPackageAsUser of InstallPackageHelper.java, there is a possible carrier restriction bypass due to a lo...
CVE-2024-43080HIGH7.8In onReceive of AppRestrictionsFragment.java, there is a possible escalation of privilege due to unsafe deserialization....
CVE-2024-40671HIGH7.8In DevmemIntChangeSparse2 of devicemem_server.c, there is a possible way to achieve arbitrary code execution due to a mi...
CVE-2024-40661HIGH7.8In mayAdminGrantPermission of AdminRestrictedPermissionsUtils.java, there is a possible way to access the microphone due...
CVE-2024-40660HIGH7.8In setTransactionState of SurfaceFlinger.cpp, there is a possible way to change protected display attributes due to a lo...
CVE-2024-34747HIGH7.8In DevmemXIntMapPages of devicemem_server.c, there is a possible use-after-free due to a logic error in the code. This c...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now