2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-33617 | HIGH | 8.2 | 0.4% | Nov 13, 2024 | Insufficient control flow management in some Intel(R) QAT Engine for OpenSSL software before version v1.6.1 may allow in... |
| CVE-2024-32483 | HIGH | 8.2 | 0.2% | Nov 13, 2024 | Improper access control for some Intel(R) EMA software before version 1.13.1.0 may allow an authenticated user to potent... |
| CVE-2024-31158 | HIGH | 8.7 | 0.2% | Nov 13, 2024 | Improper input validation in UEFI firmware in some Intel(R) Server Board S2600BP Family may allow a privileged user to p... |
| CVE-2024-31154 | HIGH | 8.7 | 0.2% | Nov 13, 2024 | Improper input validation in UEFI firmware for some Intel(R) Server S2600BPBR may allow a privileged user to potentially... |
| CVE-2024-31074 | HIGH | 8.2 | 0.5% | Nov 13, 2024 | Observable timing discrepancy in some Intel(R) QAT Engine for OpenSSL software before version v1.6.1 may allow informati... |
| CVE-2024-29079 | HIGH | 7.8 | 0.2% | Nov 13, 2024 | Insufficient control flow management in some Intel(R) VROC software before version 8.6.0.3001 may allow an authenticated... |
| CVE-2024-28885 | HIGH | 8.2 | 0.4% | Nov 13, 2024 | Observable discrepancy in some Intel(R) QAT Engine for OpenSSL software before version v1.6.1 may allow information disc... |
| CVE-2024-28028 | HIGH | 7.7 | 0.3% | Nov 13, 2024 | Improper input validation in some Intel(R) Neural Compressor software before version v3.0 may allow an unauthenticated u... |
| CVE-2024-24985 | HIGH | 8.5 | 0.2% | Nov 13, 2024 | Exposure of resource to wrong sphere in some Intel(R) processors with Intel(R) ACTM may allow a privileged user to poten... |
| CVE-2024-23918 | HIGH | 8.8 | 0.3% | Nov 13, 2024 | Improper conditions check in some Intel(R) Xeon(R) processor memory controller configurations when using Intel(R) SGX ma... |
| CVE-2024-22185 | HIGH | 8.5 | 0.1% | Nov 13, 2024 | Time-of-check Time-of-use Race Condition in some Intel(R) processors with Intel(R) ACTM may allow a privileged user to p... |
| CVE-2024-21850 | HIGH | 8.3 | 0.2% | Nov 13, 2024 | Sensitive information in resource not removed before reuse in some Intel(R) TDX Seamldr module software before version 1... |
| CVE-2024-21820 | HIGH | 8.5 | 0.2% | Nov 13, 2024 | Incorrect default permissions in some Intel(R) Xeon(R) processor memory controller configurations when using Intel(R) SG... |
| CVE-2024-21799 | HIGH | 7.1 | 0.7% | Nov 13, 2024 | Path traversal for some Intel(R) Extension for Transformers software before version 1.5 may allow an authenticated user ... |
| CVE-2024-43093 | HIGH | 7.3 | 0.7% | Nov 13, 2024 | In shouldHideDocument of ExternalStorageProvider.java, there is a possible bypass of a file path filter designed to prev... |
| CVE-2024-43089 | HIGH | 7.8 | 0.1% | Nov 13, 2024 | In updateInternal of MediaProvider.java , there is a possible access of another app's files due to a missing permission ... |
| CVE-2024-43088 | HIGH | 7.8 | 0.2% | Nov 13, 2024 | In multiple functions in AppInfoBase.java, there is a possible way to manipulate app permission settings belonging to an... |
| CVE-2024-43087 | HIGH | 7.8 | 0.1% | Nov 13, 2024 | In getInstalledAccessibilityPreferences of AccessibilitySettings.java, there is a possible way to hide an enabled access... |
| CVE-2024-43085 | HIGH | 7.8 | 0.1% | Nov 13, 2024 | In handleMessage of UsbDeviceManager.java, there is a possible method to access device contents over USB without unlocki... |
| CVE-2024-43081 | HIGH | 7.8 | 0.1% | Nov 13, 2024 | In installExistingPackageAsUser of InstallPackageHelper.java, there is a possible carrier restriction bypass due to a lo... |
| CVE-2024-43080 | HIGH | 7.8 | 0.1% | Nov 13, 2024 | In onReceive of AppRestrictionsFragment.java, there is a possible escalation of privilege due to unsafe deserialization.... |
| CVE-2024-40671 | HIGH | 7.8 | 0.1% | Nov 13, 2024 | In DevmemIntChangeSparse2 of devicemem_server.c, there is a possible way to achieve arbitrary code execution due to a mi... |
| CVE-2024-40661 | HIGH | 7.8 | 0.1% | Nov 13, 2024 | In mayAdminGrantPermission of AdminRestrictedPermissionsUtils.java, there is a possible way to access the microphone due... |
| CVE-2024-40660 | HIGH | 7.8 | 0.1% | Nov 13, 2024 | In setTransactionState of SurfaceFlinger.cpp, there is a possible way to change protected display attributes due to a lo... |
| CVE-2024-34747 | HIGH | 7.8 | 0.1% | Nov 13, 2024 | In DevmemXIntMapPages of devicemem_server.c, there is a possible use-after-free due to a logic error in the code. This c... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now