2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-43064 | MEDIUM | 4.7 | 0.1% | Jan 6, 2025 | Uncontrolled resource consumption when a driver, an application or a SMMU client tries to access the global registers th... |
| CVE-2024-43063 | MEDIUM | 5.5 | 0.1% | Jan 6, 2025 | information disclosure while invoking the mailbox read API. |
| CVE-2024-33067 | MEDIUM | 5.5 | 0.1% | Jan 6, 2025 | Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received ... |
| CVE-2024-33061 | MEDIUM | 5.5 | 0.1% | Jan 6, 2025 | Information disclosure while processing IOCTL call made for releasing a trusted VM process release or opening a channel ... |
| CVE-2024-33059 | HIGH | 7.8 | 0.1% | Jan 6, 2025 | Memory corruption while processing frame command IOCTL calls. |
| CVE-2024-33055 | HIGH | 7.8 | 0.1% | Jan 6, 2025 | Memory corruption while invoking IOCTL calls to unmap the DMA buffers. |
| CVE-2024-33041 | HIGH | 7.8 | 0.1% | Jan 6, 2025 | Memory corruption when input parameter validation for number of fences is missing for fence frame IOCTL calls, |
| CVE-2024-23366 | MEDIUM | 5.5 | 0.1% | Jan 6, 2025 | Information Disclosure while invoking the mailbox write API when message received from user is larger than mailbox size. |
| CVE-2024-21464 | HIGH | 7.8 | 0.1% | Jan 6, 2025 | Memory corruption while processing IPA statistics, when there are no active clients registered. |
| CVE-2024-12311 | MEDIUM | 6.5 | 0.6% | Jan 6, 2025 | The Email Subscribers by Icegram Express WordPress plugin before 5.7.44 does not sanitize and escape a parameter before... |
| CVE-2024-12302 | MEDIUM | 6.1 | 0.3% | Jan 6, 2025 | The Icegram Engage WordPress plugin before 3.1.32 does not sanitise and escape some of its Campaign settings, which cou... |
| CVE-2024-11849 | MEDIUM | 6.1 | 0.3% | Jan 6, 2025 | The Pods WordPress plugin before 3.2.8.1 does not sanitise and escape some of its settings, which could allow high priv... |
| CVE-2024-11356 | MEDIUM | 6.1 | 0.3% | Jan 6, 2025 | The tourmaster WordPress plugin before 5.3.4 does not sanitise and escape some parameters when outputting them in the pa... |
| CVE-2024-20154 | HIGH | 8.8 | 3.9% | Jan 6, 2025 | In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code executio... |
| CVE-2024-20153 | HIGH | 7.5 | 0.3% | Jan 6, 2025 | In wlan STA, there is a possible way to trick a client to connect to an AP with spoofed SSID. This could lead to remote ... |
| CVE-2024-20152 | MEDIUM | 4.4 | 0.1% | Jan 6, 2025 | In wlan STA driver, there is a possible reachable assertion due to improper exception handling. This could lead to local... |
| CVE-2024-20151 | MEDIUM | 6.7 | 0.2% | Jan 6, 2025 | In Modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation ... |
| CVE-2024-20150 | HIGH | 7.5 | 0.7% | Jan 6, 2025 | In Modem, there is a possible system crash due to a logic error. This could lead to remote denial of service with no add... |
| CVE-2024-20149 | HIGH | 7.5 | 0.7% | Jan 6, 2025 | In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service... |
| CVE-2024-20148 | CRITICAL | 9.8 | 0.3% | Jan 6, 2025 | In wlan STA FW, there is a possible out of bounds write due to improper input validation. This could lead to remote (pro... |
| CVE-2024-20146 | HIGH | 8.1 | 0.1% | Jan 6, 2025 | In wlan STA driver, there is a possible out of bounds write due to improper input validation. This could lead to remote ... |
| CVE-2024-20145 | MEDIUM | 6.6 | 0.1% | Jan 6, 2025 | In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of ... |
| CVE-2024-20144 | MEDIUM | 6.6 | 0.1% | Jan 6, 2025 | In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of ... |
| CVE-2024-20143 | MEDIUM | 6.6 | 0.1% | Jan 6, 2025 | In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of ... |
| CVE-2024-20140 | MEDIUM | 6.7 | 0.1% | Jan 6, 2025 | In power, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now