2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-56691 | MEDIUM | 5.5 | 0.2% | Dec 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: mfd: intel_soc_pmic_bxtwc: Use IRQ domain for USB T... |
| CVE-2024-56690 | MEDIUM | 5.5 | 0.2% | Dec 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: crypto: pcrypt - Call crypto layer directly when pa... |
| CVE-2024-56689 | MEDIUM | 5.5 | 0.2% | Dec 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: epf-mhi: Avoid NULL dereference if D... |
| CVE-2024-56688 | MEDIUM | 5.5 | 0.2% | Dec 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: sunrpc: clear XPRT_SOCK_UPD_TIMEOUT when reset tran... |
| CVE-2024-56687 | MEDIUM | 5.5 | 0.2% | Dec 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: usb: musb: Fix hardware lockup on first Rx endpoint... |
| CVE-2024-56686 | — | — | — | Dec 28, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-56685 | MEDIUM | 5.5 | 0.2% | Dec 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: ASoC: mediatek: Check num_codecs is not zero to avo... |
| CVE-2024-56684 | HIGH | 7.8 | 0.2% | Dec 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: mailbox: mtk-cmdq: fix wrong use of sizeof in cmdq_... |
| CVE-2024-56683 | MEDIUM | 5.5 | 0.2% | Dec 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/vc4: hdmi: Avoid hang with debug registers when... |
| CVE-2024-56682 | MEDIUM | 5.5 | 0.2% | Dec 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: irqchip/riscv-aplic: Prevent crash when MSI domain ... |
| CVE-2024-56681 | MEDIUM | 5.5 | 0.2% | Dec 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: crypto: bcm - add error check in the ahash_hmac_ini... |
| CVE-2024-56680 | MEDIUM | 5.5 | 0.2% | Dec 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: media: intel/ipu6: do not handle interrupts when de... |
| CVE-2024-56679 | MEDIUM | 5.5 | 0.2% | Dec 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: handle otx2_mbox_get_rsp errors in ot... |
| CVE-2024-56678 | HIGH | 7.8 | 0.2% | Dec 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: powerpc/mm/fault: Fix kfence page fault reporting ... |
| CVE-2024-56677 | MEDIUM | 5.5 | 0.3% | Dec 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: powerpc/fadump: Move fadump_cma_init to setup_arch(... |
| CVE-2024-56676 | MEDIUM | 5.5 | 0.2% | Dec 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: thermal: testing: Initialize some variables annoted... |
| CVE-2024-46973 | HIGH | 7.8 | 0.2% | Dec 28, 2024 | Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger use-after-free kern... |
| CVE-2024-46972 | HIGH | 7.8 | 0.2% | Dec 28, 2024 | Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger use-after-free kern... |
| CVE-2024-43705 | HIGH | 7.8 | 0.1% | Dec 28, 2024 | Software installed and run as a non-privileged user can trigger the GPU kernel driver to write to arbitrary read-only sy... |
| CVE-2024-54775 | MEDIUM | 4.8 | 0.3% | Dec 27, 2024 | Dcat-Admin v2.2.0-beta and v2.2.2-beta contains a Cross-Site Scripting (XSS) vulnerability via /admin/auth/menu and /adm... |
| CVE-2024-54774 | MEDIUM | 4.8 | 0.3% | Dec 27, 2024 | Dcat Admin v2.2.0-beta contains a cross-site scripting (XSS) vulnerability in /admin/articles/create. |
| CVE-2024-50714 | HIGH | 7.5 | 0.6% | Dec 27, 2024 | A Server-Side Request Forgery (SSRF) in smarts-srl.com Smart Agent v.1.1.0 allows a remote attacker to obtain sensitive ... |
| CVE-2024-50717 | CRITICAL | 9.8 | 0.8% | Dec 27, 2024 | SQL injection vulnerability in Smart Agent v.1.1.0 allows a remote attacker to execute arbitrary code via the client par... |
| CVE-2024-50716 | CRITICAL | 9.8 | 0.8% | Dec 27, 2024 | SQL injection vulnerability in Smart Agent v.1.1.0 allows a remote attacker to execute arbitrary code via the id paramet... |
| CVE-2024-50715 | HIGH | 7.5 | 1.3% | Dec 27, 2024 | An issue in smarts-srl.com Smart Agent v.1.1.0 allows a remote attacker to obtain sensitive information via command inje... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now