2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-34722HIGH8.8In smp_proc_rand of smp_act.cc, there is a possible authentication bypass during legacy BLE pairing due to incorrect imp...
CVE-2024-34720HIGH7.8In com_android_internal_os_ZygoteCommandBuffer_nativeForkRepeatedly of com_android_internal_os_ZygoteCommandBuffer.cpp, ...
CVE-2024-31339HIGH7.8In multiple functions of StatsService.cpp, there is a possible memory corruption due to a use after free. This could lea...
CVE-2024-31335HIGH7.8In DevmemIntChangeSparse2 of devicemem_server.c, there is a possible arbitrary code execution due to a logic error in th...
CVE-2024-31334HIGH7.8In DevmemIntFreeDefBackingPage of devicemem_server.c, there is a possible arbitrary code execution due to a logic error ...
CVE-2024-31332HIGH7.8In multiple locations, there is a possible way to bypass a restriction on adding new Wi-Fi connections due to a missing ...
CVE-2024-31331HIGH7.3In setMimeGroup of PackageManagerService.java, there is a possible way to hide the service from Settings due to a logic ...
CVE-2024-31327HIGH7In multiple functions of MessageQueueBase.h, there is a possible out of bounds write due to a race condition. This could...
CVE-2024-31326HIGH7.8In multiple locations, there is a possible way in which policy migration code will never be executed due to a logic erro...
CVE-2024-31325HIGH7.8In multiple locations, there is a possible way to reveal images across users data due to a logic error in the code. This...
CVE-2024-31324HIGH7.3In hide of WindowState.java, there is a possible way to bypass tapjacking/overlay protection by launching the activity i...
CVE-2024-31323HIGH7.8In onCreate of multiple files, there is a possible way to trick the user into granting health permissions due to tapjack...
CVE-2024-31322HIGH7.8In updateServicesLocked of AccessibilityManagerService.java, there is a possible way for an app to be hidden from the Se...
CVE-2024-31320HIGH7.8In setSkipPrompt of AssociationRequest.java , there is a possible way to establish a companion device association withou...
CVE-2024-31319HIGH7.8In updateNotificationChannelFromPrivilegedListener of NotificationManagerService.java, there is a possible cross-user da...
CVE-2024-31318HIGH7.8In CompanionDeviceManagerService.java, there is a possible way to pair a companion device without user acceptance due to...
CVE-2024-31317HIGH7.8In multiple functions of ZygoteProcess.java, there is a possible way to achieve code execution as any app via WRITE_SECU...
CVE-2024-31316HIGH7.8In onResult of AccountManagerService.java, there is a possible way to perform an arbitrary background activity launch du...
CVE-2024-31315HIGH7.8In multiple functions of ManagedServices.java, there is a possible way to hide an app with notification access in the De...
CVE-2024-31313HIGH7.8In availableToWriteBytes of MessageQueueBase.h, there is a possible out of bounds write due to an incorrect bounds check...
CVE-2024-31311HIGH7.8In increment_annotation_count of stats_event.c, there is a possible out of bounds write due to a missing bounds check. T...
CVE-2024-31310HIGH7.8In newServiceInfoLocked of AutofillManagerServiceImpl.java, there is a possible way to hide an enabled Autofill service ...
CVE-2024-23711HIGH7.8In DevmemXIntUnreserveRange of devicemem_server.c, there is a possible arbitrary code execution due to a logic error in ...
CVE-2024-23698HIGH7.8In RGXFWChangeOSidPriority of rgxfwutils.c, there is a possible arbitrary code execution due to a missing bounds check. ...
CVE-2024-23697HIGH7.8In RGXCreateHWRTData_aux of rgxta3d.c, there is a possible arbitrary code execution due to a use after free. This could ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now