2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-34722 | HIGH | 8.8 | 0.3% | Jul 9, 2024 | In smp_proc_rand of smp_act.cc, there is a possible authentication bypass during legacy BLE pairing due to incorrect imp... |
| CVE-2024-34720 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In com_android_internal_os_ZygoteCommandBuffer_nativeForkRepeatedly of com_android_internal_os_ZygoteCommandBuffer.cpp, ... |
| CVE-2024-31339 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In multiple functions of StatsService.cpp, there is a possible memory corruption due to a use after free. This could lea... |
| CVE-2024-31335 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In DevmemIntChangeSparse2 of devicemem_server.c, there is a possible arbitrary code execution due to a logic error in th... |
| CVE-2024-31334 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In DevmemIntFreeDefBackingPage of devicemem_server.c, there is a possible arbitrary code execution due to a logic error ... |
| CVE-2024-31332 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In multiple locations, there is a possible way to bypass a restriction on adding new Wi-Fi connections due to a missing ... |
| CVE-2024-31331 | HIGH | 7.3 | 0.1% | Jul 9, 2024 | In setMimeGroup of PackageManagerService.java, there is a possible way to hide the service from Settings due to a logic ... |
| CVE-2024-31327 | HIGH | 7 | 0.1% | Jul 9, 2024 | In multiple functions of MessageQueueBase.h, there is a possible out of bounds write due to a race condition. This could... |
| CVE-2024-31326 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In multiple locations, there is a possible way in which policy migration code will never be executed due to a logic erro... |
| CVE-2024-31325 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In multiple locations, there is a possible way to reveal images across users data due to a logic error in the code. This... |
| CVE-2024-31324 | HIGH | 7.3 | 0.1% | Jul 9, 2024 | In hide of WindowState.java, there is a possible way to bypass tapjacking/overlay protection by launching the activity i... |
| CVE-2024-31323 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In onCreate of multiple files, there is a possible way to trick the user into granting health permissions due to tapjack... |
| CVE-2024-31322 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In updateServicesLocked of AccessibilityManagerService.java, there is a possible way for an app to be hidden from the Se... |
| CVE-2024-31320 | HIGH | 7.8 | 0.3% | Jul 9, 2024 | In setSkipPrompt of AssociationRequest.java , there is a possible way to establish a companion device association withou... |
| CVE-2024-31319 | HIGH | 7.8 | 0.2% | Jul 9, 2024 | In updateNotificationChannelFromPrivilegedListener of NotificationManagerService.java, there is a possible cross-user da... |
| CVE-2024-31318 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In CompanionDeviceManagerService.java, there is a possible way to pair a companion device without user acceptance due to... |
| CVE-2024-31317 | HIGH | 7.8 | 0.8% | Jul 9, 2024 | In multiple functions of ZygoteProcess.java, there is a possible way to achieve code execution as any app via WRITE_SECU... |
| CVE-2024-31316 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In onResult of AccountManagerService.java, there is a possible way to perform an arbitrary background activity launch du... |
| CVE-2024-31315 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In multiple functions of ManagedServices.java, there is a possible way to hide an app with notification access in the De... |
| CVE-2024-31313 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In availableToWriteBytes of MessageQueueBase.h, there is a possible out of bounds write due to an incorrect bounds check... |
| CVE-2024-31311 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In increment_annotation_count of stats_event.c, there is a possible out of bounds write due to a missing bounds check. T... |
| CVE-2024-31310 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In newServiceInfoLocked of AutofillManagerServiceImpl.java, there is a possible way to hide an enabled Autofill service ... |
| CVE-2024-23711 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In DevmemXIntUnreserveRange of devicemem_server.c, there is a possible arbitrary code execution due to a logic error in ... |
| CVE-2024-23698 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In RGXFWChangeOSidPriority of rgxfwutils.c, there is a possible arbitrary code execution due to a missing bounds check. ... |
| CVE-2024-23697 | HIGH | 7.8 | 0.1% | Jul 9, 2024 | In RGXCreateHWRTData_aux of rgxta3d.c, there is a possible arbitrary code execution due to a use after free. This could ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now