2024 CVE Vulnerabilities

39,236 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-33073HIGH8.2Information disclosure while parsing the BSS parameter change count or MLD capabilities fields of the ML IE.
CVE-2024-33071HIGH7.5Transient DOS while parsing the MBSSID IE from the beacons when IE length is 0.
CVE-2024-33070HIGH7.5Transient DOS while parsing ESP IE from beacon/probe response frame.
CVE-2024-33069HIGH7.5Transient DOS when transmission of management frame sent by host is not successful and error status is received in the h...
CVE-2024-33066CRITICAL9.8Memory corruption while redirecting log file to any file location with any file name.
CVE-2024-33065HIGH7.8Memory corruption while taking snapshot when an offset variable is set by camera driver.
CVE-2024-33064HIGH8.2Information disclosure while parsing the multiple MBSSID IEs from the beacon.
CVE-2024-33049HIGH7.5Transient DOS while parsing noninheritance IE of Extension element when length of IE is 2 of beacon frame.
CVE-2024-23379MEDIUM6.7Memory corruption while unmapping the fastrpc map when two threads can free the same map in concurrent scenario.
CVE-2024-23378MEDIUM6.7Memory corruption while invoking IOCTL calls for MSM module from the user space during audio playback and record.
CVE-2024-23376MEDIUM6.7Memory corruption while sending the persist buffer command packet from the user-space to the kernel space through the IO...
CVE-2024-23375MEDIUM6.7Memory corruption during the network scan request.
CVE-2024-23374MEDIUM6.7Memory corruption is possible when an attempt is made from userspace or console to write some haptics effects pattern to...
CVE-2024-23370MEDIUM6.7Memory corruption when a process invokes IOCTL calls from user-space to create a HAB virtual channel and another process...
CVE-2024-23369HIGH7.8Memory corruption when invalid length is provided from HLOS for FRS/UDS request/response buffers.
CVE-2024-21455HIGH7.8Memory corruption when a compat IOCTL call is followed by another IOCTL call from userspace to a driver.
CVE-2024-47344MEDIUM5.3Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Stylemix uListing ulisting.This issue affect...
CVE-2024-47335HIGH7.6Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Bit Apps Bit Form ...
CVE-2024-20103CRITICAL9.8In wlan firmware, there is a possible out of bounds write due to improper input validation. This could lead to remote co...
CVE-2024-20102MEDIUM4.9In wlan driver, there is a possible out of bounds read due to improper input validation. This could lead to remote infor...
CVE-2024-20101CRITICAL9.8In wlan driver, there is a possible out of bounds write due to improper input validation. This could lead to remote code...
CVE-2024-20100CRITICAL9.8In wlan driver, there is a possible out of bounds write due to improper input validation. This could lead to remote code...
CVE-2024-20099MEDIUM6.7In power, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of ...
CVE-2024-20098MEDIUM6.7In power, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of ...
CVE-2024-20097MEDIUM4.4In vdec, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disc...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now