2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-40498CRITICAL9.8SQL Injection vulnerability in PuneethReddyHC Online Shopping sysstem advanced v.1.0 allows an attacker to execute arbit...
CVE-2024-40531HIGH8.8A mass assignment vulnerability exists in Pantera CRM versions 401.152 and 402.072. This flaw allows authenticated users...
CVE-2024-40530HIGH7.5A vulnerability in Pantera CRM versions 401.152 and 402.072 allows unauthorized attackers to bypass IP-based access cont...
CVE-2024-21980HIGH7.9Improper restriction of write operations in SNP firmware could allow a malicious hypervisor to potentially overwrite a g...
CVE-2024-21978HIGH7.9Improper input validation in SEV-SNP could allow a malicious hypervisor to read or overwrite guest memory potentially le...
CVE-2024-33034HIGH7.8Memory corruption can occur if VBOs hold outdated or invalid GPU SMMU mappings, especially when the binding and reclaimi...
CVE-2024-33028HIGH7.8Memory corruption as fence object may still be accessed in timeline destruct after isync fence is released.
CVE-2024-33027HIGH7.8Memory corruption can occur when arbitrary user-space app gains kernel level privilege to modify DDR memory by corruptin...
CVE-2024-33026HIGH7.5Transient DOS while parsing probe response and assoc response frame when received frame length is less than max size of ...
CVE-2024-33025HIGH7.5Transient DOS while parsing the BSS parameter change count or MLD capabilities fields of the ML IE.
CVE-2024-33024HIGH7.5Transient DOS while parsing the ML IE when a beacon with length field inside the common info of ML IE greater than the M...
CVE-2024-33023HIGH7.8Memory corruption while creating a fence to wait on timeline events, and simultaneously signal timeline events.
CVE-2024-33022HIGH7.8Memory corruption while allocating memory in HGSL driver.
CVE-2024-33021HIGH7.8Memory corruption while processing IOCTL call to set metainfo.
CVE-2024-33020HIGH7.5Transient DOS while processing TID-to-link mapping IE elements.
CVE-2024-33019HIGH7.5Transient DOS while parsing the received TID-to-link mapping action frame.
CVE-2024-33018HIGH7.5Transient DOS while parsing the received TID-to-link mapping element of the TID-to-link mapping action frame.
CVE-2024-33015HIGH7.5Transient DOS while parsing SCAN RNR IE when bytes received from AP is such that the size of the last param of IE is les...
CVE-2024-33014HIGH7.5Transient DOS while parsing ESP IE from beacon/probe response frame.
CVE-2024-33013HIGH7.5Transient DOS when driver accesses the ML IE memory and offset value is incremented beyond ML IE length.
CVE-2024-33012HIGH7.5Transient DOS while parsing the multiple MBSSID IEs from the beacon, when the tag length is non-zero value but with end ...
CVE-2024-33011HIGH7.5Transient DOS while parsing the MBSSID IE from the beacons, when the MBSSID IE length is zero.
CVE-2024-33010HIGH7.5Transient DOS while parsing fragments of MBSSID IE from beacon frame.
CVE-2024-23384HIGH8.4Memory corruption when the mapped pages in VBO are still mapped after reclaiming by shrinker.
CVE-2024-23383HIGH7.8Memory corruption when kernel driver attempts to trigger hardware fences.

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now