2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-23382HIGH7.8Memory corruption while processing graphics kernel driver request to create DMA fence.
CVE-2024-23381HIGH7.8Memory corruption when memory mapped in a VBO is not unmapped by the GPU SMMU.
CVE-2024-23357MEDIUM5.5Transient DOS while importing a PKCS#8-encoded RSA key with zero bytes modulus.
CVE-2024-23356HIGH7.8Memory corruption during session sign renewal request calls in HLOS.
CVE-2024-23355HIGH7.8Memory corruption when keymaster operation imports a shared key.
CVE-2024-23353HIGH7.5Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI.
CVE-2024-23352HIGH7.5Transient DOS when NAS receives ODAC criteria of length 1 and type 1 in registration accept OTA.
CVE-2024-23350MEDIUM6.5Permanent DOS when DL NAS transport receives multiple payloads such that one payload contains SOR container whose integr...
CVE-2024-21481HIGH8.4Memory corruption when preparing a shared memory notification for a memparcel in Resource Manager.
CVE-2024-21479HIGH7.5Transient DOS during music playback of ALAC content.
CVE-2024-21467HIGH7.5Information disclosure while handling beacon probe frame during scan entry generation in client side.
CVE-2024-21459HIGH7.5Information disclosure while handling beacon or probe response frame in STA.
CVE-2024-7409HIGH7.5A flaw was found in the QEMU NBD Server. This vulnerability allows a denial of service (DoS) attack via improper synchro...
CVE-2024-7397CRITICAL9.3Improper filering of special characters result in a command ('command injection') vulnerability in Korenix JetPort 5601v...
CVE-2024-7396HIGH7.1Missing encryption of sensitive data in Korenix JetPort 5601v3 allows Eavesdropping.This issue affects JetPort 5601v3: t...
CVE-2024-7395CRITICAL9.3An authentication bypass vulnerability in Korenix JetPort 5601v3 allows an attacker to access functionality on the devic...
CVE-2024-7383HIGH7.4A flaw was found in libnbd. The client did not always correctly verify the NBD server's certificate when using TLS to co...
CVE-2024-6865Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-6472HIGH7.8Certificate Validation user interface in LibreOffice allows potential vulnerability. Signed macros are scripts that ...
CVE-2024-4607HIGH7.8Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Ge...
CVE-2024-2937HIGH7.8Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Ge...
CVE-2024-40096LOW3.3The com.cascadialabs.who (aka Who - Caller ID, Spam Block) application 15.0 for Android places sensitive information in ...
CVE-2024-36448HIGH7.3** UNSUPPORTED WHEN ASSIGNED ** Server-Side Request Forgery (SSRF) vulnerability in Apache IoTDB Workbench. This issue ...
CVE-2024-38856CRITICAL9.8Incorrect Authorization vulnerability in Apache OFBiz. This issue affects Apache OFBiz: through 18.12.14. Users are re...
CVE-2024-42447CRITICAL9.8Insufficient Session Expiration vulnerability in Apache Airflow Providers FAB. This issue affects Apache Airflow Provid...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now