2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-23382 | HIGH | 7.8 | 0.1% | Aug 5, 2024 | Memory corruption while processing graphics kernel driver request to create DMA fence. |
| CVE-2024-23381 | HIGH | 7.8 | 0.1% | Aug 5, 2024 | Memory corruption when memory mapped in a VBO is not unmapped by the GPU SMMU. |
| CVE-2024-23357 | MEDIUM | 5.5 | 0.1% | Aug 5, 2024 | Transient DOS while importing a PKCS#8-encoded RSA key with zero bytes modulus. |
| CVE-2024-23356 | HIGH | 7.8 | 0.1% | Aug 5, 2024 | Memory corruption during session sign renewal request calls in HLOS. |
| CVE-2024-23355 | HIGH | 7.8 | 0.1% | Aug 5, 2024 | Memory corruption when keymaster operation imports a shared key. |
| CVE-2024-23353 | HIGH | 7.5 | 0.3% | Aug 5, 2024 | Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI. |
| CVE-2024-23352 | HIGH | 7.5 | 0.3% | Aug 5, 2024 | Transient DOS when NAS receives ODAC criteria of length 1 and type 1 in registration accept OTA. |
| CVE-2024-23350 | MEDIUM | 6.5 | 0.2% | Aug 5, 2024 | Permanent DOS when DL NAS transport receives multiple payloads such that one payload contains SOR container whose integr... |
| CVE-2024-21481 | HIGH | 8.4 | 0.1% | Aug 5, 2024 | Memory corruption when preparing a shared memory notification for a memparcel in Resource Manager. |
| CVE-2024-21479 | HIGH | 7.5 | 0.3% | Aug 5, 2024 | Transient DOS during music playback of ALAC content. |
| CVE-2024-21467 | HIGH | 7.5 | 0.3% | Aug 5, 2024 | Information disclosure while handling beacon probe frame during scan entry generation in client side. |
| CVE-2024-21459 | HIGH | 7.5 | 0.3% | Aug 5, 2024 | Information disclosure while handling beacon or probe response frame in STA. |
| CVE-2024-7409 | HIGH | 7.5 | 1.0% | Aug 5, 2024 | A flaw was found in the QEMU NBD Server. This vulnerability allows a denial of service (DoS) attack via improper synchro... |
| CVE-2024-7397 | CRITICAL | 9.3 | 1.4% | Aug 5, 2024 | Improper filering of special characters result in a command ('command injection') vulnerability in Korenix JetPort 5601v... |
| CVE-2024-7396 | HIGH | 7.1 | 0.3% | Aug 5, 2024 | Missing encryption of sensitive data in Korenix JetPort 5601v3 allows Eavesdropping.This issue affects JetPort 5601v3: t... |
| CVE-2024-7395 | CRITICAL | 9.3 | 0.9% | Aug 5, 2024 | An authentication bypass vulnerability in Korenix JetPort 5601v3 allows an attacker to access functionality on the devic... |
| CVE-2024-7383 | HIGH | 7.4 | 0.4% | Aug 5, 2024 | A flaw was found in libnbd. The client did not always correctly verify the NBD server's certificate when using TLS to co... |
| CVE-2024-6865 | — | — | — | Aug 5, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-6472 | HIGH | 7.8 | 0.2% | Aug 5, 2024 | Certificate Validation user interface in LibreOffice allows potential vulnerability. Signed macros are scripts that ... |
| CVE-2024-4607 | HIGH | 7.8 | 0.2% | Aug 5, 2024 | Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Ge... |
| CVE-2024-2937 | HIGH | 7.8 | 0.2% | Aug 5, 2024 | Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Ge... |
| CVE-2024-40096 | LOW | 3.3 | 0.2% | Aug 5, 2024 | The com.cascadialabs.who (aka Who - Caller ID, Spam Block) application 15.0 for Android places sensitive information in ... |
| CVE-2024-36448 | HIGH | 7.3 | 0.7% | Aug 5, 2024 | ** UNSUPPORTED WHEN ASSIGNED ** Server-Side Request Forgery (SSRF) vulnerability in Apache IoTDB Workbench. This issue ... |
| CVE-2024-38856 | CRITICAL | 9.8 | 99.4% | Aug 5, 2024 | Incorrect Authorization vulnerability in Apache OFBiz. This issue affects Apache OFBiz: through 18.12.14. Users are re... |
| CVE-2024-42447 | CRITICAL | 9.8 | 0.9% | Aug 5, 2024 | Insufficient Session Expiration vulnerability in Apache Airflow Providers FAB. This issue affects Apache Airflow Provid... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now