2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-42077MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix DIO failure due to insufficient transact...
CVE-2024-42076MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: can: j1939: Initialize unused data in j1939_se...
CVE-2024-42075MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: bpf: Fix remap of arena. The bpf arena logic didn'...
CVE-2024-42074MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ASoC: amd: acp: add a null check for chip_pdev stru...
CVE-2024-42073MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_buffers: Fix memory corruptions on ...
CVE-2024-42072HIGH7.8In the Linux kernel, the following vulnerability has been resolved: bpf: Fix may_goto with negative offset. Zac's syzb...
CVE-2024-42071MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ionic: use dev_consume_skb_any outside of napi If ...
CVE-2024-42070MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: fully validate NFT_DATA_VALUE...
CVE-2024-42069MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: mana: Fix possible double free in error handli...
CVE-2024-42068MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: bpf: Take return from set_memory_ro() into account ...
CVE-2024-42067MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: bpf: Take return from set_memory_rox() into account...
CVE-2024-42066MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/xe: Fix potential integer overflow in page size...
CVE-2024-42065MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/xe: Add a NULL check in xe_ttm_stolen_mgr_init ...
CVE-2024-42064MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Skip pipe if the pipe idx not set ...
CVE-2024-42063MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: bpf: Mark bpf prog stack with kmsan_unposion_memory...
CVE-2024-41819MEDIUM5.4Note Mark is a web-based Markdown notes app. A stored cross-site scripting (XSS) vulnerability in Note Mark allows attac...
CVE-2024-41818HIGH7.5fast-xml-parser is an open source, pure javascript xml parser. a ReDOS exists on currency.js. This vulnerability is fixe...
CVE-2024-41817HIGH7.8ImageMagick is a free and open-source software suite, used for editing and manipulating digital images. The `AppImage` v...
CVE-2024-41810MEDIUM6.1Twisted is an event-based framework for internet applications, supporting Python 3.6+. The `twisted.web.util.redirectTo`...
CVE-2024-41640MEDIUM6.1Cross Site Scripting (XSS) vulnerability in AML Surety Eco up to 3.5 allows an attacker to run arbitrary code via crafte...
CVE-2024-41631HIGH7.5Buffer Overflow vulnerability in host-host NEUQ_board v.1.0 allows a remote attacker to cause a denial of service via th...
CVE-2024-41624MEDIUM6.3Incorrect access control in Himalaya Xiaoya nano smart speaker rom_version 1.6.96 allows a remote attacker to have an un...
CVE-2024-41098MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ata: libata-core: Fix null pointer dereference on e...
CVE-2024-41097MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: usb: atm: cxacru: fix endpoint checking in cxacru_b...
CVE-2024-41096HIGH7.8In the Linux kernel, the following vulnerability has been resolved: PCI/MSI: Fix UAF in msi_capability_init KFENCE rep...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now