Skip to main content

Year archive

CVEs published in 2024

Archive summary

39,957 CVEs published in 2024 — 3,705 Critical, 13,537 High, 21,359 Medium, 1,341 Low, 15 Unrated.

CVE-2024-56722

Published Dec 29, 2024

In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: Fix cpu stuck caused by printings during reset During reset, cmd to destroy resources such as qp, c…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-56721

Published Dec 29, 2024

In the Linux kernel, the following vulnerability has been resolved: x86/CPU/AMD: Terminate the erratum_1386_microcode array The erratum_1386_microcode array requires an empty en…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2024-56720

Published Dec 29, 2024

In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: Several fixes to bpf_msg_pop_data Several fixes to bpf_msg_pop_data, 1. In sk_msg_shift_left, w…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-13012

Published Dec 29, 2024

A vulnerability, which was classified as problematic, has been found in code-projects Hostel Management System 1.0. This issue affects some unknown processing of the file /admin/r…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-13008

Published Dec 29, 2024

A vulnerability has been found in code-projects Responsive Hotel Site 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-56719

Published Dec 29, 2024

In the Linux kernel, the following vulnerability has been resolved: net: stmmac: fix TSO DMA API usage causing oops Commit 66600fac7a98 ("net: stmmac: TSO: Fix unbalanced DMA ma…

CVSS 5.5 · Medium
evidence mentions
7
Buzz score
30.8
Vendor/product tagsBeta · best-effort

CVE-2024-56718

Published Dec 29, 2024

In the Linux kernel, the following vulnerability has been resolved: net/smc: protect link down work from execute after lgr freed link down work may be scheduled before lgr freed…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-56717

Published Dec 29, 2024

In the Linux kernel, the following vulnerability has been resolved: net: mscc: ocelot: fix incorrect IFH SRC_PORT field in ocelot_ifh_set_basic() Packets injected by the CPU sho…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-56716

Published Dec 29, 2024

In the Linux kernel, the following vulnerability has been resolved: netdevsim: prevent bad user input in nsim_dev_health_break_write() If either a zero count or a large one is p…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-56715

Published Dec 29, 2024

In the Linux kernel, the following vulnerability has been resolved: ionic: Fix netdev notifier unregister on failure If register_netdev() fails, then the driver leaks the netdev…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-56714

Published Dec 29, 2024

In the Linux kernel, the following vulnerability has been resolved: ionic: no double destroy workqueue There are some FW error handling paths that can cause us to try to destroy…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-56713

Published Dec 29, 2024

In the Linux kernel, the following vulnerability has been resolved: net: netdevsim: fix nsim_pp_hold_write() nsim_pp_hold_write() has two problems: 1) It may return with rtnl h…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-56712

Published Dec 29, 2024

In the Linux kernel, the following vulnerability has been resolved: udmabuf: fix memory leak on last export_udmabuf() error path In export_udmabuf(), if dma_buf_fd() fails becau…

CVSS 5.5 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-56711

Published Dec 29, 2024

In the Linux kernel, the following vulnerability has been resolved: drm/panel: himax-hx83102: Add a check to prevent NULL pointer dereference drm_mode_duplicate() could return N…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-56710

Published Dec 29, 2024

In the Linux kernel, the following vulnerability has been resolved: ceph: fix memory leak in ceph_direct_read_write() The bvecs array which is allocated in iter_get_bvecs_alloc(…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-56709

Published Dec 29, 2024

In the Linux kernel, the following vulnerability has been resolved: io_uring: check if iowq is killed before queuing task work can be executed after the task has gone through io…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-13007

Published Dec 29, 2024

A vulnerability, which was classified as critical, was found in Codezips Event Management System 1.0. Affected is an unknown function of the file /contact.php. The manipulation of…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-56738

Published Dec 29, 2024

GNU GRUB (aka GRUB2) through 2.12 does not use a constant-time algorithm for grub_crypto_memcmp and thus allows side-channel attacks.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-56737

Published Dec 29, 2024

GNU GRUB (aka GRUB2) through 2.12 has a heap-based buffer overflow in fs/hfs.c via crafted sblock data in an HFS filesystem.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2018-25107

Published Dec 29, 2024

The Crypt::Random::Source package before 0.13 for Perl has a fallback to the built-in rand() function, which is not a secure source of random bits.

CVSS 7.5 · High

CVE-2024-12238

Published Dec 29, 2024

The The Ninja Forms – The Contact Form Builder That Grows With You plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 3.8.22…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 201-225 of 39,957 CVEsPage 9 of 1599