CVEs from 2024

7,195 normalized CVEs published or assigned in this year.

Total
7,195
critical
critical 114
high
high 1,044
medium
medium 1,991
low
low 40
% Critical
1.6%
% with KEV
2.3%
% with exploit
2.3%

Top products

  • checkmk 10
  • office 8
  • profilegrid 8
  • office_long_term_servicing_channel 6
  • glibc 5
  • virtual_traffic_manager 5
  • element_pack 5
  • propertyhive 5
0
KEVHas exploit
Reset
CVE Severity CVSS Risk Published Description Impact
CVE-2024-21199 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebian
CVE-2024-21212 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebian
CVE-2024-21238 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebian
CVE-2024-21198 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebian
CVE-2024-21241 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebianalmalinux
CVE-2024-21231 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebian
CVE-2024-21194 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebian
CVE-2024-21196 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebian
CVE-2024-21201 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebian
CVE-2024-21219 high 8.0 1y ago Important: mysql:8.0 security update redhatrockylinuxdebian
CVE-2024-12797 high 8.0 1y ago Important: openssl security update redhatsuserockylinuxdebian+1
CVE-2024-11218 high 8.0 1y ago Important: buildah security update redhatrockylinuxdebiansuse+1
CVE-2024-52531 high 8.0 1y ago Important: libsoup security update redhatrockylinuxsusedebian
CVE-2024-46981 high 8.0 1y ago Important: redis:6 security update redhatrockylinuxsusedebian
CVE-2024-51741 high 8.0 1y ago Important: redis:7 security update redhatsuserockylinuxdebian
CVE-2024-53263 high 8.0 1y ago Important: git-lfs security update redhatrockylinuxdebiangolang
CVE-2024-12085 high 8.0 1y ago Important: rsync security update archredhatrockylinuxsuse+1
CVE-2024-56326 high 8.0 1y ago Important: fence-agents security update redhatrockylinuxdebiansuse+1
CVE-2024-11831 high 8.0 1y ago A flaw was found in npm-serialize-javascript. The vulnerability occurs because the serialize-javascript module does not properly sanitize certain inputs, such as regex or other JavaScript object type… redhatsusedebiannpm
CVE-2024-57823 high 8.0 1y ago Important: raptor2 security update redhatrockylinuxsusedebian
CVE-2024-56201 high 8.0 1y ago Important: fence-agents security update redhatdebiansusepython
CVE-2024-54505 high 8.0 1y ago Important: webkit2gtk3 security update redhatrockylinuxsusedebian
CVE-2024-11614 high 8.0 1y ago Important: dpdk security update redhatrockylinuxdebiansuse
CVE-2024-54502 high 8.0 1y ago Important: webkit2gtk3 security update redhatrockylinuxsusedebian
CVE-2024-53580 high 8.0 1y ago Important: iperf3 security update redhatrockylinuxdebiansuse
CVE-2024-54479 high 8.0 1y ago Important: webkit2gtk3 security update redhatrockylinuxsusedebian
CVE-2024-54508 high 8.0 1y ago Important: webkit2gtk3 security update redhatrockylinuxsusedebian
CVE-2024-50208 high 8.0 1y ago In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Fix a bug while setting up Level-2 PBL pages Avoid memory corruption while setting up Level-2 PBL pages for the non… redhatsusedebian
CVE-2024-50252 high 8.0 1y ago In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_ipip: Fix memory leak when changing remote IPv6 address The device stores IPv6 addresses that are used for encaps… redhatsusedebian
CVE-2024-46713 high 8.0 1y ago In the Linux kernel, the following vulnerability has been resolved: perf/aux: Fix AUX buffer serialization Ole reported that event->mmap_mutex is strictly insufficient to serialize the AUX buffer, … redhatsusedebian
CVE-2024-53122 high 8.0 1y ago In the Linux kernel, the following vulnerability has been resolved: mptcp: cope racing subflow creation in mptcp_rcv_space_adjust Additional active subflows - i.e. created by the in kernel path man… redhatrockylinuxsusedebian
CVE-2024-34156 high 8.0 2y ago Important: golang security update redhatrockylinuxdebiansuse+1
CVE-2024-8508 high 8.0 2y ago Important: unbound security update redhatrockylinuxsusedebian
CVE-2024-47613 high 8.0 2y ago Important: gstreamer1-plugins-good security update redhatrockylinuxdebiansuse
CVE-2024-47540 high 8.0 2y ago Important: gstreamer1-plugins-good security update redhatrockylinuxdebiansuse
CVE-2024-47538 high 8.0 2y ago Important: gstreamer1-plugins-base security update redhatrockylinuxdebiansuse
CVE-2024-47615 high 8.0 2y ago Important: gstreamer1-plugins-base security update redhatrockylinuxdebiansuse
CVE-2024-47537 high 8.0 2y ago Important: gstreamer1-plugins-good security update redhatrockylinuxdebiansuse
CVE-2024-47606 high 8.0 2y ago Important: gstreamer1-plugins-good security update redhatrockylinuxdebiansuse
CVE-2024-47539 high 8.0 2y ago Important: gstreamer1-plugins-good security update redhatrockylinuxdebiansuse
CVE-2024-47607 high 8.0 2y ago Important: gstreamer1-plugins-base security update redhatrockylinuxdebiansuse
CVE-2024-12254 high 8.0 2y ago Important: python3.12 security update redhatrockylinuxsusedebian
CVE-2024-9287 high 8.0 2y ago Important: python39:3.9 security update rockylinuxredhatsusedebian
CVE-2024-31228 high 8.0 2y ago Important: redis:6 security update redhatrockylinuxsusedebian
CVE-2024-31449 high 8.0 2y ago Important: redis:6 security update redhatrockylinuxsusedebian
CVE-2024-10979 high 8.0 2y ago Important: postgresql security update redhatrockylinuxsusedebian
CVE-2024-10978 high 8.0 2y ago Important: postgresql security update redhatrockylinuxsusedebian
CVE-2024-10976 high 8.0 2y ago Important: postgresql security update redhatrockylinuxsusedebian
CVE-2024-11692 high 8.0 2y ago Important: thunderbird security update redhatrockylinuxdebiansuse
CVE-2024-11697 high 8.0 2y ago Important: thunderbird security update redhatrockylinuxdebiansuse
CVE-2024-11159 high 8.0 2y ago Important: thunderbird security update redhatrockylinuxsusedebian
CVE-2024-11694 high 8.0 2y ago Important: thunderbird security update redhatrockylinuxdebiansuse
CVE-2024-11699 high 8.0 2y ago Important: thunderbird security update redhatrockylinuxdebiansuse
CVE-2024-11696 high 8.0 2y ago Important: thunderbird security update redhatrockylinuxdebiansuse
CVE-2024-11695 high 8.0 2y ago Important: thunderbird security update redhatrockylinuxdebiansuse
CVE-2024-52804 high 8.0 2y ago Important: python-tornado security update redhatrockylinuxsusedebian+1
CVE-2024-52336 high 8.0 2y ago Important: tuned security update redhatsuserockylinuxdebian
CVE-2024-52337 high 8.0 2y ago Important: tuned security update redhatrockylinuxsusedebian
CVE-2024-10963 high 8.0 2y ago Important: pam security update redhatrockylinuxsusedebian
CVE-2024-53899 high 8.0 2y ago Important: python36:3.6 security update rockylinuxsusedebianpython
CVE-2024-45802 high 8.0 2y ago Important: squid:4 security update redhatrockylinuxsusedebian
CVE-2024-44244 high 8.0 2y ago Important: webkit2gtk3 security update redhatrockylinuxsusedebian
CVE-2024-44296 high 8.0 2y ago Important: webkit2gtk3 security update rockylinuxsusedebian
CVE-2024-52532 high 8.0 2y ago Important: libsoup security update redhatrockylinuxsusedebian
CVE-2024-43499 high 8.0 2y ago Important: .NET 9.0 security update redhatnuget
CVE-2024-43498 high 8.0 2y ago Important: .NET 9.0 security update redhatnuget
CVE-2024-9050 high 8.0 2y ago Important: NetworkManager-libreswan security update redhatrockylinux
CVE-2024-52530 high 8.0 2y ago Important: libsoup security update redhatrockylinuxsusedebian
CVE-2024-36960 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Fix invalid reads in fence signaled events Correctly set the length of the drm_event to the size of the structure tha… redhatrockylinuxsusedebian+1
CVE-2024-27011 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: fix memleak in map from abort path The delete set command does not rely on the transaction object for eleme… redhatrockylinuxsusedebian+1
CVE-2024-26772 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: ext4: avoid allocating blocks from corrupted group in ext4_mb_find_by_goal() Places the logic for checking if the group's block b… redhatrockylinuxsusedebian+1
CVE-2024-36896 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: USB: core: Fix access violation during port device removal Testing with KASAN and syzkaller revealed a bug in port.c:disable_stor… redhatrockylinuxsusedebian+1
CVE-2024-27010 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: net/sched: Fix mirred deadlock on device recursion When the mirred action is used on a classful egress qdisc and a packet is mirr… redhatrockylinuxsusedebian+1
CVE-2024-26939 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: drm/i915/vma: Fix UAF on destroy against retire race Object debugging tools were sporadically reporting illegal attempts to free … redhatrockylinuxsusedebian+1
CVE-2024-42124 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: scsi: qedf: Make qedf_execute_tmf() non-preemptible Stop calling smp_processor_id() from preemptible code in qedf_execute_tmf90. … redhatrockylinuxsusedebian+1
CVE-2024-27042 high 8.0 2y ago Important: kernel security update redhatrockylinuxsusealmalinux
CVE-2024-38555 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Discard command completions in internal error Fix use after free when FW completion arrives while device is in internal… redhatrockylinuxsusedebian+1
CVE-2024-35853 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_acl_tcam: Fix memory leak during rehash The rehash delayed work migrates filters from one region to another. This… redhatrockylinuxsusedebian+1
CVE-2024-31076 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: genirq/cpuhotplug, x86/vector: Prevent vector leak during CPU offline The absence of IRQD_MOVE_PCNTXT prevents immediate effectiv… redhatrockylinuxsusedebian+1
CVE-2024-36927 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: ipv4: Fix uninit-value access in __ip_make_skb() KMSAN reported uninit-value access in __ip_make_skb() [1]. __ip_make_skb() test… redhatrockylinuxsusedebian+1
CVE-2024-35838 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix potential sta-link leak When a station is allocated, links are added but not set to valid yet (e.g. during co… redhatrockylinuxsusedebian+1
CVE-2024-41039 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: firmware: cs_dsp: Fix overflow checking of wmfw header Fix the checking that firmware file buffer is large enough for the wmfw he… redhatrockylinuxsusedebian+1
CVE-2024-42084 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: ftruncate: pass a signed offset The old ftruncate() syscall, using the 32-bit off_t misses a sign extension when called in compat… redhatrockylinuxsusedebian+1
CVE-2024-41012 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: filelock: Remove locks reliably when fcntl/close race is detected When fcntl_setlk() races with close(), it removes the created l… redhatrockylinuxsusedebian+1
CVE-2024-26740 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: net/sched: act_mirred: use the backlog for mirred ingress The test Davide added in commit ca22da2fbd69 ("act_mirred: use the back… redhatrockylinuxsusedebian+1
CVE-2024-39276 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: ext4: fix mb_cache_entry's e_refcnt leak in ext4_xattr_block_cache_find() Syzbot reports a warning as follows: =================… redhatrockylinuxsusedebian+1
CVE-2024-26940 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Create debugfs ttm_resource_manager entry only if needed The driver creates /sys/kernel/debug/dri/0/mob_ttm even when… redhatrockylinuxsusedebian+1
CVE-2024-26921 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: inet: inet_defrag: prevent sk release while still in use ip_local_out() and other functions can pass skb->sk as function argument… redhatrockylinuxsusedebian+1
CVE-2024-26645 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: tracing: Ensure visibility when inserting an element into tracing_map Running the following two commands in parallel on a multi-p… redhatrockylinuxsusedebian+1
CVE-2024-26717 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: HID: i2c-hid-of: fix NULL-deref on failed power up A while back the I2C HID implementation was split in an ACPI and OF part, but … redhatrockylinuxsusedebian+1
CVE-2024-26638 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: nbd: always initialize struct msghdr completely syzbot complains that msg->msg_get_inq value can be uninitialized [1] struct msg… redhatrockylinuxsusedebian+1
CVE-2024-41038 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: firmware: cs_dsp: Prevent buffer overrun when processing V2 alg headers Check that all fields of a V2 algorithm header fit into t… redhatrockylinuxsusedebian+1
CVE-2024-35959 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix mlx5e_priv_init() cleanup flow When mlx5e_priv_init() fails, the cleanup flow calls mlx5e_selq_cleanup which calls… redhatrockylinuxsusedebian+1
CVE-2024-26614 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: tcp: make sure init the accept_queue's spinlocks once When I run syz's reproduction C program locally, it causes the following is… redhatrockylinuxsusedebian+1
CVE-2024-38627 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: stm class: Fix a double free in stm_register_device() The put_device(&stm->dev) call will trigger stm_device_release() which free… redhatrockylinuxsusedebian+1
CVE-2024-35847 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: irqchip/gic-v3-its: Prevent double free on error The error handling path in its_vpe_irq_domain_alloc() causes a double free when … redhatrockylinuxsusedebian+1
CVE-2024-35912 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: rfi: fix potential response leaks If the rx payload length check fails, or if kmemdup() fails, we still need … redhatrockylinuxsusedebian+1
CVE-2024-35835 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: fix a double-free in arfs_create_groups When `in` allocated by kvzalloc fails, arfs_create_groups will free ft->g and … redhatrockylinuxsusedebian+1
CVE-2024-26733 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: arp: Prevent overflow in arp_req_get(). syzkaller reported an overflown write in arp_req_get(). [0] When ioctl(SIOCGARP) is issu… redhatrockylinuxsusedebian+1
CVE-2024-41007 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: tcp: avoid too many retransmit packets If a TCP socket is using TCP_USER_TIMEOUT, and the other peer retracted its window to zero… redhatrockylinuxsusedebian+1