CVEs from 2024

7,195 normalized CVEs published or assigned in this year.

Total
7,195
critical
critical 114
high
high 1,020
medium
medium 2,013
low
low 42
% Critical
1.6%
% with KEV
2.3%
% with exploit
2.3%

Top products

  • surveillance_station 12
  • checkmk 10
  • profilegrid 8
  • office 8
  • office_long_term_servicing_channel 6
  • glibc 5
  • virtual_traffic_manager 5
  • element_pack 5
0
KEVHas exploit
Reset
CVE Severity CVSS Risk Published Description Impact
CVE-2024-54543 high 8.0 1y ago Important: webkit2gtk3 security update redhatrockylinuxsusedebian
CVE-2024-21218 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebianalmalinux
CVE-2024-21239 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebianalmalinux
CVE-2024-21201 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebianalmalinux
CVE-2024-21237 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebianalmalinux
CVE-2024-11053 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebiansuse+1
CVE-2024-21219 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebianalmalinux
CVE-2024-21241 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebianalmalinux
CVE-2024-7264 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebiansuse+1
CVE-2024-21199 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebianalmalinux
CVE-2024-12705 high 8.0 1y ago Important: bind9.18 security update redhatdebiansuserockylinux+1
CVE-2024-21247 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebianalmalinux
CVE-2024-21238 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebianalmalinux
CVE-2024-21230 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebianalmalinux
CVE-2024-21212 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebianalmalinux
CVE-2024-21196 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebianalmalinux
CVE-2024-21194 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebianalmalinux
CVE-2024-21197 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebianalmalinux
CVE-2024-21203 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebianalmalinux
CVE-2024-21231 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebianalmalinux
CVE-2024-21198 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebianalmalinux
CVE-2024-21213 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebianalmalinux
CVE-2024-21193 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebianalmalinux
CVE-2024-21236 high 8.0 1y ago Important: mysql security update redhatrockylinuxdebianalmalinux
CVE-2024-11187 high 8.0 1y ago Important: bind security update redhatdebianrockylinuxsuse+1
CVE-2024-12797 high 8.0 1y ago Important: openssl security update redhatsuserockylinuxdebian+2
CVE-2024-11218 high 8.0 1y ago Important: podman security update redhatrockylinuxdebiansuse+2
CVE-2024-52531 high 8.0 1y ago Important: libsoup security update redhatrockylinuxsusedebian
CVE-2024-51741 high 8.0 1y ago Important: redis:7 security update redhatsuserockylinuxdebian
CVE-2024-46981 high 8.0 1y ago Important: redis:6 security update redhatrockylinuxsusedebian
CVE-2024-53263 high 8.0 1y ago Important: git-lfs security update redhatrockylinuxdebiangolang
CVE-2024-12085 high 8.0 1y ago Important: rsync security update archredhatrockylinuxsuse+1
CVE-2024-56326 high 8.0 1y ago Important: fence-agents security update redhatrockylinuxdebiansuse+1
CVE-2024-57823 high 8.0 1y ago Important: raptor2 security update redhatrockylinuxsusedebian
CVE-2024-11831 high 8.0 1y ago A flaw was found in npm-serialize-javascript. The vulnerability occurs because the serialize-javascript module does not properly sanitize certain inputs, such as regex or other JavaScript object type… redhatsusedebiannpm
CVE-2024-56201 high 8.0 1y ago Important: fence-agents security update redhatdebiansusepython
CVE-2024-54505 high 8.0 1y ago Important: webkit2gtk3 security update redhatrockylinuxsusedebian
CVE-2024-54502 high 8.0 1y ago Important: webkit2gtk3 security update redhatrockylinuxsusedebian
CVE-2024-53580 high 8.0 1y ago Important: iperf3 security update redhatrockylinuxdebiansuse
CVE-2024-54479 high 8.0 1y ago Important: webkit2gtk3 security update redhatrockylinuxsusedebian
CVE-2024-11614 high 8.0 1y ago Important: dpdk security update redhatrockylinuxdebiansuse+1
CVE-2024-50208 high 8.0 1y ago In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Fix a bug while setting up Level-2 PBL pages Avoid memory corruption while setting up Level-2 PBL pages for the non… redhatsusedebianalmalinux
CVE-2024-46713 high 8.0 1y ago In the Linux kernel, the following vulnerability has been resolved: perf/aux: Fix AUX buffer serialization Ole reported that event->mmap_mutex is strictly insufficient to serialize the AUX buffer, … redhatsusedebianalmalinux
CVE-2024-53122 high 8.0 1y ago In the Linux kernel, the following vulnerability has been resolved: mptcp: cope racing subflow creation in mptcp_rcv_space_adjust Additional active subflows - i.e. created by the in kernel path man… redhatrockylinuxsusedebian+1
CVE-2024-50252 high 8.0 1y ago In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_ipip: Fix memory leak when changing remote IPv6 address The device stores IPv6 addresses that are used for encaps… redhatsusedebianalmalinux
CVE-2024-34156 high 8.0 2y ago Important: delve and golang security update redhatrockylinuxdebiansuse+2
CVE-2024-8508 high 8.0 2y ago Important: unbound security update redhatrockylinuxsusedebian
CVE-2024-47615 high 8.0 2y ago Important: gstreamer1-plugins-base security update redhatrockylinuxdebiansuse
CVE-2024-47613 high 8.0 2y ago Important: gstreamer1-plugins-good security update redhatrockylinuxdebiansuse
CVE-2024-47538 high 8.0 2y ago Important: gstreamer1-plugins-base security update redhatrockylinuxdebiansuse
CVE-2024-47537 high 8.0 2y ago Important: gstreamer1-plugins-good security update redhatrockylinuxdebiansuse
CVE-2024-47607 high 8.0 2y ago Important: gstreamer1-plugins-base security update redhatrockylinuxdebiansuse
CVE-2024-47539 high 8.0 2y ago Important: gstreamer1-plugins-good security update redhatrockylinuxdebiansuse
CVE-2024-47540 high 8.0 2y ago Important: gstreamer1-plugins-good security update redhatrockylinuxdebiansuse
CVE-2024-47606 high 8.0 2y ago Important: gstreamer1-plugins-good security update redhatrockylinuxdebiansuse
CVE-2024-12254 high 8.0 2y ago Important: python3.12 security update redhatrockylinuxsusedebian
CVE-2024-10978 high 8.0 2y ago Important: postgresql:16 security update redhatrockylinuxsusedebian+1
CVE-2024-10979 high 8.0 2y ago Important: postgresql:16 security update redhatrockylinuxsusedebian+1
CVE-2024-10976 high 8.0 2y ago Important: postgresql:16 security update redhatrockylinuxsusedebian+1
CVE-2024-11692 high 8.0 2y ago Important: thunderbird security update redhatrockylinuxdebiansuse
CVE-2024-52804 high 8.0 2y ago Important: python-tornado security update redhatrockylinuxsusedebian+1
CVE-2024-11696 high 8.0 2y ago Important: thunderbird security update redhatrockylinuxdebiansuse
CVE-2024-11695 high 8.0 2y ago Important: thunderbird security update redhatrockylinuxdebiansuse
CVE-2024-11699 high 8.0 2y ago Important: thunderbird security update redhatrockylinuxdebiansuse
CVE-2024-11697 high 8.0 2y ago Important: thunderbird security update redhatrockylinuxdebiansuse
CVE-2024-11159 high 8.0 2y ago Important: thunderbird security update redhatrockylinuxsusedebian
CVE-2024-11694 high 8.0 2y ago Important: thunderbird security update redhatrockylinuxdebiansuse
CVE-2024-52336 high 8.0 2y ago Important: tuned security update redhatsuserockylinuxdebian
CVE-2024-52337 high 8.0 2y ago Important: tuned security update redhatrockylinuxsusedebian
CVE-2024-10963 high 8.0 2y ago Important: pam:1.5.1 security update redhatrockylinuxsusedebian+1
CVE-2024-53899 high 8.0 2y ago Important: python36:3.6 security update rockylinuxsusedebianpython
CVE-2024-9632 high 8.0 2y ago Important: tigervnc security update redhatrockylinuxsusedebian+1
CVE-2024-45802 high 8.0 2y ago Important: squid security update redhatrockylinuxsusedebian+1
CVE-2024-43498 high 8.0 2y ago Important: .NET 9.0 security update redhatnuget
CVE-2024-43499 high 8.0 2y ago Important: .NET 9.0 security update redhatnuget
CVE-2024-9050 high 8.0 2y ago Important: NetworkManager-libreswan security update redhatrockylinux
CVE-2024-52532 high 8.0 2y ago Important: libsoup security update redhatrockylinuxsusedebian
CVE-2024-44296 high 8.0 2y ago Important: webkit2gtk3 security update rockylinuxsusedebianalmalinux
CVE-2024-44244 high 8.0 2y ago Important: webkit2gtk3 security update redhatrockylinuxsusedebian+1
CVE-2024-52530 high 8.0 2y ago Important: libsoup security update redhatrockylinuxsusedebian
CVE-2024-39499 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: vmci: prevent speculation leaks by sanitizing event in event_deliver() Coverity spotted that event_msg is controlled by user-spac… redhatrockylinuxsusedebian+1
CVE-2024-42237 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: firmware: cs_dsp: Validate payload length before processing block Move the payload length check in cs_dsp_load() and cs_dsp_coeff… redhatrockylinuxsusedebian+1
CVE-2024-44970 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: SHAMPO, Fix invalid WQ linked list unlink When all the strides in a WQE have been consumed, the WQE is unlinked from t… redhatrockylinuxsusedebian
CVE-2024-42124 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: scsi: qedf: Make qedf_execute_tmf() non-preemptible Stop calling smp_processor_id() from preemptible code in qedf_execute_tmf90. … redhatrockylinuxsusedebian+1
CVE-2024-39501 high 8.0 2y ago Important: kernel security update redhatrockylinuxsusealmalinux
CVE-2024-42228 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Using uninitialized value *size when calling amdgpu_vce_cs_reloc Initialize the size before calling amdgpu_vce_cs_rel… redhatrockylinuxsusedebian+1
CVE-2024-42240 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: x86/bhi: Avoid warning in #DB handler due to BHI mitigation When BHI mitigation is enabled, if SYSENTER is invoked with the TF fl… redhatrockylinuxsusedebian+1
CVE-2024-42238 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: firmware: cs_dsp: Return error if block header overflows file Return an error from cs_dsp_power_up() if a block header is longer … redhatrockylinuxsusedebian+1
CVE-2024-42084 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: ftruncate: pass a signed offset The old ftruncate() syscall, using the 32-bit off_t misses a sign extension when called in compat… redhatrockylinuxsusedebian+1
CVE-2024-42154 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: tcp_metrics: validate source addr length I don't see anything checking that TCP_METRICS_ATTR_SADDR_IPV4 is at least 4 bytes long,… redhatrockylinuxsusedebian+1
CVE-2024-41008 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: change vm->task_info handling This patch changes the handling and lifecycle of vm->task_info object. The major change… redhatrockylinuxsusedebian+1
CVE-2024-39471 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: add error handle to avoid out-of-bounds if the sdma_v4_0_irq_id_to_seq return -EINVAL, the process should be stop to … redhatrockylinuxsusedebian+1
CVE-2024-39276 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: ext4: fix mb_cache_entry's e_refcnt leak in ext4_xattr_block_cache_find() Syzbot reports a warning as follows: =================… redhatrockylinuxsusedebian+1
CVE-2024-26638 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: nbd: always initialize struct msghdr completely syzbot complains that msg->msg_get_inq value can be uninitialized [1] struct msg… redhatrockylinuxsusedebian+1
CVE-2024-40901 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: scsi: mpt3sas: Avoid test/set_bit() operating in non-allocated memory There is a potential out-of-bounds access when using test_b… redhatrockylinuxsusedebian+1
CVE-2024-41065 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: powerpc/pseries: Whitelist dtl slub object for copying to userspace Reading the dispatch trace log from /sys/kernel/debug/powerpc… redhatrockylinuxsusedebian+1
CVE-2024-41060 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: drm/radeon: check bo_va->bo is non-NULL before using it The call to radeon_vm_clear_freed might clear bo_va->bo, so we have to ch… redhatrockylinuxsusedebian+1
CVE-2024-26645 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: tracing: Ensure visibility when inserting an element into tracing_map Running the following two commands in parallel on a multi-p… redhatrockylinuxsusedebian+1
CVE-2024-40906 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Always stop health timer during driver removal Currently, if teardown_hca fails to execute during driver removal, mlx5 … redhatrockylinuxsusedebian
CVE-2024-26660 high 8.0 2y ago In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Implement bounds check for stream encoder creation in DCN301 'stream_enc_regs' array is an array of dcn10_stream… redhatrockylinuxsusedebian+1