VDB
CVE-2024-22004
CVE-2024-22004
PUBLISHED
CVSS 10 CRITICAL
Due to length check, an attacker with privilege access on a Linux Nonsecure operating system can trigger a vulnerability and leak the secure memory from the Trusted Application
EPSS 0.24% · 15.2th percentile
Risk Scores
CVSS 3.1
10
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
EPSS Score
0.24%
15.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Nest Wifi Pro | v11, v11 | |
| nest_wifi_router_firmware | 24r1, *, * | |
| nest_wifi_pro_firmware | *, *, * | |
| nest_wifi_point_firmware | *, *, 24r1 | |
| nest_wifi_pro_firmware | 11, 11 |
Timeline
- Apr 5, 2024 CVE Published
- Apr 6, 2024 EPSS Score
- May 2, 2024 EPSS Score
- May 27, 2024 EPSS Score
- Jun 22, 2024 EPSS Score
- Jul 17, 2024 EPSS Score
- Aug 12, 2024 EPSS Score
- Sep 6, 2024 EPSS Score
- Oct 2, 2024 EPSS Score
- Oct 4, 2024 Coalition ESS Score
- Oct 27, 2024 EPSS Score
- Nov 22, 2024 EPSS Score