← Vulnerability feed

Vulnerability record · CVE-2024-22004 · published 5 April 2024

CVE-2024-22004: Google nest wifi pro firmware out-of-bounds read vulnerability

Google · Nest Wifi Pro Firmware

Due to length check, an attacker with privilege access on a Linux Nonsecure operating system can trigger a vulnerability and leak the secure memory from the Trusted Application

7.7 CVSS 3.1 High EPSS 0.24% · top 86.7% CWE-125 · Out-of-bounds read
7.7CVSS 3.1 base score
0.24%EPSS exploitation probability, 30 days
NoNot in CISA KEV
3Affected product versions listed by NVD
2References
17 Jun 2026Last modified by NVD

Description

Due to length check, an attacker with privilege access on a Linux Nonsecure operating system can trigger a vulnerability and leak the secure memory from the Trusted Application

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N

Affected products

3 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2024-22004 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2025-36939Google nest wifi router firmware stack-based buffer overflow vulnerabilityMultiple vulnerabilities exist in OpenThread's handling of MLE packets. An authenticated attacker on the same Thread network could send specially cra…EPSS 0.21%9.8CVE-2023-6339Google nest wifi pro firmware missing encryption vulnerabilityGoogle Nest WiFi Pro root code-execution & user-data compromiseEPSS 0.18%8.8CVE-2023-2626Google nest hub max firmware improper authentication vulnerabilityThere exists an authentication bypass vulnerability in OpenThread border router devices and implementations. This issue allows unauthenticated nodes …EPSS 0.11%5.3CVE-2024-22013Google nest wifi pro firmware vulnerabilityU-Boot environment is read from unauthenticated partition.EPSS 0.15%8.8CVE-2026-11645Google Chrome V8 out-of-bounds read and write enables sandbox code executionGoogle Chrome before 149.0.7827.103 contains an out-of-bounds read and write in the V8 JavaScript engine. A crafted HTML page can trigger the memory …KEVEPSS 2.2%analysed7.8CVE-2023-36424Windows Common Log File System Driver out-of-bounds read privilege escalationCVE-2023-36424 is an out-of-bounds read (CWE-125) in the Windows Common Log File System (CLFS) driver that allows elevation of privilege. It affects …KEVEPSS 12%analysed9.3CVE-2026-3055Citrix NetScaler ADC and Gateway SAML IDP memory overreadNetScaler ADC and NetScaler Gateway, when configured as a SAML identity provider, fail to validate input sufficiently, causing an out-of-bounds memor…KEVEPSS 4.0%analysed9.3CVE-2025-5777Citrix NetScaler ADC/Gateway memory overread via insufficient input validationCVE-2025-5777 is an insufficient input validation flaw in Citrix NetScaler ADC and NetScaler Gateway that causes a memory overread when the appliance…KEVEPSS 100%analysed

Source: NIST National Vulnerability Database (record CVE-2024-22004), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.