CWE-401

Medium likelihood

Missing Release of Memory after Effective Lifetime

Parent: CWE-772 - Missing Release of Resource after Effective Lifetime

The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.

1,753 vulnerabilities with CWE-401
CVE-2024-35930 MEDIUM
Linux Kernel < 4.19.312, 4.20.0-6.8.6 - Use-After-Free in lpfc_rcv_padisc
CVSS 5.5
CVE-2024-35926 MEDIUM
Linux Kernel 6.8-6.8.5 - Use-After-Free in IAA Compression/Decompression Descriptor Handling
CVSS 5.5
CVE-2024-35912 MEDIUM
Linux Kernel 5.12-6.8.4 - Use-After-Free in WiFi iwlwifi mvm rfi Response Handling
CVSS 5.5
CVE-2024-35908 MEDIUM
Linux Kernel 6.0-6.1.84, 6.2-6.6.25, 6.7-6.8.4 - Use-After-Free in TLS Socket Receive
CVSS 5.5
CVE-2024-35901 MEDIUM
Linux Kernel 6.4-6.6.25, 6.7-6.8.4, 6.9 - Use-After-Free in MANA Rx Buffer Handling
CVSS 5.5
CVE-2024-35882 MEDIUM
Linux Kernel 6.6-6.6.25, 6.7-6.8.4, 6.9 - Use-After-Free in SUNRPC TCP Message Handling
CVSS 5.5
CVE-2024-35879 MEDIUM
Linux Kernel 5.10.42-5.10.214 - Use-After-Free in OF Changeset Destroy
CVSS 5.5
CVE-2024-35877 MEDIUM
Linux Kernel - Use-After-Free in VM_PAT Handling for COW Mappings
CVSS 5.5
CVE-2024-35858 MEDIUM
Linux Kernel 6.6-6.6.29, 6.7-6.8.8 - Use-After-Free in bcmasp TX Ring Cleanup
CVSS 5.5
CVE-2024-35853 MEDIUM
Linux Kernel 5.1-6.8.9 - Use-After-Free in mlxsw ACL TCAM Rehash
CVSS 6.4
CVE-2024-35852 MEDIUM
Linux Kernel 5.1-6.8.9 - Memory Leak in mlxsw ATCAM Rehash Work
CVSS 5.5
CVE-2024-35838 MEDIUM
Linux Kernel 6.0-6.1.75, 6.2-6.6.14, 6.7-6.7.2 - Use-After-Free in WiFi mac80211 Station Link Handling
CVSS 5.5
CVE-2024-35834 MEDIUM
Linux Kernel 6.6-6.6.14, 6.7-6.7.2, 6.8 - Use-After-Free in XSK Rx Queue Buffer Handling
CVSS 5.5
CVE-2024-35833 MEDIUM
Linux Kernel 5.1-6.7.4 Use-After-Free in fsl-qdma Queue Command DMA
CVSS 5.5
CVE-2024-35831 MEDIUM
Linux Kernel 6.5.7-6.5.99 - Use-After-Free in io_uring Pinned Pages Release
CVSS 5.5
CVE-2024-35829 MEDIUM
Linux Kernel 5.7-6.8.1 Use-After-Free in drm/lima Heap Allocation
CVSS 5.5
CVE-2024-35828 MEDIUM
Linux Kernel - Use-After-Free in lbs_allocate_cmd_buffer
CVSS 5.5
CVE-2024-35816 MEDIUM
Linux Kernel 6.5-6.6.23, 6.7-6.7.11 - Use-After-Free in Firewire OHCI IRQ Handling
CVSS 5.5
CVE-2024-35804 MEDIUM
Linux Kernel 5.15.58-5.15.154 - Use-After-Free in KVM Atomic Instruction Emulation
CVSS 5.5
CVE-2024-27418 MEDIUM
Linux Kernel 5.15-6.1.80, 6.2.0-6.6.20, 6.7.0-6.7.8 - Use-After-Free in MCTP Local Output
CVSS 5.5
CVE-2024-27417 MEDIUM
Linux Kernel 4.20-6.7.9 - Use-After-Free in inet6_rtm_getaddr
CVSS 5.5
CVE-2024-27393 MEDIUM
Linux Kernel 5.9-5.14, 5.16-6.1.84, 6.2-6.6.25, 6.7-6.8.4 - Use-After-Free in xen-netfront
CVSS 5.5
CVE-2024-27388 MEDIUM
Linux Kernel - Use-After-Free in SUNRPC gssx_dec_option_array Error Handling
CVSS 5.5
CVE-2024-27078 MEDIUM
Linux Kernel Use-After-Free in v4l2-tpg tpg_alloc
CVSS 5.5
CVE-2024-27077 MEDIUM
Linux Kernel - Use-After-Free in v4l2-mem2mem
CVSS 5.5
Details
Vulnerabilities 1,753
Exploit Likelihood Medium