CWE-401

Medium likelihood

Missing Release of Memory after Effective Lifetime

Parent: CWE-772 - Missing Release of Resource after Effective Lifetime

The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.

1,757 vulnerabilities with CWE-401
CVE-2022-49890 MEDIUM
Linux Kernel Use-After-Free in cap_inode_getsecurity
CVSS 5.5
CVE-2022-49881 MEDIUM
Linux Kernel <6.0.9 Use-After-Free in WiFi Regulatory Database Query
CVSS 5.5
CVE-2022-49878 MEDIUM
Linux Kernel 5.14-5.15.79, 5.16-6.0.9 - Use-After-Free in BPF Verifier Array Reallocation
CVSS 5.5
CVE-2022-49874 MEDIUM
Linux Kernel - Use-After-Free in HID Hyper-V Mouse Driver
CVSS 5.5
CVE-2022-49871 MEDIUM
Linux Kernel TUN/TAP Device Driver Use-After-Free
CVSS 5.5
CVE-2022-49867 MEDIUM
Linux Kernel 5.14-5.15.79, 5.16-6.0.9 - Use-After-Free in IOSM WWAN Driver
CVSS 5.5
CVE-2022-49866 MEDIUM
Linux Kernel 5.15-5.15.78 and 5.16-6.0.8 - Use-After-Free in MHI MBIM Network Device Unregistration
CVSS 5.5
CVE-2022-49860 MEDIUM
Linux Kernel 5.11-5.15.79, 5.16-6.0.9 - Use-After-Free in DMA Engine Device Registration
CVSS 5.5
CVE-2022-49857 MEDIUM
Linux Kernel 5.10-5.10.155, 5.11-5.15.79, 5.16-6.0.9 - Use-After-Free in prestera_rxtx_switch_init
CVSS 5.5
CVE-2022-49855 MEDIUM
Linux Kernel 5.14-5.15.79 and 5.16-6.0.9 - Use-After-Free in ipc_pcie_read_bios_cfg
CVSS 5.5
CVE-2022-49853 MEDIUM
Linux Kernel - Use-After-Free in macvlan_common_newlink
CVSS 5.5
CVE-2022-49837 MEDIUM
Linux Kernel 4.20-5.15.80, 5.16.0-6.0.10 - Use-After-Free in BPF Verifier
CVSS 5.5
CVE-2022-49836 MEDIUM
Linux Kernel Use-After-Free in siox_device_add (4.16-4.19.267, 4.20-5.4.225, 5.5-5.10.156, 5.11-5.15.80, 5.16-6.0.10)
CVSS 5.5
CVE-2022-49835 MEDIUM
Linux Kernel < 6.0.9 - Use-After-Free in ALSA HD Audio Widget Node Handling
CVSS 5.5
CVE-2022-49830 MEDIUM
Linux Kernel 5.8-5.9.99, 5.10-5.10.155, 5.11-5.15.79, 5.16-6.0.9 - Use-After-Free in DRM Device Initialization
CVSS 5.5
CVE-2022-49828 MEDIUM
Linux Kernel < 5.15.80, 5.16.0-6.0.10, >=4.13.0 <5.15.80 - Use-After-Free in HugeTLBFS Error Page Handling
CVSS 5.5
CVE-2022-49822 MEDIUM
Linux Kernel 5.0-5.15.80, 5.16.0-6.0.9 - Use-After-Free in CIFS Connection Handling
CVSS 5.5
CVE-2022-49821 MEDIUM
Linux Kernel Use-After-Free in mISDN_dsp_element_register
CVSS 5.5
CVE-2022-49819 MEDIUM
Linux Kernel 5.19-6.0.9 - Use-After-Free in octeon_ep Device Setup
CVSS 5.5
CVE-2022-49817 MEDIUM
Linux Kernel 5.14-5.15.79 - Use-After-Free in MHI Network Device Unregistration
CVSS 5.5
CVE-2022-49812 MEDIUM
Linux Kernel 5.0.1-5.10.156, 5.11.0-5.15.79, 5.16.0-6.0.9 - Use-After-Free in Bridge VLAN Protocol Change
CVSS 5.5
CVE-2022-49809 MEDIUM
Linux Kernel - Use-After-Free in x25_lapb_receive_frame
CVSS 5.5
CVE-2022-49807 MEDIUM
Linux Kernel 6.0-6.0.9 - Use-After-Free in NVMe Target Authentication Key Handling
CVSS 5.5
CVE-2022-49803 MEDIUM
Linux Kernel 5.7-6.0.9 - Use-After-Free in netdevsim fa_cookie Handling
CVSS 5.5
CVE-2022-49801 MEDIUM
Linux Kernel 5.10.190-5.11 - Use-After-Free in tracing_read_pipe
CVSS 5.5
Details
Vulnerabilities 1,757
Exploit Likelihood Medium