CWE-415

High likelihood

Double Free

Parent: CWE-825 - Expired Pointer Dereference

The product calls free() twice on the same memory address.

786 vulnerabilities with CWE-415
CVE-2024-30097 HIGH
Windows 10 1507-22H2, Windows 11 21H2-23H2, Windows Server 2016-2022 - Remote Code Execution via SAPI Double Free
CVSS 8.8
CVE-2024-36940 HIGH
Linux Kernel 4.11-6.8.9 Use-After-Free in pinctrl_enable
CVSS 7.8
CVE-2024-36030 HIGH
Linux Kernel 6.8-6.8.9 - Use-After-Free in octeontx2-af rvu_npc_freemem
CVSS 7.1
CVE-2024-27127 HIGH
QNAP QTS and QuTS hero - Authenticated Remote Code Execution via Double Free
CVSS 7.2
CVE-2024-35856 HIGH
Linux Kernel 6.6-6.6.29, 6.7-6.8.8 - Use-After-Free in Bluetooth Mediatek Coredump Handler
CVSS 7.8
CVE-2024-35847 HIGH
Linux Kernel 4.14-6.8.8 - Use-After-Free in GICv3 ITS VPE IRQ Domain Allocation
CVSS 7.8
CVE-2024-35835 MEDIUM
Linux Kernel - Use-After-Free in arfs_create_groups
CVSS 5.3
CVE-2024-35814 HIGH
Linux Kernel 6.3-6.6.23, 6.7.0-6.7.11, 6.8.0-6.8.2 - Memory Corruption via SWIOTLB Alignment Handling
CVSS 8.8
CVE-2024-27433 HIGH
Linux Kernel 6.4-6.6.22, 6.7.0-6.7.10, 6.8.0-6.8.1 - Use-After-Free in clk_mt8135_apmixed_probe
CVSS 7.8
CVE-2024-30027 HIGH
Windows 10 1507-22H2, Windows 11 21H2-23H2, Windows Server 2008-2012 - NTFS Elevation of Privilege via Double Free
CVSS 7.8
CVE-2024-27392 HIGH
Linux Kernel 6.8-6.8.1 - Use-After-Free in NVMe Namespace Identification
CVSS 7.8
CVE-2024-27389 MEDIUM
Linux Kernel - Double Free in pstorefs
CVSS 5.5
CVE-2024-26932 HIGH
Linux Kernel 6.8-6.8.3 - Use-After-Free in tcpm_port_unregister_pd
CVSS 7.8
CVE-2024-26930 HIGH
Linux Kernel 6.3-6.6.23, 6.7.0-6.7.11, 6.8.0-6.8.2 - Use-After-Free in SCSI qla2xxx Driver
CVSS 7.8
CVE-2024-26893 MEDIUM
Linux Kernel 5.8-6.1.82, 6.2-6.6.22, 6.7-6.7.10, 6.8-6.8.1 - Double Free in SMC Transport Cleanup Path
CVSS 5.5
CVE-2024-26846 MEDIUM
Linux Kernel - Use-After-Free in NVMe-FC Module Exit Path
CVSS 4.4
CVE-2024-3446 HIGH
Red Hat Enterprise Linux 8 - Double Free in QEMU Virtio Devices
CVSS 8.2
CVE-2024-26257 HIGH
Microsoft 365 Apps and Office - Remote Code Execution via Double Free
CVSS 7.8
CVE-2024-26792 HIGH
Linux Kernel 5.10.210-5.11 - Use-After-Free in Btrfs Snapshot Creation
CVSS 7.8
CVE-2024-26782 HIGH
Linux Kernel 5.6-5.10.211, 5.11-5.15.150, 5.16-6.1.80, 6.2-6.6.20, 6.7-6.7.8 - Use-After-Free in MPTCP Socket Cloning
CVSS 7.8
CVE-2024-26748 HIGH
Linux Kernel 5.4-6.7.7 - Use-After-Free in USB CDNS3 Gadget Driver
CVSS 7.8
CVE-2024-26704 HIGH
Linux Kernel 3.18-6.7.6 - Use-After-Free in ext4_move_extents
CVSS 7.8
CVE-2024-26694 HIGH
Linux Kernel 6.4-6.6.17, 6.7.0-6.7.5 - Use-After-Free in iwlwifi TLV PC Register Data Handling
CVSS 7.8
CVE-2024-26653 HIGH
Linux Kernel 6.7-6.7.11, 6.8-6.8.2 - Use-After-Free in USB LJCA Auxiliary Device Handling
CVSS 7.8
CVE-2024-26652 MEDIUM
Linux Kernel 6.4-6.6.21, 6.7-6.7.9 - Use-After-Free in pds_core Error Handling
CVSS 4.1
Details
Vulnerabilities 786
Exploit Likelihood High