CWE-415

High likelihood

Double Free

Parent: CWE-825 - Expired Pointer Dereference

The product calls free() twice on the same memory address.

786 vulnerabilities with CWE-415
CVE-2024-12107 HIGH
uD3TN - Denial of Service via Double-Free in BPv7 Endpoint Identifier
CVSS 7.5
CVE-2024-35368 CRITICAL
FFmpeg n7.0 - Double Free in rkmpp_retrieve_frame
CVSS 9.8
CVE-2024-11704 CRITICAL
Firefox < 133 and ESR < 128.7 - Use-After-Free in sec_pkcs7_decoder_start_decrypt
CVSS 9.8
CVE-2024-50276 HIGH
Linux Kernel 5.17-6.1.117, 6.2-6.6.61, 6.7-6.11.8 - Double Free in mse102x_tx_frame_spi
CVSS 7.8
CVE-2024-10934 CRITICAL
OpenBSD < 7.4 - Double Free in NFS Client and Server Implementation
CVSS 9.8
CVE-2024-47426 HIGH
Adobe Substance 3D Painter <=10.1.0 - Double Free Code Execution
CVSS 7.8
CVE-2024-49014 HIGH
SQL Server 2016, 2017, 2019 - Remote Code Execution via Double Free
CVSS 8.8
CVE-2024-43640 HIGH
Windows 10/11, Server 2022 Elevation of Privilege via Kernel-Mode Driver Double Free
CVSS 7.8
CVE-2024-43447 HIGH
Windows Server 2022 < 10.0.20348.2849 - Remote Code Execution via SMBv3 Server Double Free
CVSS 8.1
CVE-2024-50235 HIGH
Linux Kernel 6.1.57-6.1.115 - Use-After-Free in WiFi cfg80211 CQM Configuration
CVSS 7.8
CVE-2024-50215 HIGH
Linux Kernel 6.0-6.1.115, 6.2-6.6.59, 6.7-6.11.6 - Use-After-Free in NVMe Target Authentication
CVSS 7.8
CVE-2024-50159 HIGH
Linux Kernel 6.3-6.6.59 6.7-6.11.6 - Use-After-Free in SCSI DebugFS Setup
CVSS 7.8
CVE-2024-50152 MEDIUM
Linux Kernel - Use-After-Free in SMB2 Extended Attribute Handling
CVSS 5.5
CVE-2024-47404 HIGH
OpenHarmony <4.1.0 - Privilege Escalation
CVSS 8.4
CVE-2024-3935 MEDIUM
Eclipse Mosquitto 2.0.0-2.0.18 - Double Free via Crafted PUBLISH Packet in Bridge Connection
CVSS 6.5
CVE-2024-50071 HIGH
Linux Kernel 6.11-6.11.5 - Use-After-Free in ma35_pinctrl_dt_node_to_map_func
CVSS 7.8
CVE-2024-44098 HIGH
Android - Use-After-Free in lwis_device_event_states_clear_locked
CVSS 7.4
CVE-2024-50055 HIGH
Linux Kernel - Use-After-Free in bus_register() Driver Core
CVSS 7.8
CVE-2024-49989 HIGH
Linux Kernel - Use-After-Free in AMD GPU Display Module
CVSS 7.8
CVE-2024-49983 HIGH
Linux Kernel - Use-After-Free in ext4_ext_replay_update_ex
CVSS 7.8
CVE-2024-49882 HIGH
Linux Kernel 3.7-6.11.2 - Use-After-Free in ext4_ext_try_to_merge_up
CVSS 7.8
CVE-2024-49853 HIGH
Linux Kernel 5.18-6.1.112, 6.2-6.6.53, 6.7-6.10.12, 6.11.0-6.11.1 - Use-After-Free in OPTEE SMC Transport
CVSS 7.8
CVE-2024-3187 MEDIUM
EmbedThis GoAhead <= 6.0.0 - Use-After-Free and Double Free in JST Template Parsing
CVSS 5.9
CVE-2024-45402 HIGH
picotls 2024-08-12-2024-10-10 - Double Free in TLS Handshake Message Parsing
CVSS 8.6
CVE-2024-43514 HIGH
Windows ReFS - Elevation of Privilege via Double Free
CVSS 7.8
Details
Vulnerabilities 786
Exploit Likelihood High