CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,545 vulnerabilities with CWE-416
CVE-2024-38629 HIGH
Linux Kernel 6.4-6.6.32, 6.7-6.9.3, 6.10 - Use-After-Free in DMA Engine IDXD File IDA Handling
CVSS 7.8
CVE-2024-6103 HIGH
Google Chrome < 126.0.6478.114 - Use-After-Free in Dawn via Crafted HTML Page
CVSS 8.8
CVE-2024-38612 CRITICAL
Linux Kernel - Use-After-Free in IPv6 Segment Routing Error Path
CVSS 9.8
CVE-2024-38610 HIGH
Linux kernel 5.15.33-5.15.161 - Use-After-Free in ACRN VM RAM Mapping
CVSS 7.8
CVE-2024-38588 HIGH
Linux Kernel - Use-After-Free in ftrace_location()
CVSS 7.8
CVE-2024-38583 HIGH
Linux Kernel - Use-After-Free in nilfs2 Log Writer Timer
CVSS 7.8
CVE-2024-38581 HIGH
Linux Kernel 4.20-6.1.92, 6.2.0-6.6.32, 6.7.0-6.8.11 - Use-After-Free in AMDGPU MES Fence Fallback Timer
CVSS 7.8
CVE-2024-38570 HIGH
Linux Kernel 3.8-6.6.32, 6.7.0-6.8.11, 6.9.0-6.9.2 - Use-After-Free in GFS2 Glock Handling
CVSS 7.8
CVE-2024-38561 HIGH
Linux Kernel 5.18-6.1.92, 6.2-6.6.32, 6.7-6.8.11, 6.9-6.9.2 - Use-After-Free in kthread Reference Handling
CVSS 7.0
CVE-2024-38555 HIGH
Linux Kernel - Use-After-Free in mlx5 Command Completion Handler
CVSS 7.8
CVE-2024-38545 HIGH
Linux Kernel 4.9-6.9.2 - Use-After-Free in RDMA/hns CQ Async Event Handling
CVSS 7.8
CVE-2024-38544 MEDIUM
Linux Kernel 4.12-6.9.3 - Use-After-Free in rxe_comp_queue_pkt
CVSS 6.3
CVE-2024-36979 HIGH
Linux Kernel 5.18-6.1.92, 6.2-6.6.32, 6.7-6.8.11, 6.9-6.9.2 - Use-After-Free in Bridge MST VLAN State Handling
CVSS 7.8
CVE-2024-6064 MEDIUM
GPAC 2.5-DEV-rev228-g11067ea92-master - Use-After-Free in MP4Box xmt_node_end Function
CVSS 5.3
CVE-2024-32929 HIGH
Android - Use-After-Free in gpu_slc_get_region
CVSS 8.1
CVE-2024-32900 HIGH
Android - Use-After-Free in lwis_fence_signal
CVSS 7.8
CVE-2024-29787 HIGH
Android - Use-After-Free in lwis_process_transactions_in_queue
CVSS 7.8
CVE-2024-5847 HIGH
Google Chrome < 126.0.6478.54 - Use-After-Free in PDFium via Crafted PDF File
CVSS 8.8
CVE-2024-5846 HIGH
Google Chrome < 126.0.6478.54 - Use-After-Free in PDFium via Crafted PDF File
CVSS 8.8
CVE-2024-5845 HIGH
Google Chrome < 126.0.6478.54 - Use-After-Free in Audio via Crafted PDF File
CVSS 8.8
CVE-2024-5842 HIGH
Google Chrome < 126.0.6478.54 - Use-After-Free in Browser UI
CVSS 8.8
CVE-2024-5841 HIGH
Google Chrome < 126.0.6478.54 - Use-After-Free in V8
CVSS 8.8
CVE-2024-5832 HIGH
Google Chrome < 126.0.6478.54 - Use-After-Free in Dawn via Crafted HTML Page
CVSS 8.8
CVE-2024-5831 HIGH
Google Chrome < 126.0.6478.54 - Use-After-Free in Dawn via Crafted HTML Page
CVSS 8.8
CVE-2024-30102 HIGH
Microsoft 365 Apps - Remote Code Execution via Use-After-Free
CVSS 7.3
Details
Vulnerabilities 7,545
Exploit Likelihood High