CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,547 vulnerabilities with CWE-416
CVE-2024-26237 HIGH
Windows Defender Credential Guard - Use-After-Free
CVSS 7.8
CVE-2024-26233 HIGH
Windows Server 2016/2019/2022 DNS Server RCE via Use-After-Free
CVSS 7.2
CVE-2024-26231 HIGH
Windows Server DNS RCE via Use-After-Free (2016, 2019, 2022, 23H2)
CVSS 7.2
CVE-2024-26230 HIGH
Windows Telephony Server - Use-After-Free Elevation of Privilege
CVSS 7.8
CVE-2024-26227 HIGH
Windows Server 2016/2019/2022 DNS Server Use-After-Free RCE
CVSS 7.2
CVE-2024-26224 HIGH
Windows Server DNS RCE via Use-After-Free (2016, 2019, 2022, 23H2)
CVSS 7.2
CVE-2024-26223 HIGH
Windows Server DNS Use-After-Free RCE (2016/2019/2022/23H2)
CVSS 7.2
CVE-2024-26222 HIGH
Windows Server RCE (2016, 2019, 2022, 23H2)
CVSS 7.2
CVE-2024-26221 HIGH
Windows Server RCE (2016 < 10.0.14393.6897, 2019 < 10.0.17763.5696, 2022 < 10.0.20348.2402, 23H2 < 10.0.25398.830)
CVSS 7.2
CVE-2024-21409 HIGH
.NET Framework and .NET 6.0.0-6.0.28 - Remote Code Execution via Use-After-Free
CVSS 7.3
CVE-2024-23658 MEDIUM
Android - Use-After-Free in Camera Driver
CVSS 4.4
CVE-2024-30416 HIGH
Huawei EMUI and HarmonyOS - Use-After-Free in Underlying Driver Module
CVSS 7.5
CVE-2024-3158 HIGH
Google Chrome <123.0.6312.105 - Use After Free
CVSS 8.8
CVE-2024-2312 MEDIUM
GRUB2 < 2.12-1ubuntu5 - Use-After-Free in peimage Module
CVSS 6.7
CVE-2024-31083 HIGH
Red Hat Enterprise Linux - Use-After-Free in ProcRenderAddGlyphs
CVSS 7.8
CVE-2024-3299 HIGH
Dassault Systmes eDrawings SOLIDWORKS 2023-2024 - Use-After-Free in File Reading Procedure
CVSS 7.8
CVE-2024-26804 MEDIUM
Linux Kernel 2.6.34-6.7.8 Use-After-Free in IP Tunnel Headroom Handling
CVSS 5.3
CVE-2024-26801 MEDIUM
Linux Kernel 4.0-6.7.8 Bluetooth HCI Use-After-Free
CVSS 5.5
CVE-2024-26800 HIGH
Linux Kernel 5.15.160-5.16 - Use-After-Free in TLS Backlog Decryption
CVSS 7.8
CVE-2024-26793 HIGH
Linux Kernel - Null Pointer Dereference in gtp_newlink
CVSS 7.8
CVE-2024-30366 HIGH
Foxit PDF Editor and PDF Reader - Use-After-Free in AcroForm Handling
CVSS 7.8
CVE-2024-30334 HIGH
Foxit PDF Editor and Reader - Use-After-Free in Doc Object Handling
CVSS 7.8
CVE-2024-30333 HIGH
Foxit PDF Editor and Reader - Use-After-Free in Doc Object Handling
CVSS 7.8
CVE-2024-30332 HIGH
Foxit PDF Editor and Reader - Use-After-Free in Doc Object Handling
CVSS 7.8
CVE-2024-30331 HIGH
Foxit PDF Editor and PDF Reader - Use-After-Free in AcroForm Doc Object Handling
CVSS 7.8
Details
Vulnerabilities 7,547
Exploit Likelihood High