CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,547 vulnerabilities with CWE-416
CVE-2024-30161 MEDIUM
Qt 6.5.4, 6.5.5, 6.6.2 - Use-After-Free in QNetworkReply Header Data
CVSS 6.5
CVE-2024-1848 HIGH
SOLIDWORKS Desktop Release SOLIDWORKS 2024 SP0 - Heap-based Buffer Overflow in File Reading Procedure
CVSS 7.8
CVE-2024-27934 HIGH
Deno 1.36.2-1.40.2 - Use-After-Free via Unsafe Pointer Handling
CVSS 8.4
CVE-2024-2627 HIGH
Google Chrome <123.0.6312.58 - Use After Free
CVSS 8.8
CVE-2024-2612 HIGH
Firefox <124, Firefox ESR <115.9, Thunderbird <115.9 - Code Execution
CVSS 8.1
CVE-2024-20752 HIGH
Adobe Bridge < 13.0.6 - Use-After-Free via Malicious File
CVSS 7.8
CVE-2024-26630 HIGH
Linux Kernel 6.5-6.6.21, 6.7-6.7.9 - Use-After-Free in Cache Walk
CVSS 7.1
CVE-2024-2400 HIGH
Google Chrome <122.0.6261.128 - Use After Free
CVSS 8.8
CVE-2024-23300 HIGH
GarageBand < 10.4.11 - Use-After-Free via Maliciously Crafted File
CVSS 7.8
CVE-2024-26182 HIGH
Windows 10 1607, 1809, 21H2, 22H2 and Windows Server 2016, 2019 - Use-After-Free
CVSS 7.8
CVE-2024-21443 HIGH
Windows Kernel - Use-After-Free Elevation of Privilege
CVSS 7.3
CVE-2024-21439 HIGH
Windows Telephony Server - Elevation of Privilege via Race Condition
CVSS 7.0
CVE-2024-21437 HIGH
Windows Graphics Component - Use-After-Free Elevation of Privilege
CVSS 7.8
CVE-2024-21426 HIGH
Microsoft SharePoint Server - Remote Code Execution
CVSS 7.8
CVE-2024-21407 HIGH
Windows Hyper-V - Remote Code Execution via Use-After-Free
CVSS 8.1
CVE-2024-21334 CRITICAL
Open Management Infrastructure < 1.8.1-0 - Remote Code Execution
CVSS 9.8
CVE-2024-27213 HIGH
Android - Use-After-Free in BroadcastSystemMessage
CVSS 8.4
CVE-2024-27205 HIGH
Google Android Memory Corruption due to - Use After Free
CVSS 8.4
CVE-2024-25985 HIGH
Android - Use-After-Free in bigo_unlocked_ioctl
CVSS 8.4
CVE-2024-26619 HIGH
Linux Kernel 6.7-6.7.2 - Use-After-Free in Module Loading
CVSS 7.8
CVE-2024-26616 HIGH
Linux Kernel 6.4-6.6.14, 6.7.0-6.7.2 - Use-After-Free in Btrfs Scrub Chunk Handling
CVSS 7.8
CVE-2024-27308 HIGH
Tokio >=1.30.0 and Mio 0.7.2-0.8.10 - Use-After-Free via Named Pipe Token Deregistration
CVSS 7.5
CVE-2024-2176 HIGH
Google Chrome <122.0.6261.111 - Use After Free
CVSS 8.8
CVE-2024-26625 HIGH
Linux Kernel Use-After-Free in LLC Socket Release
CVSS 7.8
CVE-2024-22253 CRITICAL
VMware ESXi, Workstation, and Fusion - Use After Free
CVSS 9.3
Details
Vulnerabilities 7,547
Exploit Likelihood High