The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.
7,547 vulnerabilities with CWE-416
CVE-2024-30161
MEDIUM
Qt 6.5.4, 6.5.5, 6.6.2 - Use-After-Free in QNetworkReply Header Data
CVSS 6.5
CVE-2024-1848
HIGH
SOLIDWORKS Desktop Release SOLIDWORKS 2024 SP0 - Heap-based Buffer Overflow in File Reading Procedure
CVSS 7.8
CVE-2024-27934
HIGH
Deno 1.36.2-1.40.2 - Use-After-Free via Unsafe Pointer Handling
CVSS 8.4
CVE-2024-2627
HIGH
Google Chrome <123.0.6312.58 - Use After Free
CVSS 8.8
CVE-2024-2612
HIGH
Firefox <124, Firefox ESR <115.9, Thunderbird <115.9 - Code Execution
CVSS 8.1
CVE-2024-20752
HIGH
Adobe Bridge < 13.0.6 - Use-After-Free via Malicious File
CVSS 7.8
CVE-2024-26630
HIGH
Linux Kernel 6.5-6.6.21, 6.7-6.7.9 - Use-After-Free in Cache Walk
CVSS 7.1
CVE-2024-2400
HIGH
Google Chrome <122.0.6261.128 - Use After Free
CVSS 8.8
CVE-2024-23300
HIGH
GarageBand < 10.4.11 - Use-After-Free via Maliciously Crafted File
CVSS 7.8
CVE-2024-26182
HIGH
Windows 10 1607, 1809, 21H2, 22H2 and Windows Server 2016, 2019 - Use-After-Free
CVSS 7.8
CVE-2024-21443
HIGH
Windows Kernel - Use-After-Free Elevation of Privilege
CVSS 7.3
CVE-2024-21439
HIGH
Windows Telephony Server - Elevation of Privilege via Race Condition
CVSS 7.0
CVE-2024-21437
HIGH
Windows Graphics Component - Use-After-Free Elevation of Privilege
CVSS 7.8
CVE-2024-21426
HIGH
Microsoft SharePoint Server - Remote Code Execution
CVSS 7.8
CVE-2024-21407
HIGH
Windows Hyper-V - Remote Code Execution via Use-After-Free
CVSS 8.1
CVE-2024-21334
CRITICAL
Open Management Infrastructure < 1.8.1-0 - Remote Code Execution
CVSS 9.8
CVE-2024-27213
HIGH
Android - Use-After-Free in BroadcastSystemMessage
CVSS 8.4
CVE-2024-27205
HIGH
Google Android Memory Corruption due to - Use After Free
CVSS 8.4
CVE-2024-25985
HIGH
Android - Use-After-Free in bigo_unlocked_ioctl
CVSS 8.4
CVE-2024-26619
HIGH
Linux Kernel 6.7-6.7.2 - Use-After-Free in Module Loading
CVSS 7.8
CVE-2024-26616
HIGH
Linux Kernel 6.4-6.6.14, 6.7.0-6.7.2 - Use-After-Free in Btrfs Scrub Chunk Handling
CVSS 7.8
CVE-2024-27308
HIGH
Tokio >=1.30.0 and Mio 0.7.2-0.8.10 - Use-After-Free via Named Pipe Token Deregistration
CVSS 7.5
CVE-2024-2176
HIGH
Google Chrome <122.0.6261.111 - Use After Free
CVSS 8.8
CVE-2024-26625
HIGH
Linux Kernel Use-After-Free in LLC Socket Release
CVSS 7.8
CVE-2024-22253
CRITICAL
VMware ESXi, Workstation, and Fusion - Use After Free
CVSS 9.3
Details
Vulnerabilities
7,547
Exploit Likelihood
High