CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,547 vulnerabilities with CWE-416
CVE-2024-22252 CRITICAL
VMware ESXi, Workstation, and Fusion - Use After Free
CVSS 9.3
CVE-2024-27929 HIGH
ImageSharp < 2.1.7 and 3.0.0-3.1.3 - Use-After-Free in PngDecoderCore InitializeImage
CVSS 7.1
CVE-2024-26333 MEDIUM
swftools v0.9.2 - Use-After-Free in free_lines Function
CVSS 5.5
CVE-2024-20833 MEDIUM
pub_crypto_recv_msg <SMR Mar-2024 Release 1 - Memory Corruption
CVSS 4.1
CVE-2024-0155 HIGH
Dell Digital Delivery < 5.2.0.0 - Use-After-Free
CVSS 7.0
CVE-2024-26622 HIGH
Linux Kernel 3.1-6.7.9 Use-After-Free in tomoyo_write_control
CVSS 7.8
CVE-2024-20765 HIGH
Acrobat Reader <20.005.30539, 23.008.20470 - Use After Free
CVSS 7.8
CVE-2024-27284 HIGH
Cassandra-rs <3.0.0 - Use After Free
CVSS 7.5
CVE-2024-23807 CRITICAL
Apache Xerces C++ 3.0.0-3.2.4 - Use-After-Free in External DTD Scanning
CVSS 9.8
CVE-2024-1847 HIGH
SOLIDWORKS 2023-2024 - Multiple Memory Corruption Vulnerabilities in File Reading Procedure
CVSS 7.8
CVE-2024-26455 HIGH
fluent-bit 2.2.2 - Use-After-Free in calyptia.c
CVSS 7.5
CVE-2024-25767 MEDIUM
nanomq 0.21.2 - Use-After-Free in socket.c
CVSS 6.5
CVE-2024-25763 MEDIUM
openNDs 10.2.0 - Use-After-Free in auth.c
CVSS 5.5
CVE-2024-23839 HIGH
Suricata 7.0.0-7.0.2 - Use-After-Free via HTTP Header Keyword
CVSS 7.1
CVE-2024-26598 HIGH
Linux Kernel - Use-After-Free in KVM vgic-its LPI Translation Cache
CVSS 7.8
CVE-2024-25385 MEDIUM
flvmeta 1.2.2 - Use-After-Free in flv_close Function
CVSS 6.2
CVE-2024-26592 HIGH
Linux Kernel 5.15.0-5.15.148 5.16.0-6.1.74 6.2.0-6.6.13 6.7.0-6.7.1 - Use-After-Free in ksmbd_tcp_new_connection
CVSS 7.8
CVE-2024-23135 HIGH
Autodesk AutoCAD 2021-2021.1.4 - Use-After-Free in ASMkern228A.dll via SLDPRT File
CVSS 7.8
CVE-2024-23134 HIGH
AutoCAD 2021-2021.1.4 - Use-After-Free in IGS File Parser
CVSS 7.8
CVE-2024-26582 HIGH
Linux Kernel 6.0-6.1.78, 6.2-6.6.17, 6.7-6.7.5 - Use-After-Free in TLS Partial Read Handling
CVSS 7.8
CVE-2024-1673 HIGH
Google Chrome < 122.0.6261.57 - Use-After-Free in Accessibility
CVSS 8.8
CVE-2024-1670 HIGH
Google Chrome < 122.0.6261.57 - Use-After-Free in Mojo via Crafted HTML Page
CVSS 8.8
CVE-2024-23310 CRITICAL
libbiosig 2.5.0 and Master Branch - Use-After-Free in sopen_FAMOS_read
CVSS 9.8
CVE-2024-25199 HIGH
Open Robotics ROS2/Nav2 - Use After Free
CVSS 8.1
CVE-2024-25198 CRITICAL
Open Robotics ROS2/Nav2 - Use After Free
CVSS 9.1
Details
Vulnerabilities 7,547
Exploit Likelihood High