The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.
7,547 vulnerabilities with CWE-416
CVE-2024-24794
HIGH
NIH libdicom 1.0.5 - Use-After-Free in DICOM Sequence Value Representation Parsing
CVSS 8.1
CVE-2024-24793
HIGH
NIH libdicom 1.0.5 - Use-After-Free in DICOM Element Parsing
CVSS 8.1
CVE-2024-20734
MEDIUM
Acrobat Reader <20.005.30539, 23.008.20470 - Use After Free
CVSS 5.5
CVE-2024-20731
HIGH
Acrobat Reader <20.005.30539, 23.008.20470 - Use After Free
CVSS 7.8
CVE-2024-20729
HIGH
Acrobat Reader <20.005.30539, 23.008.20470 - Use After Free
CVSS 7.8
CVE-2024-24990
HIGH
NGINX OSS 1.25.0-1.25.3 and NGINX Plus - Use-After-Free in HTTP/3 QUIC Module
CVSS 7.5
CVE-2024-21384
HIGH
Microsoft 365 Apps and Office Long Term Servicing Channel - Remote Code Execution via Use-After-Free
CVSS 7.8
CVE-2024-21375
HIGH
Windows 10 1507-22H2, Windows 11 21H2-23H2, Windows Server 2008-2019 - Remote Code Execution via WDAC OLE DB Provider
CVSS 8.8
CVE-2024-21339
MEDIUM
Windows USB Generic Parent Driver - Remote Code Execution via Use-After-Free
CVSS 6.4
CVE-2024-1454
LOW
OpenSC < 0.25.0 - Use-After-Free in AuthentIC Driver Card Enrolment
CVSS 3.4
CVE-2024-25110
CRITICAL
Microsoft azure-uamqp < 2024-02-01 - Remote Code Execution via open_get_offered_capabilities Use-After-Free
CVSS 9.8
CVE-2024-23322
HIGH
Envoy 1.26.0-1.26.6 - Use-After-Free in Timeout Handling
CVSS 7.5
CVE-2024-25443
HIGH
Hugin v2022.0.0 - Use-After-Free in ImageVariable Linking
CVSS 7.8
CVE-2024-1312
MEDIUM
Linux Kernel < 6.5 - Use-After-Free in Memory Management Subsystem
CVSS 5.1
CVE-2024-24189
CRITICAL
Jsish v3.5.0 - Use-After-Free in SplitChar
CVSS 9.8
CVE-2024-1284
CRITICAL
Google Chrome <121.0.6167.160 - Use After Free
CVSS 9.8
CVE-2024-24266
HIGH
gpac v2.2.1 - Use-After-Free via dasher_configure_pid Function
CVSS 7.5
CVE-2024-24263
HIGH
Lotos WebServer v0.1.1 - Use-After-Free in response_append_status_line
CVSS 7.5
CVE-2024-24262
HIGH
ireader media-server 1.0.0 - Use-After-Free via sip_uac_stop_timer
CVSS 7.5
CVE-2024-24260
HIGH
ireader media-server 1.0.0 - Use-After-Free in sip_subscribe_remove Function
CVSS 7.5
CVE-2024-25062
HIGH
libxml2 <2.11.7-2.12.5 - Use After Free
CVSS 7.5
CVE-2024-21860
HIGH
OpenHarmony <= 4.0.0 - Use-After-Free
CVSS 8.2
CVE-2024-21399
HIGH
Microsoft Edge Chromium < 121.0.2277.98 - Remote Code Execution via Use-After-Free
CVSS 8.3
CVE-2024-1086
HIGH
KEV
Linux Kernel 3.15-5.15.149 - Use-After-Free in nf_tables Component
CVSS 7.8
CVE-2024-1085
HIGH
Linux Kernel 5.13-5.15.148 - Use-After-Free in nf_tables Set Element Deactivation
CVSS 7.8
Details
Vulnerabilities
7,547
Exploit Likelihood
High