CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,548 vulnerabilities with CWE-416
CVE-2023-1193 MEDIUM
Linux Kernel < 6.3 - Use-After-Free in KSMBD setup_async_work
CVSS 6.5
CVE-2023-1192 MEDIUM
Linux Kernel < 6.4 - Use-After-Free in CIFS smb2_is_status_io_timeout
CVSS 6.5
CVE-2023-5856 HIGH
Google Chrome < 119.0.6045.105 - Use-After-Free in Side Panel
CVSS 8.8
CVE-2023-5855 HIGH
Google Chrome < 119.0.6045.105 - Use-After-Free in Reading Mode
CVSS 8.8
CVE-2023-5854 HIGH
Google Chrome < 119.0.6045.105 - Use-After-Free in Profiles
CVSS 8.8
CVE-2023-5852 HIGH
Google Chrome < 119.0.6045.105 - Use-After-Free in Printing
CVSS 8.8
CVE-2023-5178 HIGH
Linux Kernel 5.0-5.4.260 - Use-After-Free in NVMe/TCP Subsystem
CVSS 8.8
CVE-2023-21395 MEDIUM
Android < 14.0 - Use-After-Free in Bluetooth
CVSS 6.5
CVE-2023-21392 HIGH
Android < 14.0 - Use-After-Free in Bluetooth
CVSS 8.8
CVE-2023-21381 HIGH
Android < 14.0 - Use-After-Free in Media Resource Manager
CVSS 7.8
CVE-2023-21361 HIGH
Android - Use-After-Free in Bluetooth
CVSS 8.8
CVE-2023-21355 HIGH
Android - Use-After-Free in libaudioclient
CVSS 7.8
CVE-2023-44323 MEDIUM
Edge Chromium < 118.0.2088.76 - Use-After-Free via Malicious File
CVSS 5.5
CVE-2023-40140 HIGH
Android - Use-After-Free in android_view_InputDevice_create
CVSS 7.8
CVE-2023-40131 HIGH
Android - Use-After-Free in GpuService
CVSS 7.0
CVE-2023-46246 MEDIUM
vim < 9.0.2068 - Use-After-Free via Integer Overflow in History Command
CVSS 4.0
CVE-2023-5574 HIGH
x.org X Server >= 1.13.0 - Use-After-Free in Zaphod Multi-Screen Mode
CVSS 7.0
CVE-2023-5380 MEDIUM
x.org X Server - Use-After-Free in Multi-Screen Zaphod Mode
CVSS 4.7
CVE-2023-41976 HIGH
Safari < 17.1 - Use-After-Free
CVSS 8.8
CVE-2023-40404 HIGH
macOS - Use-After-Free
CVSS 7.8
CVE-2023-5728 HIGH
Firefox < 119.0 and Firefox ESR < 115.4 - Use-After-Free during Garbage Collection
CVSS 7.5
CVE-2023-5472 HIGH
Google Chrome < 118.0.5993.117 - Use-After-Free in Profiles via Crafted HTML Page
CVSS 8.8
CVE-2023-5633 HIGH
Linux Kernel 6.1.13-6.1.75 - Use-After-Free in Surface Memory Handling
CVSS 7.8
CVE-2023-34366 HIGH
Justsystems Easy Postcard Max - Use After Free
CVSS 7.8
CVE-2023-42459 HIGH
Fast DDS <2.12.0-2.6.7 - Memory Corruption
CVSS 8.6
Details
Vulnerabilities 7,548
Exploit Likelihood High