CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,548 vulnerabilities with CWE-416
CVE-2023-45898 HIGH
Linux kernel <6.5.4 - Use After Free
CVSS 7.8
CVE-2023-5476 HIGH
Google Chrome < 118.0.5993.70 - Use-After-Free in Blink History
CVSS 8.8
CVE-2023-5473 MEDIUM
Google Chrome < 118.0.5993.70 - Use-After-Free in Cast
CVSS 6.3
CVE-2023-5218 HIGH
Google Chrome < 118.0.5993.70 - Use-After-Free in Site Isolation
CVSS 8.8
CVE-2023-5535 HIGH
vim < 9.0.2010 - Use-After-Free
CVSS 7.8
CVE-2023-35660 MEDIUM
Android - Use-After-Free in lwis_transaction_client_cleanup
CVSS 6.7
CVE-2023-44095 HIGH
Huawei EMUI and HarmonyOS - Use-After-Free in Surfaceflinger Module
CVSS 7.5
CVE-2023-38216 MEDIUM
Adobe Bridge <13.0.3 - Use After Free
CVSS 5.5
CVE-2023-41774 HIGH
Windows 10 1507-22H2 and Windows 11 21H2-22H2 - Remote Code Execution via Layer 2 Tunneling Protocol
CVSS 8.1
CVE-2023-41773 HIGH
Windows 10 1507-22H2 and Windows 11 21H2-22H2 - Remote Code Execution via Layer 2 Tunneling Protocol
CVSS 8.1
CVE-2023-41771 HIGH
Windows 10 1507-22H2 and Windows 11 21H2-22H2 - Remote Code Execution via Layer 2 Tunneling Protocol
CVSS 8.1
CVE-2023-41770 HIGH
Windows 10 1507-22H2 and Windows 11 21H2-22H2 - Remote Code Execution via Layer 2 Tunneling Protocol
CVSS 8.1
CVE-2023-41769 HIGH
Windows 10 1507-22H2 and Windows 11 21H2-22H2 - Remote Code Execution via Layer 2 Tunneling Protocol
CVSS 8.1
CVE-2023-41768 HIGH
Windows Server 2008 and Windows 10-11 - Remote Code Execution via Layer 2 Tunneling Protocol
CVSS 8.1
CVE-2023-41767 HIGH
Windows 10 1507-22H2 and Windows 11 21H2-22H2 - Remote Code Execution via Layer 2 Tunneling Protocol
CVSS 8.1
CVE-2023-41765 HIGH
Windows 10 1507-22H2 and Windows 11 21H2-22H2 - Remote Code Execution via Layer 2 Tunneling Protocol
CVSS 8.1
CVE-2023-38166 HIGH
Windows 10 1507-22H2 and Windows 11 21H2-22H2 - Remote Code Execution via Layer 2 Tunneling Protocol
CVSS 8.1
CVE-2023-36902 HIGH
Microsoft Windows Runtime - Remote Code Execution
CVSS 7.0
CVE-2023-36776 HIGH
Windows 10 1507-22H2 and Windows 11 21H2-22H2 - Elevation of Privilege via Win32k Race Condition
CVSS 7.0
CVE-2023-36743 HIGH
Windows 10 1507-22H2 and Windows 11 21H2-22H2 - Use-After-Free in Win32k
CVSS 7.8
CVE-2023-36726 HIGH
Windows IKE <Extension Elevation of Privilege
CVSS 7.8
CVE-2023-36605 HIGH
Windows Named Pipe Filesystem - Privilege Escalation
CVSS 7.4
CVE-2023-36583 HIGH
Windows 10/11 and Windows Server 2008/2012/2016/2019 - Remote Code Execution via MSMQ Use-After-Free
CVSS 7.3
CVE-2023-36565 HIGH
Microsoft Office - Privilege Escalation
CVSS 7.0
CVE-2023-41675 MEDIUM
FortiOS <7.2.4, FortiProxy <7.2.2 - Use After Free
CVSS 5.3
Details
Vulnerabilities 7,548
Exploit Likelihood High