CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,548 vulnerabilities with CWE-416
CVE-2023-36735 CRITICAL
Microsoft Edge < - Privilege Escalation
CVSS 9.6
CVE-2023-36562 HIGH
Microsoft Edge < - Privilege Escalation
CVSS 7.1
CVE-2023-2680 HIGH
qemu-kvm <RHSA-2022:7967 - Privilege Escalation
CVSS 7.5
CVE-2023-4813 MEDIUM
glibc < 2.36 - Use-After-Free in gaih_inet Function
CVSS 5.9
CVE-2023-4921 HIGH
Linux Kernel 3.8-4.14.326 - Use-After-Free in sch_qfq Component
CVSS 7.8
CVE-2023-38161 HIGH
Windows GDI - Use-After-Free Elevation of Privilege
CVSS 7.8
CVE-2023-38160 MEDIUM
Windows 10 1507-22H2 and Windows 11 21H2-22H2 - Information Disclosure via TCP/IP Use-After-Free
CVSS 5.5
CVE-2023-38139 HIGH
Windows Kernel - Use-After-Free Elevation of Privilege
CVSS 7.8
CVE-2023-36804 HIGH
Windows 10 1507-22H2 and Windows 11 21H2-22H2 - Use-After-Free in GDI
CVSS 7.8
CVE-2023-36802 HIGH KEV
Microsoft Streaming Service Proxy - Privilege Escalation
CVSS 7.8
CVE-2023-36760 HIGH
3D Viewer < 7.2307.27042.0 - Remote Code Execution
CVSS 7.8
CVE-2023-38075 HIGH
Siemens JT2Go < 14.3.0.1 - Use-After-Free via WRL File Parsing
CVSS 7.8
CVE-2023-35687 HIGH
Android - Use-After-Free in MtpPropertyValue
CVSS 7.8
CVE-2023-35666 HIGH
Android - Use-After-Free in bta_av_rc_msg
CVSS 7.8
CVE-2023-35658 HIGH
Android - Use-After-Free in gatt_process_prep_write_rsp
CVSS 8.8
CVE-2023-39070 HIGH
Cppcheck 2.12 dev - Use-After-Free via removeContradiction Parameter
CVSS 7.8
CVE-2023-41000 MEDIUM
GPAC < 2.2.1 - Use-After-Free in gf_bifs_flush_command_list
CVSS 5.5
CVE-2023-4575 MEDIUM
Firefox <117, Thunderbird <102.15-102.15 - Use After Free
CVSS 6.5
CVE-2023-4574 MEDIUM
Firefox <117, Thunderbird <102.15-115.2 - Use After Free
CVSS 6.5
CVE-2023-4573 MEDIUM
Firefox <117, Thunderbird <115.2 - Use After Free
CVSS 6.5
CVE-2023-4623 HIGH
Linux Kernel 2.6.12-4.14.327 - Use-After-Free in HFSC qdisc Traffic Control
CVSS 7.8
CVE-2023-4622 HIGH
Linux Kernel 4.2-6.1.47 - Use-After-Free in af_unix unix_stream_sendpage
CVSS 7.8
CVE-2023-4244 HIGH
Linux kernel <3e91b0ebd994 - Use After Free
CVSS 7.8
CVE-2023-4208 HIGH
Linux kernel - Privilege Escalation
CVSS 7.8
CVE-2023-4207 HIGH
Linux Kernel 3.18-4.14.326 - Use-After-Free in cls_fw Filter Update
CVSS 7.8
Details
Vulnerabilities 7,548
Exploit Likelihood High