CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,549 vulnerabilities with CWE-416
CVE-2023-1855 MEDIUM
Hardware Monitoring Linux Kernel Driver - Use After Free
CVSS 6.3
CVE-2023-1838 HIGH
Linux Kernel 4.13-4.14.316 - Use-After-Free in vhost_net_set_backend
CVSS 7.1
CVE-2023-1818 HIGH
Google Chrome <112.0.5615.49 - Use After Free
CVSS 8.8
CVE-2023-1815 HIGH
Google Chrome <112.0.5615.49 - Use After Free
CVSS 8.8
CVE-2023-1811 HIGH
Google Chrome <112.0.5615.49 - Use After Free
CVSS 8.8
CVE-2023-26991 HIGH
SWFTools v0.9.2 - Use-After-Free in swf_ReadSWF2 Function
CVSS 7.8
CVE-2023-1611 MEDIUM
Linux Kernel - Use After Free
CVSS 6.3
CVE-2023-1670 HIGH
Linux Kernel 2.6.18-4.14.312 - Use-After-Free in Xircom PCMCIA Ethernet Driver
CVSS 7.8
CVE-2023-1393 HIGH
X.Org Server Overlay Window - Use After Free
CVSS 7.8
CVE-2023-1652 HIGH
Linux Kernel - Use-After-Free in NFS Server Setup
CVSS 7.1
CVE-2023-26349 MEDIUM
Adobe Dimension <3.4.7 - Use After Free
CVSS 5.5
CVE-2023-26336 HIGH
Adobe Dimension <3.4.7 - Use After Free
CVSS 7.8
CVE-2023-25899 HIGH
Adobe Dimension < 3.4.7 - Use-After-Free via Malicious File
CVSS 7.8
CVE-2023-25896 HIGH
Adobe Dimension < 3.4.7 - Use-After-Free
CVSS 7.8
CVE-2023-25894 HIGH
Adobe Dimension < 3.4.7 - Use-After-Free
CVSS 7.8
CVE-2023-25893 HIGH
Adobe Dimension < 3.4.7 - Use-After-Free via Malicious File
CVSS 7.8
CVE-2023-25908 HIGH
Adobe Photoshop < 23.5.3 and <= 24.1.1 - Use-After-Free via Malicious File
CVSS 7.8
CVE-2023-25871 HIGH
Adobe Substance 3D Stager < 2.0.0 - Use-After-Free via Malicious File
CVSS 7.8
CVE-2023-1079 MEDIUM
Linux Kernel < 6.3 - Use-After-Free in asus_kbd_backlight_set via Malicious USB Device
CVSS 6.8
CVE-2023-0494 HIGH
X.Org X Server < 21.1.7 - Use-After-Free in DeepCopyPointerClasses
CVSS 7.8
CVE-2023-21055 MEDIUM
Android - Use-After-Free in dit_hal_ioctl
CVSS 6.4
CVE-2023-21045 MEDIUM
Android - Use-After-Free in cpif Probe Failure Handling
CVSS 4.4
CVE-2023-21043 MEDIUM
Android - Use-After-Free in Kernel
CVSS 6.7
CVE-2023-21042 MEDIUM
Android - Use-After-Free in Kernel
CVSS 6.7
CVE-2023-21038 MEDIUM
Android - Use-After-Free in cs40l2x_cp_trigger_queue_show
CVSS 6.7
Details
Vulnerabilities 7,549
Exploit Likelihood High