CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,549 vulnerabilities with CWE-416
CVE-2023-21020 MEDIUM
Android 13 - Use-After-Free in registerSignalHandlers
CVSS 6.7
CVE-2023-21018 MEDIUM
Android 13 - Use-After-Free in UnwindingWorker
CVSS 6.7
CVE-2023-1252 HIGH
Linux Kernel 5.6-5.10.79 - Use-After-Free in Ext4 OverlayFS
CVSS 7.8
CVE-2023-1249 MEDIUM
Linux Kernel < 5.18 - Use-After-Free in Core Dump Subsystem
CVSS 5.5
CVE-2023-0590 MEDIUM
Linux Kernel - Use-After-Free in qdisc_graft
CVSS 4.7
CVE-2023-20027 HIGH
Cisco IOS XE - Unauthenticated Denial of Service via IPv4 Virtual Fragmentation Reassembly
CVSS 8.6
CVE-2023-26426 HIGH
Illustrator <26.5.2, 27.2.0 - Use After Free
CVSS 7.8
CVE-2023-1281 HIGH
Linux Kernel 4.14-<5.10.169 - Use-After-Free in Traffic Control Index Filter
CVSS 7.8
CVE-2023-1533 HIGH
Google Chrome <111.0.5563.110 - Use After Free
CVSS 8.8
CVE-2023-1531 HIGH
Google Chrome <111.0.5563.110 - Use After Free
CVSS 8.8
CVE-2023-1530 HIGH
Google Chrome <111.0.5563.110 - Use After Free
CVSS 8.8
CVE-2023-1528 HIGH
Google Chrome <111.0.5563.110 - Use After Free
CVSS 8.8
CVE-2023-21459 MEDIUM
Samsung Android - Use-After-Free in decon Driver
CVSS 5.0
CVE-2023-23421 HIGH
Windows Kernel - Use-After-Free Elevation of Privilege
CVSS 7.8
CVE-2023-23420 HIGH
Windows Kernel - Use-After-Free Elevation of Privilege
CVSS 7.8
CVE-2023-23404 HIGH
Windows 10 1507-22H2 and Windows 11 21H2-22H2 - Remote Code Execution via PPTP Race Condition
CVSS 8.1
CVE-2023-23392 CRITICAL
Windows 11 21H2/22H2 & Server 2022 RCE via HTTP Protocol Stack Use-After-Free
CVSS 9.8
CVE-2023-22436 HIGH
OpenHarmony <v3.1.5 - Use After Free
CVSS 7.8
CVE-2023-0030 HIGH
Linux Kernel < 5.0 - Use-After-Free in Nouveau Driver via nvkm_vma_tail Function
CVSS 7.8
CVE-2023-1227 HIGH
Google Chrome < 111.0.5563.64 - Use-After-Free in Core via Crafted UI Interaction
CVSS 8.8
CVE-2023-1218 HIGH
Chrome < 111.0.5563.64 - Use-After-Free in WebRTC
CVSS 8.8
CVE-2023-1216 HIGH
Google Chrome < 111.0.5563.64 - Use-After-Free in DevTools
CVSS 8.8
CVE-2023-1213 HIGH
Google Chrome < 111.0.5563.64 - Use-After-Free in Swiftshader via Crafted HTML Page
CVSS 8.8
CVE-2023-24734 CRITICAL
PMB 7.4.6 - Arbitrary File Upload and Remote Code Execution via Camera Upload
CVSS 9.8
CVE-2023-22424 HIGH
Kostac PLC Programming Software <1.6.9.0 - Use After Free
CVSS 7.8
Details
Vulnerabilities 7,549
Exploit Likelihood High