CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,566 vulnerabilities with CWE-416
CVE-2022-4178 HIGH
Google Chrome < 108.0.5359.71 - Use-After-Free in Mojo
CVSS 8.8
CVE-2022-4177 HIGH
Chrome < 108.0.5359.71 - Use-After-Free in Extensions via Crafted UI Interaction
CVSS 8.8
CVE-2022-4175 HIGH
Google Chrome < 108.0.5359.71 - Use-After-Free in Camera Capture
CVSS 8.8
CVE-2022-45343 HIGH
GPAC < 2.2.0 - Use-After-Free via Q_IsTypeOn Function
CVSS 7.8
CVE-2022-45919 HIGH
Linux Kernel 2.6.12-6.0.10 - Use-After-Free in DVB CA EN50221 Driver
CVSS 7.0
CVE-2022-45888 MEDIUM
Linux Kernel < 6.0.9 - Use-After-Free via USB Device Removal Race Condition
CVSS 6.4
CVE-2022-45886 HIGH
Linux Kernel 2.6.12-6.0.9 - Use-After-Free via dvb_net.c Race Condition
CVSS 7.0
CVE-2022-45885 HIGH
Linux Kernel < 6.0.9 - Use-After-Free via Race Condition in DVB Frontend Disconnect
CVSS 7.0
CVE-2022-45884 HIGH
Linux Kernel < 6.0.9 - Use-After-Free in DVB Device Registration
CVSS 7.0
CVE-2022-42896 HIGH
Linux Kernel < 4.9.335 - Use-After-Free in Bluetooth L2CAP Core
CVSS 8.0
CVE-2022-3910 HIGH
Linux Kernel 5.18-5.19.10 - Use-After-Free in io_uring Fixed File Handling
CVSS 7.8
CVE-2022-40129 HIGH
Foxit PDF Reader 12.0.1.12430 - Use-After-Free via Optional Content Group API
CVSS 7.8
CVE-2022-38097 HIGH
Foxit Software's PDF Reader <12.0.1.12430 - Use After Free
CVSS 7.8
CVE-2022-37332 HIGH
Foxit PDF Reader 12.0.1.12430 - Use-After-Free via JavaScript Media Player API
CVSS 7.8
CVE-2022-32774 HIGH
Foxit PDF Reader 12.0.1.12430 - Use-After-Free in JavaScript Engine
CVSS 7.8
CVE-2022-45146 MEDIUM
Bouncy Castle FIPS Java API < 1.0.2.4 - Use-After-Free in Temporary Key Handling
CVSS 5.5
CVE-2022-45474 CRITICAL
drachtio-server 0.8.18 - Use-After-Free in Request Handler
CVSS 9.8
CVE-2022-25743 HIGH
Qualcomm APQ8009 Firmware - Use-After-Free in Graphics Buffer Import
CVSS 8.4
CVE-2022-44550 HIGH
HarmonyOS - Use-After-Free in Graphics Display Module
CVSS 7.5
CVE-2022-44547 HIGH
HarmonyOS - Use-After-Free in Display Service Module
CVSS 7.5
CVE-2022-3450 HIGH
Google Chrome < 106.0.5249.119 - Use-After-Free in Peer Connection
CVSS 8.8
CVE-2022-3449 HIGH
Google Chrome < 106.0.5249.119 - Use-After-Free in Safe Browsing via Malicious Extension
CVSS 8.8
CVE-2022-3448 HIGH
Google Chrome < 106.0.5249.119 - Use-After-Free in Permissions API
CVSS 8.8
CVE-2022-3445 HIGH
Google Chrome < 106.0.5249.119 - Use-After-Free in Skia via Crafted HTML Page
CVSS 8.8
CVE-2022-3888 HIGH
Google Chrome <107.0.5304.106 - Use After Free
CVSS 8.8
Details
Vulnerabilities 7,566
Exploit Likelihood High