CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,662 vulnerabilities with CWE-416
CVE-2020-6377 HIGH
Google Chrome <79.0.3945.117 - Use After Free
CVSS 8.8
CVE-2020-0002 HIGH
Android -<8.0,8.1,9,10 - Use After Free
CVSS 8.8
CVE-2020-5395 HIGH
FontForge 20190801 - Use-After-Free in SFD_GetFontMetaData
CVSS 8.8
CVE-2019-25162 HIGH
Linux Kernel 4.3.0-4.14.291 - Use-After-Free in I2C Adapter Structure
CVSS 7.8
CVE-2019-16471 HIGH
Adobe Acrobat Reader <2019.021.20056 - Use After Free
CVSS 7.8
CVE-2019-13768 HIGH
Google Chrome <72.0.3626.81 - Use After Free
CVSS 7.4
CVE-2019-25085 MEDIUM
GNOME gvdb < 2019-06-27 - Use-After-Free in gvdb_table_write_contents_async
CVSS 6.3
CVE-2019-25045 HIGH
Linux kernel <5.0.19 - Use After Free
CVSS 7.8
CVE-2019-25044 HIGH
Linux Kernel < 5.2 - Use-After-Free in Block Subsystem
CVSS 7.8
CVE-2019-17582 CRITICAL
libzip 1.2.0 - Use-After-Free in _zip_dirent_read Function
CVSS 9.8
CVE-2019-20934 MEDIUM
Linux kernel <5.2.6 - Use After Free
CVSS 5.3
CVE-2019-14586 HIGH
EDK II - Use-After-Free via Adjacent Access
CVSS 8.0
CVE-2019-2393 MEDIUM
MongoDB <4.2.1, <4.0.13, <3.6.15 - DoS
CVSS 6.5
CVE-2019-8846 HIGH
iCloud < 7.16 - Use-After-Free
CVSS 8.8
CVE-2019-8578 CRITICAL
AirPort Base Station Firmware < 7.8.1 - Remote Code Execution via Use-After-Free
CVSS 9.8
CVE-2019-8528 MEDIUM
iPhone OS < 12.2, macOS 10.13.6-10.14.3, watchOS < 5.2 - Use-After-Free
CVSS 6.7
CVE-2019-18794 MEDIUM
BASS Audio Library 2.4.14 - Use After Free
CVSS 6.5
CVE-2019-20918 MEDIUM
InspIRCd 3.0-3.1.0 - Use-After-Free in Silence Module
CVSS 6.5
CVE-2019-14117 HIGH
Snapdragon Auto - Use After Free
CVSS 7.8
CVE-2019-14037 HIGH
Snapdragon Auto et al - Use After Free
CVSS 7.8
CVE-2019-10580 HIGH
Qualcomm Mdm9607 Firmware - Use After Free
CVSS 7.8
CVE-2019-14087 HIGH
Qualcomm MSM8909W and QCS605 Firmware - Use-After-Free in HDR Blit Buffer Management
CVSS 7.8
CVE-2019-15878 HIGH
FreeBSD <12.1-STABLE r352509, <11.3-STABLE r352509, <11.3-RELEASE p...
CVSS 7.8
CVE-2019-19162 HIGH
TOBESOFT XPLATFORM <9.2.2 - Use After Free
CVSS 7.8
CVE-2019-20795 MEDIUM
iproute2 < 5.1.0 - Use-After-Free in get_netnsid_from_name
CVSS 4.4
Details
Vulnerabilities 7,662
Exploit Likelihood High