CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,670 vulnerabilities with CWE-416
CVE-2019-15211 MEDIUM
Linux Kernel < 5.2.6 - Use-After-Free in V4L2 Device Driver via Malicious USB Device
CVSS 4.6
CVE-2019-15140 HIGH
ImageMagick 7.0.8-43 Q16 - Use-After-Free in Matlab Image File Handling
CVSS 8.8
CVE-2019-13514 HIGH
Delta Industrial Automation DOPSoft < 4.00.06.15 - Use-After-Free via Crafted Project File
CVSS 7.8
CVE-2019-13511 LOW
Rockwell Automation Arena < 16.00.00 - Information Exposure via Malicious Arena File
CVSS 3.3
CVE-2019-13510 HIGH
Rockwell Automation Arena < 16.00.00 - Use-After-Free via Maliciously Crafted Arena File
CVSS 7.8
CVE-2019-14980 MEDIUM
ImageMagick 6.0-6.9.10-41 and 7.x < 7.0.8-42 - Use-After-Free in UnmapBlob
CVSS 6.5
CVE-2019-14294 MEDIUM
Xpdf 4.01.01 - Use After Free
CVSS 5.5
CVE-2019-5606 HIGH
FreeBSD Use-After-Free in posix_openpt Descriptor Close
CVSS 7.8
CVE-2019-1010127 HIGH
VCFTools vcftools <0.1.15 - Use-after-free
CVSS 7.8
CVE-2019-2316 HIGH
Qualcomm Multiple Chipsets Firmware - Use-After-Free in Digest Computation
CVSS 8.8
CVE-2019-2314 HIGH
Qualcomm Snapdragon - Use After Free
CVSS 7.0
CVE-2019-2298 HIGH
Snapdragon Auto/<version> - Use After Free
CVSS 7.8
CVE-2019-2293 HIGH
Qualcomm Snapdragon - Memory Corruption
CVSS 7.8
CVE-2019-2290 HIGH
Qualcomm Snapdragon Firmware - Use-After-Free in Camera Driver Session Handling
CVSS 7.8
CVE-2019-2263 HIGH
Snapdragon Auto et al. - Use After Free
CVSS 7.8
CVE-2019-1010177 CRITICAL
Jsish <2.4.70-2.047 - Use After Free
CVSS 9.8
CVE-2019-9821 HIGH
Firefox < 67.0 - Use-After-Free via AssertWorkerThread Race Condition
CVSS 8.1
CVE-2019-9820 CRITICAL
Thunderbird/Firefox/Firefox ESR <60.7 - Use After Free
CVSS 9.8
CVE-2019-9818 HIGH
Thunderbird <60.7-Firefox <67-Firefox ESR <60.7 - Use After Free
CVSS 8.3
CVE-2019-11713 CRITICAL
Firefox < 68 and Firefox ESR < 60.8 - Use-After-Free in HTTP/2 Stream Handling
CVSS 9.8
CVE-2019-11692 CRITICAL
Thunderbird <60.7-Firefox <67-Firefox ESR <60.7 - Use After Free
CVSS 9.8
CVE-2019-11691 CRITICAL
Thunderbird <60.7-Firefox <67-Firefox ESR <60.7 - Use After Free
CVSS 9.8
CVE-2019-1010170 HIGH
Jsish 2.4.77-2.0477 - Use After Free
CVSS 7.5
CVE-2019-2264 HIGH
Snapdragon Auto/Consumer IOT/Mobile/Voice & Music/Wearables - Null ...
CVSS 7.8
CVE-2019-2260 HIGH
Qualcomm Snapdragon - Use After Free
CVSS 7.0
Details
Vulnerabilities 7,670
Exploit Likelihood High