The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.
7,489 vulnerabilities with CWE-416
CVE-2025-21458
HIGH
Qualcomm FastConnect 6900 Firmware - Use-After-Free via IOCTL Buffer Mapping
CVSS 7.8
CVE-2025-21456
HIGH
Qualcomm AR8035 Firmware - Use-After-Free via Concurrent IOCTL Buffer Mapping
CVSS 7.8
CVE-2025-54635
MEDIUM
HarmonyOS - Use-After-Free in Distributed Notification Service
CVSS 5.9
CVE-2025-54626
MEDIUM
HarmonyOS - Use-After-Free in cjwindow Module
CVSS 4.4
CVE-2025-0932
MEDIUM
Arm 5th Gen GPU Architecture Userspace Driver r48p0-r49p3 r50p0-r51p0 - Use-After-Free
CVSS 4.3
CVE-2025-23281
HIGH
NVIDIA GPU Display Driver for Windows - Use After Free
CVSS 7.0
CVE-2025-8292
HIGH
Chrome < 138.0.7204.183 - Use-After-Free in Media Stream
CVSS 8.8
CVE-2025-43222
CRITICAL
iPadOS < 17.7.9 and macOS < 13.7.7, < 14.7.7, < 15.6 - Use-After-Free
CVSS 9.8
CVE-2025-43216
MEDIUM
Safari < 18.6 - Use-After-Free via Malicious Web Content
CVSS 6.5
CVE-2025-6636
HIGH
Autodesk Shared Components 1.6.2.11-1.7.0.9 - Use-After-Free via PRT File Parsing
CVSS 7.8
CVE-2025-38488
HIGH
Linux Kernel - Use-After-Free in SMB Client Cryptographic Message Handling
CVSS 7.8
CVE-2025-38485
HIGH
Linux Kernel 5.14-6.1.147 6.2-6.6.100 6.7-6.12.40 6.13-6.15.8 - Use-After-Free in fxls8962af_fifo_flush
CVSS 7.8
CVE-2025-38476
HIGH
Linux Kernel 5.7-5.9, 5.11-5.14, 5.16-6.0, 6.2-6.5, 6.7-6.11, 6.13-6.14 - Use-After-Free in rpl_do_srh_inline
CVSS 7.8
CVE-2025-38471
HIGH
Linux Kernel 6.0.6-6.1 - Use-After-Free in TLS Socket Queue Handling
CVSS 7.8
CVE-2025-8176
MEDIUM
libtiff < 4.7.0 - Use-After-Free in get_histogram Function
CVSS 5.3
CVE-2025-38464
HIGH
Linux Kernel - Use-After-Free in TIPC Connection Close
CVSS 7.8
CVE-2025-38449
MEDIUM
Linux Kernel - Use-After-Free in DRM GEM Framebuffer Handling
CVSS 5.5
CVE-2025-38443
HIGH
Linux Kernel 5.14-5.15.188, 5.16-6.1.145, 6.2-6.6.98, 6.7-6.12.38, 6.13-6.15.6 - Use-After-Free in NBD recv_work
CVSS 7.8
CVE-2025-38437
HIGH
Linux Kernel 5.15-6.1.146 6.2.0-6.6.99 6.7.0-6.12.39 6.13.0-6.15.7 - Use-After-Free in Oplock/Lease Break Acknowledgment
CVSS 7.8
CVE-2025-38386
MEDIUM
Linux Kernel < 5.4.296, 5.5.0-6.15.6 Use-After-Free in ACPICA Method Evaluation
CVSS 5.5
CVE-2025-38378
HIGH
Linux Kernel 6.15-6.15.5 - Use-After-Free in HID appletb-kbd Probe Timer Handling
CVSS 7.8
CVE-2025-38377
HIGH
Linux Kernel 2.6.13-6.15.6 - Use-After-Free in rose_rt_device_down
CVSS 7.8
CVE-2025-38369
HIGH
Linux Kernel 5.6-6.6.95, 6.7-6.12.35, 6.13-6.15.4 - Use-After-Free in IDXD Workqueue Driver
CVSS 7.8
CVE-2025-4878
LOW
Red Hat Enterprise Linux 10 - Use-After-Free in privatekey_from_file()
CVSS 3.6
CVE-2025-47917
HIGH
Mbed TLS < 3.6.4 - Use-After-Free in mbedtls_x509_string_to_names()
CVSS 8.9
Details
Vulnerabilities
7,489
Exploit Likelihood
High