CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,489 vulnerabilities with CWE-416
CVE-2025-21458 HIGH
Qualcomm FastConnect 6900 Firmware - Use-After-Free via IOCTL Buffer Mapping
CVSS 7.8
CVE-2025-21456 HIGH
Qualcomm AR8035 Firmware - Use-After-Free via Concurrent IOCTL Buffer Mapping
CVSS 7.8
CVE-2025-54635 MEDIUM
HarmonyOS - Use-After-Free in Distributed Notification Service
CVSS 5.9
CVE-2025-54626 MEDIUM
HarmonyOS - Use-After-Free in cjwindow Module
CVSS 4.4
CVE-2025-0932 MEDIUM
Arm 5th Gen GPU Architecture Userspace Driver r48p0-r49p3 r50p0-r51p0 - Use-After-Free
CVSS 4.3
CVE-2025-23281 HIGH
NVIDIA GPU Display Driver for Windows - Use After Free
CVSS 7.0
CVE-2025-8292 HIGH
Chrome < 138.0.7204.183 - Use-After-Free in Media Stream
CVSS 8.8
CVE-2025-43222 CRITICAL
iPadOS < 17.7.9 and macOS < 13.7.7, < 14.7.7, < 15.6 - Use-After-Free
CVSS 9.8
CVE-2025-43216 MEDIUM
Safari < 18.6 - Use-After-Free via Malicious Web Content
CVSS 6.5
CVE-2025-6636 HIGH
Autodesk Shared Components 1.6.2.11-1.7.0.9 - Use-After-Free via PRT File Parsing
CVSS 7.8
CVE-2025-38488 HIGH
Linux Kernel - Use-After-Free in SMB Client Cryptographic Message Handling
CVSS 7.8
CVE-2025-38485 HIGH
Linux Kernel 5.14-6.1.147 6.2-6.6.100 6.7-6.12.40 6.13-6.15.8 - Use-After-Free in fxls8962af_fifo_flush
CVSS 7.8
CVE-2025-38476 HIGH
Linux Kernel 5.7-5.9, 5.11-5.14, 5.16-6.0, 6.2-6.5, 6.7-6.11, 6.13-6.14 - Use-After-Free in rpl_do_srh_inline
CVSS 7.8
CVE-2025-38471 HIGH
Linux Kernel 6.0.6-6.1 - Use-After-Free in TLS Socket Queue Handling
CVSS 7.8
CVE-2025-8176 MEDIUM
libtiff < 4.7.0 - Use-After-Free in get_histogram Function
CVSS 5.3
CVE-2025-38464 HIGH
Linux Kernel - Use-After-Free in TIPC Connection Close
CVSS 7.8
CVE-2025-38449 MEDIUM
Linux Kernel - Use-After-Free in DRM GEM Framebuffer Handling
CVSS 5.5
CVE-2025-38443 HIGH
Linux Kernel 5.14-5.15.188, 5.16-6.1.145, 6.2-6.6.98, 6.7-6.12.38, 6.13-6.15.6 - Use-After-Free in NBD recv_work
CVSS 7.8
CVE-2025-38437 HIGH
Linux Kernel 5.15-6.1.146 6.2.0-6.6.99 6.7.0-6.12.39 6.13.0-6.15.7 - Use-After-Free in Oplock/Lease Break Acknowledgment
CVSS 7.8
CVE-2025-38386 MEDIUM
Linux Kernel < 5.4.296, 5.5.0-6.15.6 Use-After-Free in ACPICA Method Evaluation
CVSS 5.5
CVE-2025-38378 HIGH
Linux Kernel 6.15-6.15.5 - Use-After-Free in HID appletb-kbd Probe Timer Handling
CVSS 7.8
CVE-2025-38377 HIGH
Linux Kernel 2.6.13-6.15.6 - Use-After-Free in rose_rt_device_down
CVSS 7.8
CVE-2025-38369 HIGH
Linux Kernel 5.6-6.6.95, 6.7-6.12.35, 6.13-6.15.4 - Use-After-Free in IDXD Workqueue Driver
CVSS 7.8
CVE-2025-4878 LOW
Red Hat Enterprise Linux 10 - Use-After-Free in privatekey_from_file()
CVSS 3.6
CVE-2025-47917 HIGH
Mbed TLS < 3.6.4 - Use-After-Free in mbedtls_x509_string_to_names()
CVSS 8.9
Details
Vulnerabilities 7,489
Exploit Likelihood High