CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,489 vulnerabilities with CWE-416
CVE-2025-38180 HIGH
Linux Kernel Use-After-Free in /proc/net/atm/lec Handling
CVSS 7.8
CVE-2025-38176 HIGH
Linux Kernel - Use-After-Free in binderfs_evict_inode
CVSS 7.8
CVE-2025-38175 HIGH
Linux Kernel 6.14-6.14.10, 6.15.0-6.15.1 - Use-After-Free in binder_devices
CVSS 7.8
CVE-2025-38172 HIGH
Linux Kernel 6.12-6.12.33, 6.13-6.15.2, 6.16 - Use-After-Free in EROFS Multi-Device Handling
CVSS 7.8
CVE-2025-38154 HIGH
Linux Kernel - Use-After-Free in BPF Sockmap Backlog Handling
CVSS 7.8
CVE-2025-38141 HIGH
Linux Kernel - Use-After-Free in dm_blk_report_zones
CVSS 7.8
CVE-2025-38137 HIGH
Linux Kernel 6.11-6.15.2 - Use-After-Free in PCI Power Control Rescan Work
CVSS 7.8
CVE-2025-38131 HIGH
Linux Kernel 5.15-6.1.141, 6.2-6.6.93, 6.7-6.12.33, 6.13-6.15.2 - Use-After-Free in CoreSight Configuration
CVSS 7.8
CVE-2025-38129 HIGH
Linux Kernel 4.18-6.12.34 - Use-After-Free in page_pool_recycle_in_ring
CVSS 7.8
CVE-2025-38118 HIGH
Linux Kernel 5.12-6.1.141, 6.2-6.6.93, 6.7-6.12.33, 6.13-6.15.2 - Use-After-Free in Bluetooth MGMT Adv Monitor Removal
CVSS 7.8
CVE-2025-38117 HIGH
Linux Kernel 4.1-6.6.93, 6.7.0-6.12.33, 6.13.0-6.15.2 - Use-After-Free in Bluetooth MGMT Pending List
CVSS 7.8
CVE-2025-38116 HIGH
Linux Kernel 6.14-6.15.3 - Use-After-Free in ath12k Core Initialization
CVSS 7.8
CVE-2025-38109 HIGH
Linux Kernel 6.5-6.6.93, 6.7-6.12.33, 6.13-6.15.2 - Use-After-Free in ECVF vport Cleanup
CVSS 7.8
CVE-2025-38106 HIGH
Linux Kernel 6.9-6.12.33, 6.13-6.15.2, 6.16 - Use-After-Free in io_uring fdinfo
CVSS 7.8
CVE-2025-52886 MEDIUM
poppler < 25.06.0 - Use-After-Free via Reference Count Overflow
CVSS 5.9
CVE-2025-38087 HIGH
Linux Kernel 6.3-6.6.94, 6.7-6.12.34, 6.13-6.15.3 - Use-After-Free in taprio_dev_notifier
CVSS 7.8
CVE-2025-0634 CRITICAL
Samsung Open Source rLottie <0.2 - Use After Free
CVSS 9.8
CVE-2025-6856 LOW
HDF5 1.14.6 - Use-After-Free in H5FL__reg_gc_list
CVSS 3.3
CVE-2025-6706 MEDIUM
MongoDB 6.0.0-6.0.20 - Authenticated Use-After-Free via Aggregation Pipeline Expressions
CVSS 5.0
CVE-2025-6661 HIGH
PDF-XChange Editor - Use-After-Free in App Object Handling
CVSS 7.8
CVE-2025-6646 LOW
PDF-XChange Editor - Use-After-Free in U3D File Parser
CVSS 3.3
CVE-2025-6645 HIGH
PDF-XChange Editor - Use-After-Free in U3D File Parsing
CVSS 7.8
CVE-2025-6644 HIGH
PDF-XChange Editor - Use-After-Free in U3D File Parser
CVSS 7.8
CVE-2025-6640 HIGH
PDF-XChange Editor - Use-After-Free in U3D File Parsing
CVSS 7.8
CVE-2025-6555 MEDIUM
Google Chrome <138.0.7204.49 - Use After Free
CVSS 5.4
Details
Vulnerabilities 7,489
Exploit Likelihood High