CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,537 vulnerabilities with CWE-416
CVE-2025-21295 HIGH
Windows 10/11, Server 2008-2012 RCE via SPNEGO NEGOEX Use-After-Free
CVSS 8.1
CVE-2025-21281 HIGH
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2012-2016 - Elevation of Privilege via COM Use-After-Free
CVSS 7.8
CVE-2025-21224 HIGH
Windows Line Printer Daemon Service - Remote Code Execution
CVSS 8.1
CVE-2025-0240 MEDIUM
Firefox < 134 & Thunderbird < 134 - Use After Free
CVSS 4.0
CVE-2025-0238 MEDIUM
Firefox < 115.19.0, 115.19-115.*, < 128.6, 128.6-128.*, >=134 - Use-After-Free
CVSS 5.3
CVE-2024-14028 MEDIUM
Multiple implicit reads in parallel can result in a crash or denial of service
CVSS 6.5
CVE-2024-9126 HIGH
Google Chrome < 127.0.6533.88 - Use-After-Free in Internals via UI Gestures
CVSS 7.5
CVE-2024-45434 CRITICAL
OpenSynergy BlueSDK <6.x - Use After Free
CVSS 9.8
CVE-2024-58240 HIGH
Linux Kernel 4.13-6.1.148, 6.2.0-6.6.20, 6.7.0-6.7.8 - Use-After-Free in TLS Async Decryption Handling
CVSS 7.8
CVE-2024-53015 MEDIUM
Qualcomm AQT1000 Firmware - Use-After-Free in IOCTL Buffer Handling
CVSS 6.6
CVE-2024-45583 MEDIUM
Qualcomm FastConnect 7800 Firmware - Use-After-Free via DMA IOCTL Handling
CVSS 6.6
CVE-2024-45567 HIGH
Qualcomm FastConnect 6900 Firmware - Use-After-Free in JPEG Encoding
CVSS 7.8
CVE-2024-45566 HIGH
Qualcomm FastConnect and Snapdragon Firmware - Use-After-Free via Concurrent Buffer Access
CVSS 7.8
CVE-2024-45564 HIGH
Qualcomm C-V2X 9150 Firmware - Use-After-Free in Server Info Object
CVSS 7.8
CVE-2024-45562 MEDIUM
Qualcomm C-V2X 9150 Firmware - Use-After-Free in Server Info Object
CVSS 6.6
CVE-2024-45554 HIGH
Qualcomm FastConnect 6900 Firmware - Use-After-Free via Concurrent SSR Execution
CVSS 7.8
CVE-2024-58093 HIGH
Linux Kernel 5.4.251-5.5 - Use-After-Free in PCI/ASPM Link State Handling
CVSS 7.8
CVE-2024-49848 MEDIUM
Qualcomm FastConnect and AR8035 Firmware - Memory Corruption via IOCTL Calls
CVSS 6.7
CVE-2024-45544 MEDIUM
Qualcomm IOCTL Route Entry Firmware - Memory Corruption
CVSS 6.6
CVE-2024-45540 MEDIUM
Qualcomm FastConnect and C-V2X 9150 Firmware - Memory Corruption via IOCTL Map Buffer Request
CVSS 6.6
CVE-2024-43066 HIGH
Qualcomm FastConnect Firmware - Memory Corruption in Listener Registration
CVSS 7.8
CVE-2024-11235 HIGH
PHP 8.3.0-8.3.18 and 8.4.0-8.4.4 - Use-After-Free via __set Handler or ??= Operator
CVSS 8.1
CVE-2024-55549 HIGH
libxslt < 1.1.43 - Use-After-Free in xsltGetInheritedNsList
CVSS 7.8
CVE-2024-12837 HIGH
Software <unknown> - Memory Corruption
CVSS 7.8
CVE-2024-58083 HIGH
Linux Kernel 4.14.120-4.15 - Use-After-Free in KVM vCPU Handling
CVSS 7.8
Details
Vulnerabilities 7,537
Exploit Likelihood High