CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,537 vulnerabilities with CWE-416
CVE-2024-58072 HIGH
Linux Kernel Use-After-Free in rtlwifi Probe
CVSS 7.8
CVE-2024-58060 HIGH
Linux Kernel - Use-After-Free in BPF Struct Ops Registration
CVSS 7.8
CVE-2024-53023 HIGH
Qualcomm AR8035 Firmware - Use-After-Free in Extended Back-to-Back Tests
CVSS 7.8
CVE-2024-45580 HIGH
Qualcomm FastConnect 6900 Firmware - Use-After-Free via Multiple IOCTL Calls
CVSS 7.8
CVE-2024-43062 HIGH
Qualcomm FastConnect and Snapdragon Firmware - Memory Corruption
CVSS 7.8
CVE-2024-43061 HIGH
Qualcomm FastConnect and Snapdragon Firmware - Use-After-Free in Voice Activation Sound Model Handling
CVSS 7.8
CVE-2024-43059 HIGH
Qualcomm FastConnect and Multiple Firmware - Memory Corruption via IOCTL
CVSS 7.8
CVE-2024-43057 HIGH
Qualcomm QCN/QCS/QFW/QSM Firmware - Use-After-Free in Glink Linux Command Processing
CVSS 7.8
CVE-2024-58034 HIGH
Linux Kernel 5.0-6.13.1 Use-After-Free in tegra20-emc OF Node Reference Handling
CVSS 7.8
CVE-2024-58013 HIGH
Linux Kernel - Use-After-Free in Bluetooth MGMT Adv Monitor Sync
CVSS 7.8
CVE-2024-58002 HIGH
Linux Kernel - Use-After-Free in UVC Video Driver Async Control Handling
CVSS 7.8
CVE-2024-54458 HIGH
Linux Kernel - Use-After-Free in UFS BSG Queue Removal
CVSS 7.8
CVE-2024-49570 HIGH
Linux Kernel 6.11-6.12.15, 6.13.0-6.13.3 - Use-After-Free in xe_bo_move Trace Event
CVSS 7.8
CVE-2024-57995 HIGH
Linux Kernel 6.10-6.13.2 - Use-After-Free in ath12k_mac_assign_vif_to_vdev
CVSS 7.8
CVE-2024-57984 HIGH
Linux Kernel 5.0-6.6.75, 6.7.0-6.12.12, 6.13.0-6.13.1 - Use-After-Free in dw_i3c_master Driver
CVSS 7.8
CVE-2024-57979 HIGH
Linux Kernel 3.2.40-3.2.99 - Use-After-Free in PPS Device Destruction
CVSS 7.8
CVE-2024-27246 MEDIUM
Zoom Meeting SDK < 5.17.11 - Authenticated Denial of Service via Use-After-Free
CVSS 4.3
CVE-2024-27239 MEDIUM
Zoom Meeting SDK < 5.17.11 - Authenticated Denial of Service via Use-After-Free
CVSS 4.3
CVE-2024-56171 HIGH
libxml2 < 2.12.10 and 2.13.x < 2.13.6 - Use-After-Free in xmlSchemaIDCFillNodeTables
CVSS 7.8
CVE-2024-41168 HIGH
Intel PROSet/Wireless <23.80 - Use After Free
CVSS 7.4
CVE-2024-57951 HIGH
Linux Kernel - Use-After-Free in hrtimers CPU Hotplug Handling
CVSS 7.8
CVE-2024-12548 LOW
Tungsten Automation Power PDF < 5.1.1.2 - Use-After-Free in JP2 File Parser
CVSS 3.3
CVE-2024-57959 MEDIUM
Huawei EMUI and HarmonyOS - Use-After-Free in Display Module
CVSS 6.1
CVE-2024-45571 HIGH
Qualcomm AR8035 Firmware - Use-After-Free in WLAN Interface WMI Command Processing
CVSS 7.8
CVE-2024-45561 HIGH
Qualcomm AQT1000 and FastConnect Firmware - Use-After-Free via IOCTL Latency Level Handling
CVSS 7.8
Details
Vulnerabilities 7,537
Exploit Likelihood High