CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,542 vulnerabilities with CWE-416
CVE-2024-47413 HIGH
Adobe Animate < 23.0.8 - Use-After-Free
CVSS 7.8
CVE-2024-47412 HIGH
Adobe Animate < 23.0.8 - Use-After-Free
CVSS 7.8
CVE-2024-45146 HIGH
Adobe Dimension < 4.0.4 - Use-After-Free via Malicious File
CVSS 7.8
CVE-2024-43599 HIGH
Windows 10/11, Server 2008 RCE via Remote Desktop Client Use-After-Free
CVSS 8.8
CVE-2024-43582 HIGH
Windows 10/11 RDP Server Remote Code Execution (1809-23H2)
CVSS 8.1
CVE-2024-43574 HIGH
Windows 10/11, Server 2022 RCE via SAPI Use-After-Free
CVSS 8.3
CVE-2024-43570 MEDIUM
Windows 10 1507-22H2 and Windows 11 21H2 - Use-After-Free
CVSS 6.4
CVE-2024-43556 HIGH
Windows Graphics Component - Use-After-Free Elevation of Privilege
CVSS 7.8
CVE-2024-43552 HIGH
Windows 11 22H2, 23H2, 24H2 and Windows Server 2022 23H2 - Remote Code Execution via Use-After-Free
CVSS 7.3
CVE-2024-43535 HIGH
Windows 10 1507-22H2 and Windows 11 21H2 - Use-After-Free
CVSS 7.0
CVE-2024-43533 HIGH
Windows 11 21H2-24H2 and Windows Server 2022-2022 23H2 - Remote Code Execution via Remote Desktop Client Use-After-Free
CVSS 8.8
CVE-2024-43509 HIGH
Windows Graphics Component - Elevation of Privilege via Use-After-Free
CVSS 7.8
CVE-2024-43504 HIGH
Microsoft Excel - Remote Code Execution via Use-After-Free
CVSS 7.8
CVE-2024-38229 HIGH
Microsoft .NET and Visual Studio - Use-After-Free Remote Code Execution
CVSS 8.1
CVE-2024-8422 HIGH
Zelio Soft 2 < 5.4.2.2 - Use-After-Free via Malicious Project File
CVSS 7.8
CVE-2024-39831 MEDIUM
OpenHarmony < 4.1.0 - Use-After-Free
CVSS 4.4
CVE-2024-47814 LOW
Vim < 9.1.0764 - Use-After-Free via BufWinLeave Auto Command
CVSS 3.9
CVE-2024-44068 HIGH
Samsung Exynos 9820, 9825, 980, 990, 850, and W920 Firmware - Use-After-Free in m2m Scaler Driver
CVSS 8.1
CVE-2024-43047 HIGH KEV
Qualcomm FastConnect and QCA6174A/QAM8295P Firmware - Memory Corruption
CVSS 7.8
CVE-2024-38399 HIGH
Product <Version - Memory Corruption
CVSS 8.4
CVE-2024-33069 HIGH
Qualcomm WSA8835 and other Firmware - Denial of Service via Management Frame Transmission Error
CVSS 7.5
CVE-2024-23376 MEDIUM
Qualcomm WSA8835 and other Firmware - Use-After-Free via IOCTL Persist Buffer Command
CVSS 6.7
CVE-2024-23370 MEDIUM
Qualcomm WSA8835 and related firmware - Use-After-Free via HAB Virtual Channel IOCTL Race
CVSS 6.7
CVE-2024-0124 LOW
NVIDIA CUDA Toolkit < 12.6.2 - Use-After-Free in nvdisasm via Malformed ELF File
CVSS 3.3
CVE-2024-28888 HIGH
Foxit Reader 2024.1.0.23997 - Use-After-Free via JavaScript Checkbox Field Handling
CVSS 8.8
Details
Vulnerabilities 7,542
Exploit Likelihood High