CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,542 vulnerabilities with CWE-416
CVE-2024-46687 HIGH
Linux Kernel 6.3-6.6.48, 6.7-6.10.7 - Use-After-Free in Btrfs Chunk Submission
CVSS 7.8
CVE-2024-46683 HIGH
Linux Kernel 6.8-6.10.7 - Use-After-Free in DRM/xe Preempt Fence
CVSS 7.8
CVE-2024-46674 HIGH
Linux Kernel 3.18-6.10.7 - Use-After-Free in DWC3 USB Probe Error Handling
CVSS 7.8
CVE-2024-45016 MEDIUM
Linux Kernel 5.0-6.10.6 Use-After-Free in netem_enqueue
CVSS 5.5
CVE-2024-45013 MEDIUM
Linux Kernel 6.7-6.10.6 - Use-After-Free in NVMe Controller Keep-Alive Handling
CVSS 5.5
CVE-2024-8639 HIGH
Google Chrome <128.0.6613.137 - Use After Free
CVSS 8.8
CVE-2024-8638 HIGH
Google Chrome <128.0.6613.137 - RCE
CVSS 8.8
CVE-2024-8637 HIGH
Google Chrome <128.0.6613.137 - Use After Free
CVSS 8.8
CVE-2024-8636 HIGH
Google Chrome <128.0.6613.137 - Buffer Overflow
CVSS 8.8
CVE-2024-23716 HIGH
Android - Use-After-Free in DevmemIntPFNotify
CVSS 7.0
CVE-2024-43491 CRITICAL
Windows 10 1507 < 10.0.10240.20766 - Use-After-Free in Servicing Stack
CVSS 9.8
CVE-2024-43465 HIGH
Microsoft Excel - Elevation of Privilege via Use-After-Free
CVSS 7.8
CVE-2024-43463 HIGH
Microsoft Office Visio - Remote Code Execution via Use-After-Free
CVSS 7.8
CVE-2024-38259 HIGH
Microsoft Management Console < - RCE
CVSS 8.8
CVE-2024-38253 HIGH
Windows Win32 Kernel - Privilege Escalation
CVSS 7.8
CVE-2024-38252 HIGH
Windows Win32 Kernel - Privilege Escalation
CVSS 7.8
CVE-2024-38249 HIGH
Windows Graphics Component - Privilege Escalation
CVSS 7.8
CVE-2024-38248 HIGH
Windows Storage - Privilege Escalation
CVSS 7.0
CVE-2024-38235 MEDIUM
Windows Hyper-V - Denial of Service via Use-After-Free
CVSS 6.5
CVE-2024-38119 HIGH
Windows Network Address Translation - Remote Code Execution
CVSS 7.5
CVE-2024-26186 HIGH
Microsoft SQL Server 2016-2022 - Remote Code Execution via Native Scoring Use-After-Free
CVSS 8.8
CVE-2024-31960 HIGH
Samsung Mobile Processor Exynos - Use After Free
CVSS 7.8
CVE-2024-8394 MEDIUM
Thunderbird < 128.2 - Use After Free
CVSS 6.5
CVE-2024-45107 MEDIUM
Acrobat Reader <24.002.20991 - Use After Free
CVSS 5.5
CVE-2024-45063 HIGH
FreeBSD 13.0-13.2 - Use-After-Free in ctl_write_buffer
CVSS 8.8
Details
Vulnerabilities 7,542
Exploit Likelihood High