The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.
7,542 vulnerabilities with CWE-416
CVE-2024-46687
HIGH
Linux Kernel 6.3-6.6.48, 6.7-6.10.7 - Use-After-Free in Btrfs Chunk Submission
CVSS 7.8
CVE-2024-46683
HIGH
Linux Kernel 6.8-6.10.7 - Use-After-Free in DRM/xe Preempt Fence
CVSS 7.8
CVE-2024-46674
HIGH
Linux Kernel 3.18-6.10.7 - Use-After-Free in DWC3 USB Probe Error Handling
CVSS 7.8
CVE-2024-45016
MEDIUM
Linux Kernel 5.0-6.10.6 Use-After-Free in netem_enqueue
CVSS 5.5
CVE-2024-45013
MEDIUM
Linux Kernel 6.7-6.10.6 - Use-After-Free in NVMe Controller Keep-Alive Handling
CVSS 5.5
CVE-2024-8639
HIGH
Google Chrome <128.0.6613.137 - Use After Free
CVSS 8.8
CVE-2024-8638
HIGH
Google Chrome <128.0.6613.137 - RCE
CVSS 8.8
CVE-2024-8637
HIGH
Google Chrome <128.0.6613.137 - Use After Free
CVSS 8.8
CVE-2024-8636
HIGH
Google Chrome <128.0.6613.137 - Buffer Overflow
CVSS 8.8
CVE-2024-23716
HIGH
Android - Use-After-Free in DevmemIntPFNotify
CVSS 7.0
CVE-2024-43491
CRITICAL
Windows 10 1507 < 10.0.10240.20766 - Use-After-Free in Servicing Stack
CVSS 9.8
CVE-2024-43465
HIGH
Microsoft Excel - Elevation of Privilege via Use-After-Free
CVSS 7.8
CVE-2024-43463
HIGH
Microsoft Office Visio - Remote Code Execution via Use-After-Free
CVSS 7.8
CVE-2024-38259
HIGH
Microsoft Management Console < - RCE
CVSS 8.8
CVE-2024-38253
HIGH
Windows Win32 Kernel - Privilege Escalation
CVSS 7.8
CVE-2024-38252
HIGH
Windows Win32 Kernel - Privilege Escalation
CVSS 7.8
CVE-2024-38249
HIGH
Windows Graphics Component - Privilege Escalation
CVSS 7.8
CVE-2024-38248
HIGH
Windows Storage - Privilege Escalation
CVSS 7.0
CVE-2024-38235
MEDIUM
Windows Hyper-V - Denial of Service via Use-After-Free
CVSS 6.5
CVE-2024-38119
HIGH
Windows Network Address Translation - Remote Code Execution
CVSS 7.5
CVE-2024-26186
HIGH
Microsoft SQL Server 2016-2022 - Remote Code Execution via Native Scoring Use-After-Free
CVSS 8.8
CVE-2024-31960
HIGH
Samsung Mobile Processor Exynos - Use After Free
CVSS 7.8
CVE-2024-8394
MEDIUM
Thunderbird < 128.2 - Use After Free
CVSS 6.5
CVE-2024-45107
MEDIUM
Acrobat Reader <24.002.20991 - Use After Free
CVSS 5.5
CVE-2024-45063
HIGH
FreeBSD 13.0-13.2 - Use-After-Free in ctl_write_buffer
CVSS 8.8
Details
Vulnerabilities
7,542
Exploit Likelihood
High