CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,545 vulnerabilities with CWE-416
CVE-2024-8394 MEDIUM
Thunderbird < 128.2 - Use After Free
CVSS 6.5
CVE-2024-45107 MEDIUM
Acrobat Reader <24.002.20991 - Use After Free
CVSS 5.5
CVE-2024-45063 HIGH
FreeBSD 13.0-13.2 - Use-After-Free in ctl_write_buffer
CVSS 8.8
CVE-2024-43102 CRITICAL
FreeBSD 13.0-13.2 - Use-After-Free via UMTX_SHM_DESTROY Reference Count Mismanagement
CVSS 10.0
CVE-2024-44998 HIGH
Linux Kernel Use-After-Free in ATM IDT77252 Dequeue RX
CVSS 7.8
CVE-2024-44997 HIGH
Linux Kernel 6.2-6.6.47, 6.7-6.10.6 - Use-After-Free in mtk_wed_setup_tc_block_cb
CVSS 7.8
CVE-2024-44987 HIGH
Linux Kernel Use-After-Free in ip6_send_skb
CVSS 7.8
CVE-2024-44986 HIGH
Linux Kernel 5.14-5.15.165, 5.16-6.1.106, 6.2-6.6.47, 6.7-6.10.6 - Use-After-Free in ip6_finish_output2()
CVSS 7.8
CVE-2024-44985 HIGH
Linux Kernel 5.15-5.15.165, 5.16-6.1.106, 6.2-6.6.47, 6.7-6.10.6 - Use-After-Free in ip6_xmit()
CVSS 7.8
CVE-2024-44978 HIGH
Linux Kernel 6.8-6.10.6 - Use-After-Free in drm/xe Job Handling
CVSS 7.8
CVE-2024-44974 HIGH
Linux Kernel 5.7-6.10.7 - Use-After-Free in MPTCP Endpoint Selection
CVSS 7.8
CVE-2024-44964 HIGH
Linux Kernel 6.7-6.10.4 - Use-After-Free in idpf Soft Reset
CVSS 7.8
CVE-2024-8362 HIGH
Google Chrome <128.0.6613.119 - Use After Free
CVSS 8.8
CVE-2024-8384 CRITICAL
Firefox < 130 and Firefox ESR < 115.15 - Use-After-Free in JavaScript Garbage Collector
CVSS 9.8
CVE-2024-3655 HIGH
Arm 5th Gen GPU Architecture Kernel Driver r43p0-r49p0 - Use-After-Free
CVSS 7.8
CVE-2024-38402 HIGH
Qualcomm FastConnect and AR8035/CSRA6620/CSRA6640 Firmware - Memory Corruption
CVSS 7.8
CVE-2024-38401 HIGH
Qualcomm Concurrent IOCTL Calls Firmware - Memory Corruption
CVSS 7.8
CVE-2024-33060 HIGH
Qualcomm 315 5G IoT Firmware - Use-After-Free in Memory Mapping
CVSS 8.4
CVE-2024-23365 HIGH
Qualcomm QAMSRV1M Firmware - Use-After-Free in MinkSocket Listener Thread
CVSS 8.4
CVE-2024-41160 HIGH
OpenHarmony < 4.1.0 - Use-After-Free
CVSS 8.8
CVE-2024-41157 HIGH
OpenHarmony >=4.0 <4.1 - Use-After-Free
CVSS 8.8
CVE-2024-44946 MEDIUM
Linux Kernel - Use-After-Free in KCM Socket Release
CVSS 5.5
CVE-2024-44941 HIGH
Linux Kernel - Use-After-Free in F2FS Extent Cache via Race Condition
CVSS 7.8
CVE-2024-44934 HIGH
Linux Kernel 5.10-5.15.164, 5.16-6.1.104, 6.2-6.6.45, 6.7-6.10.4 - Use-After-Free in Bridge Multicast Port Group Expiry
CVSS 7.8
CVE-2024-44932 HIGH
Linux Kernel 6.7-6.10.4 - Use-After-Free in Queue Destruction
CVSS 7.8
Details
Vulnerabilities 7,545
Exploit Likelihood High