CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,545 vulnerabilities with CWE-416
CVE-2024-39422 HIGH
Adobe Acrobat and Reader < 20.005.30655 and < 24.002.21005 - Use-After-Free
CVSS 7.8
CVE-2024-39388 HIGH
Substance 3D Stager < 3.0.3 - Use-After-Free
CVSS 7.8
CVE-2024-39383 HIGH
Adobe Acrobat and Reader < 20.005.30655 and < 24.002.21005 - Use-After-Free
CVSS 7.8
CVE-2024-34117 HIGH
Photoshop Desktop <24.7.3, 25.9.1 - Use After Free
CVSS 7.8
CVE-2024-20789 HIGH
Adobe Dimension < 3.4.11 - Use-After-Free via Malicious File
CVSS 7.8
CVE-2024-38199 CRITICAL
Microsoft Windows LPD Service - Use-After-Free Remote Code Execution
CVSS 9.8
CVE-2024-38193 HIGH KEV
Windows Ancillary Function Driver - Privilege Escalation
CVSS 7.8
CVE-2024-38171 HIGH
Microsoft PowerPoint - Remote Code Execution via Use-After-Free
CVSS 7.8
CVE-2024-38159 CRITICAL
Windows Network Virtualization - Remote Code Execution
CVSS 9.1
CVE-2024-38158 HIGH
Microsoft Azure IoT SDK - Use-After-Free Remote Code Execution
CVSS 7.0
CVE-2024-38150 HIGH
Windows DWM Core Library - Privilege Escalation
CVSS 7.8
CVE-2024-38147 HIGH
Microsoft DWM Core Library - Privilege Escalation
CVSS 7.8
CVE-2024-38141 HIGH
Windows Ancillary Function Driver - Privilege Escalation
CVSS 7.8
CVE-2024-38140 CRITICAL
Windows RMCAST Driver - Remote Code Execution
CVSS 9.8
CVE-2024-38138 HIGH
Windows Deployment Services - Remote Code Execution
CVSS 7.5
CVE-2024-38137 HIGH
Windows Resource Manager PSM Service Extension - Privilege Escalation
CVSS 7.0
CVE-2024-38136 HIGH
Windows Resource Manager PSM Service Extension - Privilege Escalation
CVSS 7.0
CVE-2024-38107 HIGH KEV
Windows Power Dependency Coordinator - Privilege Escalation
CVSS 7.8
CVE-2024-42232 MEDIUM
Linux Kernel < 4.19.318, 4.20.0-6.9.10 - Use-After-Free in libceph
CVSS 5.5
CVE-2024-7536 HIGH
Google Chrome < 127.0.6533.99 - Use-After-Free in WebAudio
CVSS 8.8
CVE-2024-7533 HIGH
Chrome < 127.0.6533.99 - Use-After-Free in Sharing via Crafted HTML Page
CVSS 8.8
CVE-2024-7000 HIGH
Google Chrome < 127.0.6533.72 - Use-After-Free in CSS
CVSS 8.8
CVE-2024-6998 HIGH
Google Chrome < 127.0.6533.72 - Use-After-Free in User Education
CVSS 8.8
CVE-2024-6997 HIGH
Google Chrome < 127.0.6533.72 - Use-After-Free in Tabs via Crafted HTML Page
CVSS 8.8
CVE-2024-6991 HIGH
Google Chrome < 127.0.6533.72 - Use-After-Free in Dawn via Crafted HTML Page
CVSS 8.8
Details
Vulnerabilities 7,545
Exploit Likelihood High