CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,545 vulnerabilities with CWE-416
CVE-2024-6989 HIGH
Google Chrome < 127.0.6533.72 - Use-After-Free in Loader
CVSS 8.8
CVE-2024-6988 HIGH
Google Chrome < 127.0.6533.72 - Use-After-Free in Downloads via Crafted HTML Page
CVSS 8.8
CVE-2024-7530 HIGH
Firefox < 129.0 - Use-After-Free via Garbage Collection Interaction
CVSS 8.8
CVE-2024-7528 HIGH
Firefox < 129, Firefox ESR < 128.1, and Thunderbird < 128.1 - Use-After-Free in IndexedDB
CVSS 8.8
CVE-2024-7527 HIGH
Firefox < 129 and Firefox ESR < 115.14 - Use-After-Free
CVSS 8.8
CVE-2024-33034 HIGH
Qualcomm FastConnect and Flight RB5 5G Platform Firmware - Use-After-Free in GPU SMMU Mappings
CVSS 8.4
CVE-2024-33028 HIGH
Qualcomm AR8035 and related firmware - Use-After-Free in Fence Object Handling
CVSS 8.4
CVE-2024-33023 HIGH
Qualcomm AR8035 and related firmware - Use-After-Free in Timeline Event Fence Handling
CVSS 8.4
CVE-2024-33010 HIGH
Qualcomm AR8035 and related firmware - Denial of Service via MBSSID IE Beacon Frame Parsing
CVSS 7.5
CVE-2024-23384 HIGH
Qualcomm WSA8845H and WSA8845 Firmware - Use-After-Free in VBO Page Mapping
CVSS 8.4
CVE-2024-23383 HIGH
Qualcomm WCD9370 Firmware - Use-After-Free in Kernel Driver Hardware Fence Handling
CVSS 8.4
CVE-2024-23382 HIGH
Qualcomm FastConnect and Flight RB5 5G Platform Firmware - Use-After-Free in Graphics Kernel Driver DMA Fence Creation
CVSS 8.4
CVE-2024-23381 HIGH
Qualcomm WSA8845H and other Firmware - Use-After-Free in GPU SMMU Memory Mapping
CVSS 8.4
CVE-2024-4607 HIGH
Arm 5th Gen GPU Architecture Kernel Driver r41p0-r49p0 - Use-After-Free
CVSS 7.8
CVE-2024-2937 HIGH
Arm Ltd Bifrost/Valhall/5th Gen GPU Arch <r49p0 - Use After Free
CVSS 7.8
CVE-2024-41965 MEDIUM
Vim < 9.1.0648 - Double Free in dialog_changed()
CVSS 4.2
CVE-2024-42112 HIGH
Linux Kernel 6.8.12-6.9 - Use-After-Free in txgbe ISB Resource Handling
CVSS 7.8
CVE-2024-42108 MEDIUM
Linux Kernel 6.8-6.9.9 - Use-After-Free in rswitch_tx_free
CVSS 5.5
CVE-2024-42105 HIGH
Linux Kernel < 4.19.318, 4.20.0-6.9.9 - Use-After-Free in nilfs2
CVSS 7.8
CVE-2024-42104 HIGH
Linux Kernel < 4.19.318, 4.20.0-6.9.9 - Use-After-Free in nilfs2 Directory Entry Handling
CVSS 7.8
CVE-2024-40829 MEDIUM
watchOS <10.6-iPadOS <17.6-macOS <13.6.8 - Info Disclosure
CVSS 4.6
CVE-2024-40782 MEDIUM
Safari < 17.6 - Use-After-Free via Malicious Web Content
CVSS 6.5
CVE-2024-40776 MEDIUM
Apple iOS/iPadOS <16.7.9/<17.6, macOS <14.6, Safari <17.6, tvOS <17.6, visionOS <1.3, watchOS <10.6 Use-After-Free
CVSS 4.3
CVE-2024-42075 MEDIUM
Linux Kernel < 6.9 - Use-After-Free in BPF Arena Remap
CVSS 5.5
CVE-2024-42073 MEDIUM
Linux Kernel < 5.17 - Use-After-Free in mlxsw Spectrum Buffer Operations
CVSS 5.5
Details
Vulnerabilities 7,545
Exploit Likelihood High