CWE-416

High likelihood

Use After Free

Parent: CWE-825 - Expired Pointer Dereference

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

7,545 vulnerabilities with CWE-416
CVE-2024-40956 HIGH
Linux Kernel 5.11-5.15.161, 5.16-6.1.95, 6.2-6.6.35, 6.7-6.9.6 - Use-After-Free in DMA Engine IRQ Work List Processing
CVSS 7.8
CVE-2024-40954 HIGH
Linux Kernel 5.12-5.15.161, 5.16-6.1.95, 6.2-6.6.35, 6.7-6.9.6 - Use-After-Free via Socket Creation Failure
CVSS 7.8
CVE-2024-40939 HIGH
Linux Kernel - Use-After-Free in WWAN IOSM Region Creation
CVSS 7.8
CVE-2024-40935 HIGH
Linux Kernel 5.19-6.1.95, 6.2-6.6.35, 6.7-6.9.6 - Use-After-Free in Cachefiles Request Handling
CVSS 7.8
CVE-2024-40927 HIGH
Linux Kernel 2.6.35-5.15.161, 5.16.0-6.1.94, 6.2.0-6.6.34, 6.7.0-6.9.5 - Use-After-Free in XHCI Stream Handling
CVSS 7.8
CVE-2024-40920 HIGH
Linux Kernel - Use-After-Free in Bridge MST State Handling
CVSS 7.8
CVE-2024-40913 HIGH
Linux Kernel 5.19-6.1.95 6.2-6.6.35 6.7-6.9.6 - Use-After-Free in Cachefiles Anonymous FD Handling
CVSS 7.8
CVE-2024-40909 HIGH
Linux Kernel - Use-After-Free in BPF Link Deallocation
CVSS 7.8
CVE-2024-40907 MEDIUM
Linux Kernel 6.9-6.9.5 - Use-After-Free in Ionic Driver XDP_TX Path
CVSS 5.5
CVE-2024-40906 HIGH
Linux Kernel 6.1.0-6.1.94, 6.2.0-6.6.34, 6.7.0-6.9.5 - Use-After-Free in mlx5 Health Monitor
CVSS 7.8
CVE-2024-40903 HIGH
Linux Kernel - Use-After-Free in tcpm_register_source_caps
CVSS 7.8
CVE-2024-40900 HIGH
Linux Kernel 5.19-6.1.95 6.2-6.6.35 6.7-6.9.6 - Use-After-Free in cachefiles_ondemand_daemon_read
CVSS 7.8
CVE-2024-40899 HIGH
Linux Kernel 6.8-6.9.5 - Use-After-Free in cachefiles_ondemand_get_fd
CVSS 7.8
CVE-2024-39510 HIGH
Linux Kernel 6.8-6.9.6 - Use-After-Free in cachefiles_ondemand_daemon_read
CVSS 7.8
CVE-2024-39503 HIGH
Linux Kernel 5.4.269-5.4.278 - Use-After-Free in Netfilter ipset list:set Type
CVSS 7.0
CVE-2024-39502 HIGH
Linux Kernel - Use-After-Free in ionic_qcq_enable
CVSS 7.8
CVE-2024-39496 HIGH
Linux Kernel 5.11-5.11, 5.12-6.1.95, 6.2-6.6.35, 6.7-6.9.6 - Use-After-Free in Btrfs Zoned Block Group Creation
CVSS 7.8
CVE-2024-39495 HIGH
Linux Kernel < 5.4.279 Use-After-Free in Greybus Interface Mode Switch
CVSS 7.8
CVE-2024-39494 HIGH
Linux Kernel - Use-After-Free in IMA Dentry Name Handling
CVSS 7.8
CVE-2024-39528 MEDIUM
Juniper Junos OS and Junos OS Evolved - Authenticated Denial of Service via Routing Protocol Daemon Use-After-Free
CVSS 5.7
CVE-2024-31339 HIGH
Android - Use-After-Free in StatsService.cpp
CVSS 7.8
CVE-2024-23697 HIGH
Android - Use-After-Free in RGXCreateHWRTData_aux
CVSS 7.8
CVE-2024-23696 HIGH
Android - Use-After-Free in RGXCreateZSBufferKM
CVSS 7.8
CVE-2024-38085 HIGH
Windows Graphics Component - Privilege Escalation
CVSS 7.8
CVE-2024-38078 HIGH
Xbox Wireless Adapter - Remote Code Execution
CVSS 7.5
Details
Vulnerabilities 7,545
Exploit Likelihood High