CWE-763

Release of Invalid Pointer or Reference

Parent: CWE-404 - Improper Resource Shutdown or Release

The product attempts to return a memory resource to the system, but it calls the wrong release function or calls the appropriate release function incorrectly.

98 vulnerabilities with CWE-763
CVE-2022-24958 HIGH
Linux kernel <5.16.8 - Buffer Overflow
CVSS 7.8
CVE-2021-47387 MEDIUM
Linux Kernel 4.7-4.9.285 - Use-After-Free in CPUFreq Schedutil Governor
CVSS 5.5
CVE-2021-47221 MEDIUM
Linux Kernel 5.7-5.10.46 5.12.13 - Use-After-Free in SLUB Freelist Pointer Handling
CVSS 5.5
CVE-2021-47087 HIGH
Linux Kernel 5.4.140-5.4.168 - Use-After-Free in OP-TEE Page Allocation
CVSS 7.8
CVE-2021-40042 MEDIUM
Huawei CloudEngine 12800/5800/6800/7800 Firmware - Use-After-Free
CVSS 6.5
CVE-2021-45261 MEDIUM
GNU patch 2.7 - Denial of Service via another_hunk Function
CVSS 5.5
CVE-2021-3939 HIGH
Ubuntu accountsservice <0.6.55-0ubuntu12~20.04.5 - Use After Free
CVSS 7.8
CVE-2021-42377 CRITICAL
Busybox - Denial of Service and Possible Remote Code Execution via Hush Applet Pointer Free
CVSS 9.8
CVE-2021-41073 HIGH
Linux kernel <5.14.6 - Privilege Escalation
CVSS 7.8
CVE-2021-28216 HIGH
BootPerformanceTable - Info Disclosure
CVSS 7.8
CVE-2021-3682 HIGH
QEMU < 6.1.0 - Use-After-Free in USB Redirector Device Emulation
CVSS 8.5
CVE-2021-22760 HIGH
IGSS Definition <15.0.0.21140 - RCE
CVSS 7.8
CVE-2021-30473 CRITICAL
AOMedia <2021-04-07 - Use After Free
CVSS 9.8
CVE-2021-24028 CRITICAL
Facebook Thrift <2021.02.22.00 - Code Injection
CVSS 9.8
CVE-2021-21401 HIGH
Nanopb <0.3.9.8-0.4.5 - Memory Corruption
CVSS 7.1
CVE-2020-27545 MEDIUM
libdwarf <20201017 - Memory Corruption
CVSS 6.5
CVE-2020-27798 MEDIUM
UPX 4.0.0 - Invalid Memory Address Reference in adjABS Function
CVSS 5.5
CVE-2020-27797 MEDIUM
UPX 4.0.0 - Invalid Memory Address Reference in elf_lookup Function
CVSS 5.5
CVE-2020-12963 HIGH
AMD Graphics Driver - Memory Corruption
CVSS 7.8
CVE-2020-36404 HIGH
Keystone Engine 0.9.2 - Use After Free
CVSS 7.8
CVE-2020-12982 HIGH
AMD Graphics Driver - Privilege Escalation/DoS
CVSS 7.8
CVE-2020-36224 HIGH
OpenLDAP < 2.4.57 - Denial of Service via SASL AuthzTo Processing
CVSS 7.5
CVE-2020-0444 HIGH
Android - Use-After-Free in auditfilter.c
CVSS 7.8
CVE-2020-28941 MEDIUM
Linux Kernel < 5.9.9 - Use-After-Free in Speakup TTY Line Discipline
CVSS 5.5
CVE-2020-5139 HIGH
SonicOS < 5.9.1.13 and < 6.5.4.4 - Unauthenticated Denial of Service via SSLVPN Invalid Pointer Release
CVSS 7.5
Details
Vulnerabilities 98