VulnSea

CWE-416

CVEs classified under CWE-416, newest first.

1092 CVEsRSS

CVE-2023-4611High· 7.0
3y ago

A use-after-free flaw was found in mm/mempolicy.c in the memory management subsystem in the Linux Kernel

A use-after-free flaw was found in mm/mempolicy.c in the memory management subsystem in the Linux Kernel. This issue is caused by a race between mbind() and VMA-locked page fault, and may allow a local attacker to crash the system or lea…

▾ Twilightlinux · linux_kernelEPSS 0.27%via NVD
CVE-2023-3609High· 7.8PoC
3y ago

A use-after-free vulnerability in the Linux kernel's net/sched: cls_u32 component can be exploited to achieve local privilege escalation. If tcf_change_indev() fails, u32_set_parms() will immediately return an error after incrementing…

A use-after-free vulnerability in the Linux kernel's net/sched: cls_u32 component can be exploited to achieve local privilege escalation. If tcf_change_indev() fails, u32_set_parms() will immediately return an error after incrementing…

▾ Midnightlinux · linux_kernelEPSS 0.45%via NVD
CVE-2023-3390High· 7.8PoC
3y ago

A use-after-free vulnerability was found in the Linux kernel's netfilter subsystem in net/netfilter/nf_tables_api.c. Mishandled error handling with NFT_MSG_NEWRULE makes it possible to use a dangling pointer in the same transaction caus…

A use-after-free vulnerability was found in the Linux kernel's netfilter subsystem in net/netfilter/nf_tables_api.c. Mishandled error handling with NFT_MSG_NEWRULE makes it possible to use a dangling pointer in the same transaction caus…

▾ Midnightlinux · linux_kernelEPSS 0.91%via NVD
CVE-2023-25747High· 7.5
3y ago

A potential use-after-free in libaudio was fixed by disabling the AAudio backend when running on Android API below version 30. *This bug only affects Firefox for Android

A potential use-after-free in libaudio was fixed by disabling the AAudio backend when running on Android API below version 30. *This bug only affects Firefox for Android. Other versions of Firefox are unaffected.* This vulnerability affe…

▾ Twilightmozilla · firefox_mobileEPSS 0.60%via NVD
CVE-2023-35823High· 7.0
3y ago

An issue was discovered in the Linux kernel before 6.3.2

An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in saa7134_finidev in drivers/media/pci/saa7134/saa7134-core.c.

▾ Twilightlinux · linux_kernelEPSS 0.20%via NVD
CVE-2023-29543High· 8.8
3y ago

An attacker could have caused memory corruption and a potentially exploitable use-after-free of a pointer in a global object's debugger vector

An attacker could have caused memory corruption and a potentially exploitable use-after-free of a pointer in a global object's debugger vector. This vulnerability affects Firefox for Android < 112, Firefox < 112, and Focus for Android < …

▾ Twilightmozilla · firefoxEPSS 0.52%via NVD
CVE-2023-29536High· 8.8
3y ago

An attacker could cause the memory manager to incorrectly free a pointer that addresses attacker-controlled memory, resulting in an assertion, memory corruption, or a potentially exploitable crash

An attacker could cause the memory manager to incorrectly free a pointer that addresses attacker-controlled memory, resulting in an assertion, memory corruption, or a potentially exploitable crash. This vulnerability affects Firefox < 11…

▾ Twilightmozilla · firefoxEPSS 0.70%via NVD
CVE-2023-2235High· 7.8
3y ago

A use-after-free vulnerability in the Linux Kernel Performance Events system can be exploited to achieve local privilege escalation. The perf_group_detach function did not check the event's siblings' attach_state before calling add_ev…

A use-after-free vulnerability in the Linux Kernel Performance Events system can be exploited to achieve local privilege escalation. The perf_group_detach function did not check the event's siblings' attach_state before calling add_ev…

▾ Twilightlinux · linux_kernelEPSS 0.25%via NVD
CVE-2023-1829High· 7.8PoC
3y ago

A use-after-free vulnerability in the Linux Kernel traffic control index filter (tcindex) can be exploited to achieve local privilege escalation. The tcindex_delete function which does not properly deactivate filters in case of a perfect…

A use-after-free vulnerability in the Linux Kernel traffic control index filter (tcindex) can be exploited to achieve local privilege escalation. The tcindex_delete function which does not properly deactivate filters in case of a perfect…

▾ Midnightlinux · linux_kernelEPSS 1.1%via NVD
CVE-2023-1281High· 7.8PoC
3y ago

Use After Free vulnerability in Linux kernel traffic control index filter (tcindex) allows Privilege Escalation. The imperfect hash area can be updated while packets are traversing, which will cause a use-after-free when 'tcf_exts_exec()…

Use After Free vulnerability in Linux kernel traffic control index filter (tcindex) allows Privilege Escalation. The imperfect hash area can be updated while packets are traversing, which will cause a use-after-free when 'tcf_exts_exec()…

▾ Midnightlinux · linux_kernelEPSS 0.30%via NVD
CVE-2023-1118High· 7.8
3y ago

A flaw use after free in the Linux kernel integrated infrared receiver/transceiver driver was found in the way user detaching rc device

A flaw use after free in the Linux kernel integrated infrared receiver/transceiver driver was found in the way user detaching rc device. A local user could use this flaw to crash the system or potentially escalate their privileges on the…

▾ TwilightEPSS 0.28%via CVEORG
CVE-2022-4696High· 7.8
3y ago

There exists a use-after-free vulnerability in the Linux kernel through io_uring and the IORING_OP_SPLICE operation

There exists a use-after-free vulnerability in the Linux kernel through io_uring and the IORING_OP_SPLICE operation. If IORING_OP_SPLICE is missing the IO_WQ_WORK_FILES flag, which signals that the operation won't use current->nsproxy, s…

▾ Twilightnetapp · h410s_firmwareEPSS 0.43%via NVD
CVE-2022-26486Critical· 9.6CISA KEV0day
3y ago

An unexpected message in the WebGPU IPC framework could lead to a use-after-free and exploitable sandbox escape

An unexpected message in the WebGPU IPC framework could lead to a use-after-free and exploitable sandbox escape. We have had reports of attacks in the wild abusing this flaw. This vulnerability affects Firefox < 97.0.2, Firefox ESR < 91.…

▾ Hadalmozilla · firefoxEPSS 2.3%via NVD
CVE-2022-26485High· 8.8CISA KEV0dayPoC
3y ago

Removing an XSLT parameter during processing could have lead to an exploitable use-after-free

Removing an XSLT parameter during processing could have lead to an exploitable use-after-free. We have had reports of attacks in the wild abusing this flaw. This vulnerability affects Firefox < 97.0.2, Firefox ESR < 91.6.1, Firefox for A…

▾ Abyssalmozilla · firefoxEPSS 14%via NVD
CVE-2022-3591High· 7.8
3y ago

Use After Free in GitHub repository vim/vim prior to 9.0.0789.

Use After Free in GitHub repository vim/vim prior to 9.0.0789.

▾ Twilightneovim · neovimEPSS 0.39%via NVD
CVE-2022-45884High· 7.0
3y ago

An issue was discovered in the Linux kernel through 6.0.9

An issue was discovered in the Linux kernel through 6.0.9. drivers/media/dvb-core/dvbdev.c has a use-after-free, related to dvb_register_device dynamically allocating fops.

▾ Twilightlinux · linux_kernelEPSS 0.33%via NVD
CVE-2022-3636Medium· 5.5
3y ago

A vulnerability was identified in Linux Kernel 33fc42de33278b2b3ec6f3390512987bc29a62b7

A vulnerability was identified in Linux Kernel 33fc42de33278b2b3ec6f3390512987bc29a62b7. This affects the function __mtk_ppe_check_skb of the file drivers/net/ethernet/mediatek/mtk_ppe.c of the component Ethernet Handler. Such manipulati…

▾ Sunlitlinux · linux_kernelEPSS 0.35%via NVD
CVE-2022-3534Medium· 5.5
3y ago

A vulnerability has been found in Linux Kernel up to 5.10.162/5.15.85/6.0.15/6.1.1

A vulnerability has been found in Linux Kernel up to 5.10.162/5.15.85/6.0.15/6.1.1. The impacted element is the function btf_dump_name_dups of the file tools/lib/bpf/btf_dump.c of the component libbpf. The manipulation leads to use after…

▾ Sunlitlinux · linux_kernelEPSS 0.91%via NVD
CVE-2022-3297High· 7.8
4y ago

Use After Free in GitHub repository vim/vim prior to 9.0.0579.

Use After Free in GitHub repository vim/vim prior to 9.0.0579.

▾ Twilightneovim · neovimEPSS 0.52%via NVD
CVE-2022-3256High· 7.8
4y ago

Use After Free in GitHub repository vim/vim prior to 9.0.0530.

Use After Free in GitHub repository vim/vim prior to 9.0.0530.

▾ Twilightneovim · neovimEPSS 0.49%via NVD
CVE-2022-3134High· 7.8
4y ago

Use After Free in GitHub repository vim/vim prior to 9.0.0389.

Use After Free in GitHub repository vim/vim prior to 9.0.0389.

▾ Twilightneovim · neovimEPSS 0.56%via NVD
CVE-2022-3037High· 7.8
4y ago

Use After Free in GitHub repository vim/vim prior to 9.0.0322.

Use After Free in GitHub repository vim/vim prior to 9.0.0322.

▾ Twilightneovim · neovimEPSS 0.53%via NVD
CVE-2022-1199High· 7.5
4y ago

A flaw was found in the Linux kernel

A flaw was found in the Linux kernel. This flaw allows an attacker to crash the Linux kernel by simulating amateur radio from the user space, resulting in a null-ptr-deref vulnerability and a use-after-free vulnerability.

▾ Twilightnetapp · active_iq_unified_managerEPSS 2.0%via NVD
CVE-2022-1734High· 7.0
4y ago

A flaw in Linux Kernel found in nfcmrvl_nci_unregister_dev() in drivers/nfc/nfcmrvl/main.c can lead to use after free both read or write when non synchronized between cleanup routine and firmware download routine.

A flaw in Linux Kernel found in nfcmrvl_nci_unregister_dev() in drivers/nfc/nfcmrvl/main.c can lead to use after free both read or write when non synchronized between cleanup routine and firmware download routine.

▾ Twilightlinux · linux_kernelEPSS 0.53%via NVD
CVE-2022-30065High· 7.8
4y ago

A use-after-free in Busybox 1.35-x's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the copyvar function.

A use-after-free in Busybox 1.35-x's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the copyvar function.

▾ Twilightbusybox · busyboxEPSS 1.3%via NVD
CVE-2022-1055High· 7.8
4y ago

A use-after-free exists in the Linux Kernel in tc_new_tfilter that could allow a local attacker to gain privilege escalation

A use-after-free exists in the Linux Kernel in tc_new_tfilter that could allow a local attacker to gain privilege escalation. The exploit requires unprivileged user namespaces. We recommend upgrading past commit 04c2a47ffb13c29778e2a14e4…

▾ Twilightlinux · linux_kernelEPSS 0.50%via NVD
CVE-2022-1011High· 7.8PoC
4y ago

A use-after-free flaw was found in the Linux kernel’s FUSE filesystem in the way a user triggers write()

A use-after-free flaw was found in the Linux kernel’s FUSE filesystem in the way a user triggers write(). This flaw allows a local user to gain unauthorized access to data from the FUSE filesystem, resulting in privilege escalation.

▾ Midnightredhat · build_of_quarkusEPSS 1.2%via NVD
CVE-2021-34486High· 7.8CISA KEVPoC
5y ago

Windows Event Tracing Elevation of Privilege Vulnerability

Windows Event Tracing Elevation of Privilege Vulnerability

▾ Abyssalmicrosoft · windows_10_1809EPSS 9.3%via NVD
CVE-2021-34498High· 7.80day
5y ago

Windows GDI Elevation of Privilege Vulnerability

Windows GDI Elevation of Privilege Vulnerability

▾ Abyssalmicrosoft · windows_10EPSS 1.0%via NVD
CVE-2021-36081High· 7.8
5y ago

Tesseract OCR 5.0.0-alpha-20201231 has a one_ell_conflict use-after-free during a strpbrk call.

Tesseract OCR 5.0.0-alpha-20201231 has a one_ell_conflict use-after-free during a strpbrk call.

▾ Twilighttesseract-ocr · tesseract_ocrEPSS 0.89%via NVD
CWE-416 vulnerabilities (CVEs) — page 36 · VulnSea