Vulnerability index

Browse CVEs

809 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Double FreeCWE-415 × clear
Openharmony HIGH 7.8
CVE-2024-47404

in OpenHarmony v4.1.0 and prior versions allow a local attacker cause the common permission is upgraded to root and sensitive information leak throug…

Fix: after 4.1
Fix from $1,950 2024-11-05
Mosquitto MEDIUM 6.5
CVE-2024-3935

In Eclipse Mosquito, versions from 2.0.0 through 2.0.18, if a Mosquitto broker is configured to create an outgoing bridge connection, and that bridge…

Fix: 2.0.19+
Fix from $1,600 2024-10-30
Linux Kernel HIGH 7.8
CVE-2024-50071

In the Linux kernel, the following vulnerability has been resolved: pinctrl: nuvoton: fix a double free in ma35_pinctrl_dt_node_to_map_func() 'new_…

Fix: 6.11.5+
Fix from $1,950 2024-10-29
Android HIGH 7.4
CVE-2024-44098

In lwis_device_event_states_clear_locked of lwis_event.c, there is a possible privilege escalation due to a double free. This could lead to local esc…

Mitigation only
Fix from $1,950 2024-10-25
Debian Linux HIGH 7.8
CVE-2024-50055

In the Linux kernel, the following vulnerability has been resolved: driver core: bus: Fix double free in driver API bus_register() For bus_register…

Fix: 5.4.291 / 5.10.231+
Fix from $1,950 2024-10-21
Debian Linux HIGH 7.8
CVE-2024-49989

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: fix double free issue during amdgpu module unload Flexible end…

Fix: 5.15.181 / 6.1.129+
Fix from $1,950 2024-10-21
Linux Kernel HIGH 7.8
CVE-2024-49983

In the Linux kernel, the following vulnerability has been resolved: ext4: drop ppath from ext4_ext_replay_update_ex() to avoid double-free When cal…

Fix: 5.10.227 / 5.15.168+
Fix from $1,950 2024-10-21
Debian Linux HIGH 7.8
CVE-2024-49882

In the Linux kernel, the following vulnerability has been resolved: ext4: fix double brelse() the buffer of the extents path In ext4_ext_try_to_mer…

Fix: 4.19.323 / 5.4.285+
Fix from $1,950 2024-10-21
Linux Kernel HIGH 7.8
CVE-2024-49853

In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Fix double free in OPTEE transport Channels can be shared b…

Fix: 6.1.113 / 6.6.54+
Fix from $1,950 2024-10-21
Unclassified MEDIUM 5.9
CVE-2024-3187

This issue tracks two CWE-416 Use After Free (UAF) and one CWE-415 Double Free vulnerabilities in Goahead versions <= 6.0.0. These are caused by JST …

Mitigation only
Fix from $1,600 2024-10-17
Picotls CRITICAL 9.8
CVE-2024-45402

Picotls is a TLS protocol library that allows users select different crypto backends based on their use case. When parsing a spoofed TLS handshake me…

Fix: 2024-10-10+
Fix from $2,300 2024-10-11
Windows 10 1507 HIGH 7.8
CVE-2024-43514

Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability

Fix: 10.0.10240.20796 / 10.0.14393.7428+
Fix from $1,950 2024-10-08
Wsa8835 Firmware MEDIUM 6.7
CVE-2024-23379

Memory corruption while unmapping the fastrpc map when two threads can free the same map in concurrent scenario.

Mitigation only
Fix from $1,600 2024-10-07
Meraki Mx65 Firmware HIGH 7.5
CVE-2024-20498

Multiple vulnerabilities in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an un…

Fix: 18.211.2+
Fix from $1,950 2024-10-02
Linux Kernel HIGH 7.8
CVE-2024-46736

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double put of @cfile in smb2_rename_path() If smb2_set_path_at…

Fix: 6.6.51 / 6.10.10+
Fix from $1,950 2024-09-18
Linux Kernel HIGH 7.8
CVE-2024-46741

In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: Fix double free of 'buf' in error path smatch warning: drivers/m…

Fix: 6.6.51 / 6.10.10+
Fix from $1,950 2024-09-18
Linux Kernel HIGH 7.8
CVE-2024-46687

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix a use-after-free when hitting errors inside btrfs_submit_chunk() [BU…

Fix: 6.6.49 / 6.10.8+
Fix from $1,950 2024-09-13
Linux Kernel HIGH 7.8
CVE-2024-46673

In the Linux kernel, the following vulnerability has been resolved: scsi: aacraid: Fix double-free on probe failure aac_probe_one() calls hardware-…

Fix: 4.19.321 / 5.4.283+
Fix from $1,950 2024-09-13
Windows 10 1507 HIGH 7.8
CVE-2024-38247

Windows Graphics Component Elevation of Privilege Vulnerability

Fix: 10.0.10240.20766 / 10.0.14393.7336+
Fix from $1,950 2024-09-10
Linux Kernel HIGH 7.8
CVE-2022-48919

In the Linux kernel, the following vulnerability has been resolved: cifs: fix double free race when mount fails in cifs_get_root() When cifs_get_ro…

Fix: 4.9.305 / 4.14.270+
Fix from $1,950 2024-08-22
Linux Kernel HIGH 7.8
CVE-2022-48892

In the Linux kernel, the following vulnerability has been resolved: sched/core: Fix use-after-free bug in dup_user_cpus_ptr() Since commit 07ec77a1…

Fix: 5.15.89 / 6.1.7+
Fix from $1,950 2024-08-21
Azure Iot Hub Device Client Sdk HIGH 7.0
CVE-2024-38157

Azure IoT SDK Remote Code Execution Vulnerability

Fix: 1.12.1+
Fix from $1,950 2024-08-13
Linux Kernel MEDIUM 5.5
CVE-2024-42234

In the Linux kernel, the following vulnerability has been resolved: mm: fix crashes from deferred split racing folio migration Even on 6.10-rc6, I'…

Fix: 6.9.10+
Fix from $1,600 2024-08-07
Vim MEDIUM 5.3
CVE-2024-41957

Vim is an open source command line text editor. Vim < v9.1.0647 has double free in src/alloc.c:616. When closing a window, the corresponding tagstack…

Fix: 9.1.0647+
Fix from $1,600 2024-08-01
Linux Kernel HIGH 7.8
CVE-2024-42147

In the Linux kernel, the following vulnerability has been resolved: crypto: hisilicon/debugfs - Fix debugfs uninit process issue During the zip pro…

Fix: 6.1.98 / 6.6.39+
Fix from $1,950 2024-07-30
Linux Kernel HIGH 7.8
CVE-2024-42138

In the Linux kernel, the following vulnerability has been resolved: mlxsw: core_linecards: Fix double memory deallocation in case of invalid INI fil…

Fix: 6.1.98 / 6.6.39+
Fix from $1,950 2024-07-30
Linux Kernel MEDIUM 5.5
CVE-2023-52888

In the Linux kernel, the following vulnerability has been resolved: media: mediatek: vcodec: Only free buffer VA that is not NULL In the MediaTek v…

Fix: 6.6.39 / 6.9.9+
Fix from $1,600 2024-07-30
Linux Kernel HIGH 7.8
CVE-2024-41087

In the Linux kernel, the following vulnerability has been resolved: ata: libata-core: Fix double free on error If e.g. the ata_port_alloc() call in…

Fix: 4.19.317 / 5.4.279+
Fix from $1,950 2024-07-29
Debian Linux HIGH 7.8
CVE-2024-41073

In the Linux kernel, the following vulnerability has been resolved: nvme: avoid double free special payload If a discard request needs to be retrie…

Fix: 5.10.237 / 5.15.164+
Fix from $1,950 2024-07-29
Linux Kernel HIGH 7.8
CVE-2024-41046

In the Linux kernel, the following vulnerability has been resolved: net: ethernet: lantiq_etop: fix double free in detach The number of the current…

Fix: 4.19.318 / 5.4.280+
Fix from $1,950 2024-07-29