Vulnerability index

Browse CVEs

810 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Double FreeCWE-415 × clear
Fedora CRITICAL 9.8
CVE-2024-22097

A double-free vulnerability exists in the BrainVision Header Parsing functionality of The Biosig Project libbiosig Master Branch (ab0ee111) and 2.5.0…

No fix yet
Fix from $2,300 2024-02-20
Uc Tcp Ip CRITICAL 9.1
CVE-2023-38562

A double-free vulnerability exists in the IP header loopback parsing functionality of Weston Embedded uC-TCP-IP v3.06.01. A specially crafted set of …

No fix yet
Fix from $2,300 2024-02-20
Junos HIGH 7.5
CVE-2024-21606

A Double Free vulnerability in the flow processing daemon (flowd) of Juniper Networks Junos OS on SRX Series allows a network-based, unauthenticated …

Fix: 20.4+
Fix from $1,950 2024-01-12
Linux Kernel MEDIUM 5.5
CVE-2023-1032

The Linux kernel io_uring IORING_OP_SOCKET operation contained a double free in function __sys_socket_file() in file net/socket.c. This issue was int…

Fix: 6.3+
Fix from $1,600 2024-01-08
Linux Kernel HIGH 7.8
CVE-2022-2588EPSS 6%

It was discovered that the cls_route filter implementation in the Linux kernel would not remove an old filter from the hashtable before freeing it if…

Fix: 4.9.326 / 4.14.291+
Fix from $1,950 2024-01-08
Aqt1000 Firmware HIGH 7.8
CVE-2023-28583

Memory corruption when IPv6 prefix timer object`s lifetime expires which are created while Netmgr daemon gets an IPv6 address.

Mitigation only
Fix from $1,950 2024-01-02
Webassembly Micro Runtime MEDIUM 5.5
CVE-2023-52284

Bytecode Alliance wasm-micro-runtime (aka WebAssembly Micro Runtime or WAMR) before 1.3.0 can have an "double free or corruption" error for a valid W…

Fix: 1.3.0+
Fix from $1,600 2023-12-31
Fedora MEDIUM 5.5
CVE-2023-4256

Within tcpreplay's tcprewrite, a double free vulnerability has been identified in the tcpedit_dlt_cleanup() function within plugins/dlt_plugins.c. Th…

No fix yet
Fix from $1,600 2023-12-21
Slurm CRITICAL 9.8
CVE-2023-49937

An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. Because of a double free, attackers can cause a denial of service or possibly…

Fix: 22.05.12 / 23.02.7+
Fix from $2,300 2023-12-14
Fortios HIGH 8.8
CVE-2023-41678

A double free in Fortinet FortiOS versions 7.0.0 through 7.0.5, FortiPAM version 1.0.0 through 1.0.3, 1.1.0 through 1.1.1 allows attacker to execute …

Mitigation only
Fix from $1,950 2023-12-13
Android HIGH 7.8
CVE-2023-40103

In multiple locations, there is a possible way to corrupt memory due to a double free. This could lead to local escalation of privilege with no addit…

Patch available
Fix from $1,950 2023-12-04
Gpac HIGH 7.8
CVE-2023-48013

GPAC v2.3-DEV-rev566-g50c2ab06f-master was discovered to contain a double free via the gf_filterpacket_del function at /gpac/src/filter_core/filter.c.

Patch available
Fix from $1,950 2023-11-15
Stb Image.h MEDIUM 6.5
CVE-2023-43281

Double Free vulnerability in Nothings Stb Image.h v.2.28 allows a remote attacker to cause a denial of service via a crafted file to the stbi_load_gi…

No fix yet
Fix from $1,600 2023-10-25
Stb Image.h HIGH 8.8
CVE-2023-45664

stb_image is a single file MIT licensed library for processing images. A crafted image file can trigger `stbi__load_gif_main_outofmem` attempt to dou…

Mitigation only
Fix from $1,950 2023-10-21
Stb Image.h CRITICAL 9.8
CVE-2023-45666

stb_image is a single file MIT licensed library for processing images. It may look like `stbi__load_gif_main` doesn’t give guarantees about the cont…

Mitigation only
Fix from $2,300 2023-10-21
Stb Vorbis.c HIGH 7.8
CVE-2023-45679

stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger memory allocation failure in `start_deco…

Mitigation only
Fix from $1,950 2023-10-21
Fast Dds HIGH 7.5
CVE-2023-42459

Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group). In affected versions specific …

Fix: 2.6.7 / 2.10.3+
Fix from $1,950 2023-10-16
Azure Rtos Guix Studio HIGH 7.8
CVE-2023-36418

Azure RTOS GUIX Studio Remote Code Execution Vulnerability

Fix: 6.3.0+
Fix from $1,950 2023-10-10
Odbc Driver For Sql Server HIGH 7.8
CVE-2023-36420

Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability

Fix: 17.10.5.1 / 18.3.2.1+
Fix from $1,950 2023-10-10
Android MEDIUM 6.7
CVE-2023-32824

In rpmb , there is a possible double free due to improper locking. This could lead to local escalation of privilege with System execution privileges …

Mitigation only
Fix from $1,600 2023-10-02
Exynos 2200 Firmware MEDIUM 5.5
CVE-2023-41911

Samsung Mobile Processor Exynos 2200 allows a GPU Double Free (issue 1 of 2).

Mitigation only
Fix from $1,600 2023-09-28
Kostac Plc HIGH 7.8
CVE-2023-41374

Double free issue exists in Kostac PLC Programming Software Version 1.6.11.0 and earlier. Arbitrary code may be executed by having a user open a spec…

Fix: 1.6.10.0+
Fix from $1,950 2023-09-20
Op Tee MEDIUM 6.7
CVE-2023-41325

OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone…

Fix: 3.22.0+
Fix from $1,600 2023-09-15
Linux Kernel HIGH 7.1
CVE-2023-4389

A flaw was found in btrfs_get_root_ref in fs/btrfs/disk-io.c in the btrfs filesystem in the Linux Kernel due to a double decrement of the reference c…

Fix: 5.10.112 / 5.15.35+
Fix from $1,950 2023-08-16
Kerberos 5 HIGH 8.8
CVE-2023-39975

kdc/do_tgs_req.c in MIT Kerberos 5 (aka krb5) 1.21 before 1.21.2 has a double free that is reachable if an authenticated user can trigger an authoriz…

Fix: 1.21.2+
Fix from $1,950 2023-08-16
365 Apps HIGH 7.8
CVE-2023-35371

Microsoft Office Remote Code Execution Vulnerability

Patch available
Fix from $1,950 2023-08-08
Linux Kernel MEDIUM 6.7
CVE-2023-33952

A double-free vulnerability was found in handling vmw_buffer_object objects in the vmwgfx driver in the Linux kernel. This issue occurs due to the la…

Fix: after 6.3.9
Fix from $1,600 2023-07-24
Xhttp HIGH 7.5
CVE-2023-38434

xHTTP 72f812d has a double free in close_connection in xhttp.c via a malformed HTTP request method.

No fix yet
Fix from $1,950 2023-07-18
365 Apps HIGH 7.8
CVE-2023-33161

Microsoft Excel Remote Code Execution Vulnerability

Patch available
Fix from $1,950 2023-07-11
315 5g Firmware MEDIUM 6.8
CVE-2023-21629

Memory Corruption in Modem due to double free while parsing the PKCS15 sim files.

Mitigation only
Fix from $1,600 2023-07-04