Vulnerability index

Browse CVEs

810 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Double FreeCWE-415 × clear
Enterprise Linux Desktop HIGH 7.5
CVE-2021-4091

A double-free was found in the way 389-ds-base handles virtual attributes context in persistent searches. An attacker could send a series of search r…

Fix: 1.3.10.2+
Fix from $1,950 2022-02-18
Linux Kernel HIGH 7.0
CVE-2021-22600 KEVEPSS 6%

A double free bug in packet_set_ring() in net/packet/af_packet.c can be exploited by a local user through crafted syscalls to escalate privileges or …

Fix: 4.14.259 / 4.19.222+
Fix from $1,950 2022-01-26
Big Ip Access Policy Manager HIGH 7.5
CVE-2022-23012

On BIG-IP versions 15.1.x before 15.1.4.1 and 14.1.x before 14.1.4.5, when the HTTP/2 profile is configured on a virtual server, undisclosed requests…

Fix: 14.1.4.5 / 15.1.4.1+
Fix from $1,950 2022-01-25
Gpac MEDIUM 5.5
CVE-2021-40572

The binary MP4Box in Gpac 1.0.1 has a double-free bug in the av1dmx_finalize function in reframe_av1.c, which allows attackers to cause a denial of s…

Patch available
Fix from $1,600 2022-01-13
Gpac MEDIUM 5.5
CVE-2021-40573

The binary MP4Box in Gpac 1.0.1 has a double-free vulnerability in the gf_list_del function in list.c, which allows attackers to cause a denial of se…

Patch available
Fix from $1,600 2022-01-13
Gpac HIGH 7.8
CVE-2021-40574

The binary MP4Box in Gpac from 0.9.0-preview to 1.0.1 has a double-free vulnerability in the gf_text_get_utf8_line function in load_text.c, which all…

Fix: after 1.0.1
Fix from $1,950 2022-01-13
Gpac MEDIUM 5.5
CVE-2021-40569

The binary MP4Box in Gpac through 1.0.1 has a double-free vulnerability in the iloc_entry_del funciton in box_code_meta.c, which allows attackers to …

Fix: after 1.0.1
Fix from $1,600 2022-01-13
Gpac HIGH 7.8
CVE-2021-40570

The binary MP4Box in Gpac 1.0.1 has a double-free vulnerability in the avc_compute_poc function in av_parsers.c, which allows attackers to cause a de…

Patch available
Fix from $1,950 2022-01-13
Gpac HIGH 7.8
CVE-2021-40571

The binary MP4Box in Gpac 1.0.1 has a double-free vulnerability in the ilst_box_read function in box_code_apple.c, which allows attackers to cause a …

Patch available
Fix from $1,950 2022-01-13
Debian Linux MEDIUM 5.5
CVE-2021-37529

A double-free vulnerability exists in fig2dev through 3.28a is affected by: via the free_stream function in readpics.c, which could cause a denial of…

Fix: after 3.2.8a
Fix from $1,600 2022-01-12
Harmonyos HIGH 7.5
CVE-2021-40038

There is a Double free vulnerability in the AOD module in smartphones. Successful exploitation of this vulnerability may affect service integrity.

Fix: 2.0+
Fix from $1,950 2022-01-10
Emui CRITICAL 9.8
CVE-2021-37120

There is a Double free vulnerability in Smartphone.Successful exploitation of this vulnerability may cause a kernel crash or privilege escalation.

No fix yet
Fix from $2,300 2022-01-03
Gpac MEDIUM 5.5
CVE-2021-45288

A Double Free vulnerability exists in filedump.c in GPAC 1.0.1, which could cause a Denail of Service via a crafted file in the MP4Box command.

Patch available
Fix from $1,600 2021-12-21
Debian Linux CRITICAL 9.8
CVE-2021-44732

Mbed TLS before 3.0.1 has a double free in certain out-of-memory conditions, as demonstrated by an mbedtls_ssl_set_session() failure.

Fix: 2.16.12 / 2.28.0+
Fix from $2,300 2021-12-20
Harmonyos HIGH 7.5
CVE-2021-37072

There is a Incorrect Calculation of Buffer Size vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to memory c…

Fix: 2.0+
Fix from $1,950 2021-12-07
Vxworks MEDIUM 6.5
CVE-2021-43268

An issue was discovered in VxWorks 6.9 through 7. In the IKE component, a specifically crafted packet may lead to reading beyond the end of a buffer,…

Fix: after 7.0
Fix from $1,600 2021-11-24
Datafeed Opc Suite HIGH 7.5
CVE-2021-40873

An issue was discovered in Softing Industrial Automation OPC UA C++ SDK before 5.66, and uaToolkit Embedded before 1.40. Remote attackers to cause a …

Fix: 1.40 / 1.73+
Fix from $1,950 2021-11-10
Virtual Gpu HIGH 7.1
CVE-2021-1119

NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where it can double-free a pointer, which may lead to denial …

Fix: 8.9 / 11.6+
Fix from $1,950 2021-10-29
Nitro Pro HIGH 7.8
CVE-2021-21797EPSS 15%

An exploitable double-free vulnerability exists in the JavaScript implementation of Nitro Pro PDF. A specially crafted document can cause a reference…

No fix yet
Fix from $1,950 2021-10-18
Fedora CRITICAL 9.1
CVE-2021-22945EPSS 7%

When sending data to an MQTT server, libcurl <= 7.73.0 and 7.78.0 could in some circumstances erroneously keep a pointer to an already freed memory a…

Fix: after 8.0.26
Fix from $2,300 2021-09-23
Ios Xe HIGH 7.5
CVE-2021-34768

Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Ca…

Mitigation only
Fix from $1,950 2021-09-23
Ios Xe HIGH 7.5
CVE-2021-34769

Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Ca…

Mitigation only
Fix from $1,950 2021-09-23
Ios Xe HIGH 8.6
CVE-2021-1565

Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Software for Cisco Ca…

Mitigation only
Fix from $1,950 2021-09-23
Libredwg HIGH 8.8
CVE-2021-39528

An issue was discovered in libredwg through v0.10.1.3751. dwg_free_MATERIAL_private() in dwg.spec has a double free.

Fix: after 0.10.1.3751
Fix from $1,950 2021-09-20
Apq8017 Firmware HIGH 7.8
CVE-2021-1934

Possible memory corruption due to improper check when application loader object is explicitly destructed while application is unloading in Snapdragon…

Mitigation only
Fix from $1,950 2021-09-09
Ipados HIGH 7.8
CVE-2021-30703

A double free issue was addressed with improved memory management. This issue is fixed in tvOS 14.6, iOS 14.6 and iPadOS 14.6, Security Update 2021-0…

Fix: 7.5 / 11.4+
Fix from $1,950 2021-09-08
Ipados HIGH 7.8
CVE-2021-1875

A double free issue was addressed with improved memory management. This issue is fixed in Security Update 2021-002 Catalina, Security Update 2021-003…

Fix: 7.4 / 11.3+
Fix from $1,950 2021-09-08
Libgd HIGH 7.5
CVE-2021-40145

gdImageGd2Ptr in gd_gd2.c in the GD Graphics Library (aka LibGD) through 2.3.2 has a double free. NOTE: the vendor's position is "The GD2 image forma…

Fix: after 2.3.2
Fix from $1,950 2021-08-26
Video Surveillance 7000 Ip Camera Firmware MEDIUM 6.5
CVE-2021-34734

A vulnerability in the Link Layer Discovery Protocol (LLDP) implementation for the Cisco Video Surveillance 7000 Series IP Cameras firmware could all…

Patch available
Fix from $1,600 2021-08-18
Tensorflow HIGH 7.8
CVE-2021-37652

TensorFlow is an end-to-end open source platform for machine learning. In affected versions the implementation for `tf.raw_ops.BoostedTreesCreateEnse…

Fix: 2.3.4 / 2.4.3+
Fix from $1,950 2021-08-12