Vulnerability index

Browse CVEs

810 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Double FreeCWE-415 × clear
Office HIGH 7.8
CVE-2020-17019

Microsoft Excel Remote Code Execution Vulnerability

Patch available
Fix from $1,950 2020-11-11
Azure Sphere HIGH 8.1
CVE-2020-16970

Azure Sphere Unsigned Code Execution Vulnerability

Fix: 20.07+
Fix from $1,950 2020-11-11
Animate HIGH 7.8
CVE-2020-9747

Adobe Animate version 20.5 (and earlier) is affected by a double free vulnerability when parsing a crafted .fla file, which could result in arbitrary…

Fix: after 20.5
Fix from $1,950 2020-10-21
Junos HIGH 7.5
CVE-2020-1686

On Juniper Networks Junos OS devices, receipt of a malformed IPv6 packet may cause the system to crash and restart (vmcore). This issue can be trigge…

Mitigation only
Fix from $1,950 2020-10-16
Debian Linux HIGH 8.6
CVE-2020-27153

In BlueZ before 5.55, a double free was found in the gatttool disconnect_cb() routine from shared/att.c. A remote attacker could potentially cause a …

Fix: 5.55+
Fix from $1,950 2020-10-15
Libvirt MEDIUM 6.7
CVE-2020-25637

A double free memory issue was found to occur in the libvirt API, in versions before 6.8.0, responsible for requesting information about network inte…

Fix: 6.8.0+
Fix from $1,600 2020-10-06
Virtual Gpu Manager HIGH 7.1
CVE-2020-5988

NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which allocated memory can be freed twice, which may lead to information d…

Fix: 8.5 / 10.4+
Fix from $1,950 2020-10-02
Authoritative CRITICAL 9.8
CVE-2020-24698

An issue was discovered in PowerDNS Authoritative through 4.3.0 when --enable-experimental-gss-tsig is used. A remote, unauthenticated attacker might…

Fix: after 4.3.0
Fix from $2,300 2020-10-02
Apex One HIGH 7.8
CVE-2020-25773

A vulnerability in the Trend Micro Apex One ServerMigrationTool component could allow an attacker to execute arbitrary code on affected products. Use…

Mitigation only
Fix from $1,950 2020-09-29
Android HIGH 7.8
CVE-2020-0392

In getLayerDebugInfo of SurfaceFlinger.cpp, there is a possible code execution due to a double free. This could lead to local escalation of privilege…

Mitigation only
Fix from $1,950 2020-09-17
Gnuplot HIGH 7.8
CVE-2020-25559

gnuplot 5.5 is affected by double free when executing print_set_output. This may result in context-dependent arbitrary code execution.

Patch available
Fix from $1,950 2020-09-16
Apq8009 Firmware HIGH 7.8
CVE-2019-14065

u'Pointer double free in HavenSvc due to not setting the pointer to NULL after freeing it' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consume…

Mitigation only
Fix from $1,950 2020-09-08
Netwide Assembler CRITICAL 9.8
CVE-2020-24978

In NASM 2.15.04rc3, there is a double-free vulnerability in pp_tokline asm/preproc.c. This is fixed in commit 8806c3ca007b84accac21dd88b900fb03614ceb…

No fix yet
Fix from $2,300 2020-09-04
Wireshark MEDIUM 6.5
CVE-2020-17498

In Wireshark 3.2.0 to 3.2.5, the Kafka protocol dissector could crash. This was addressed in epan/dissectors/packet-kafka.c by avoiding a double free…

Fix: 3.2.6+
Fix from $1,600 2020-08-13
Android HIGH 7.8
CVE-2020-0241

In NuPlayerStreamListener of NuPlayerStreamListener.cpp, there is possible memory corruption due to a double free. This could lead to local escalatio…

Mitigation only
Fix from $1,950 2020-08-11
Webaccess\/hmi Designer HIGH 7.8
CVE-2020-16217

Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. A double free vulnerability caused by processing specially crafted project files may a…

Fix: after 2.1.9.31
Fix from $1,950 2020-08-06
Junos CRITICAL 9.8
CVE-2020-1647

On Juniper Networks SRX Series with ICAP (Internet Content Adaptation Protocol) redirect service enabled, a double free vulnerability can lead to a D…

Mitigation only
Fix from $2,300 2020-07-17
Net Snmp MEDIUM 6.5
CVE-2019-20892

net-snmp before 5.8.1.pre1 has a double free in usm_free_usmStateReference in snmplib/snmpusm.c via an SNMPv3 GetBulk request. NOTE: this affects net…

Fix: after 5.8
Fix from $1,600 2020-06-25
Mdm9607 Firmware HIGH 7.8
CVE-2019-14091

Double free issue in NPU due to lack of resource locking mechanism to avoid race condition in Snapdragon Auto, Snapdragon Compute, Snapdragon Consume…

Mitigation only
Fix from $1,950 2020-06-22
Sm8150 Firmware HIGH 7.8
CVE-2020-3613

Double free issue in kernel memory mapping due to lack of memory protection mechanism in Snapdragon Compute, Snapdragon Mobile, Snapdragon Voice & Mu…

Mitigation only
Fix from $1,950 2020-06-22
Tcp\/ip HIGH 8.2
CVE-2020-11900EPSS 13%

The Treck TCP/IP stack before 6.0.1.41 has an IPv4 tunneling Double Free.

Fix: 6.0.1.41+
Fix from $1,950 2020-06-17
Ipados HIGH 7.5
CVE-2020-9844

A double free issue was addressed with improved memory management. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5. A remote …

Fix: 10.13.6 / 10.14.6+
Fix from $1,950 2020-06-09
Ipados HIGH 7.8
CVE-2020-9859 KEV

A memory consumption issue was addressed with improved memory handling. This issue is fixed in iOS 13.5.1 and iPadOS 13.5.1, macOS Catalina 10.15.5 S…

Fix: 6.2.6 / 10.15.5+
Fix from $1,950 2020-06-05
Apq8009 Firmware HIGH 7.8
CVE-2020-3610

Possibility of double free of the drawobj that is added to the drawqueue array of the context during IOCTL commands as there is no refcount taken for…

Patch available
Fix from $1,950 2020-06-02
Debian Linux MEDIUM 6.5
CVE-2020-11017

In FreeRDP less than or equal to 2.0.0, by providing manipulated input a malicious client can create a double free condition and crash the server. Th…

Fix: 2.1.0+
Fix from $1,600 2020-05-29
Secure Firewall Threat Defense HIGH 7.5
CVE-2020-3179

A vulnerability in the generic routing encapsulation (GRE) tunnel decapsulation feature of Cisco Firepower Threat Defense (FTD) Software could allow …

Fix: 6.3.0.5 / 6.4.0.6+
Fix from $1,950 2020-05-06
Opensc MEDIUM 6.8
CVE-2019-20792

OpenSC before 0.20.0 has a double free in coolkey_free_private_data because coolkey_add_object in libopensc/card-coolkey.c lacks a uniqueness check.

Fix: 0.20.0+
Fix from $1,600 2020-04-29
Fedora HIGH 7.8
CVE-2020-0081

In finalize of AssetManager.java, there is possible memory corruption due to a double free. This could lead to local escalation of privilege with no …

Mitigation only
Fix from $1,950 2020-04-17
Android HIGH 8.1
CVE-2018-21086

An issue was discovered on Samsung mobile devices with L(5.x), M(6.0), and N(7.x) software. There is a race condition with a resultant double free in…

Mitigation only
Fix from $1,950 2020-04-08
Patch MEDIUM 5.5
CVE-2019-20633

GNU patch through 2.7.6 contains a free(p_line[p_end]) Double Free vulnerability in the function another_hunk in pch.c that can cause a denial of ser…

Fix: after 2.7.6
Fix from $1,600 2020-03-25