Vulnerability index

Browse CVEs

810 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Double FreeCWE-415 × clear
Linux Kernel HIGH 7.8
CVE-2017-18595

An issue was discovered in the Linux kernel before 4.14.11. A double free may be caused by the function allocate_trace_buffer in the file kernel/trac…

Fix: 3.16.55 / 3.18.91+
Fix from $1,950 2019-09-04
Nmap HIGH 7.5
CVE-2017-18594

nse_libssh2.cc in Nmap 7.70 is subject to a denial of service condition due to a double free when an SSH connection fails, as demonstrated by a leadi…

Patch available
Fix from $1,950 2019-08-29
Crossbeam CRITICAL 9.8
CVE-2018-20996

An issue was discovered in the crossbeam crate before 0.4.1 for Rust. There is a double free because of destructor mishandling.

Fix: 0.4.1+
Fix from $2,300 2019-08-26
Smallvec CRITICAL 9.8
CVE-2019-15551

An issue was discovered in the smallvec crate before 0.6.10 for Rust. There is a double free for certain grow attempts with the current capacity.

Fix: 0.6.10+
Fix from $2,300 2019-08-26
Smallvec CRITICAL 9.8
CVE-2018-20991

An issue was discovered in the smallvec crate before 0.6.3 for Rust. The Iterator implementation mishandles destructors, leading to a double free.

Fix: 0.6.3+
Fix from $2,300 2019-08-26
Linux Kernel CRITICAL 9.8
CVE-2019-15504

drivers/net/wireless/rsi/rsi_91x_usb.c in the Linux kernel through 5.2.9 has a Double Free via crafted USB device traffic (which may be remote via us…

Fix: 4.19.74 / 5.2.16+
Fix from $2,300 2019-08-23
Acrobat Dc CRITICAL 9.8
CVE-2019-8044EPSS 14%

Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 2017.011.30143 and earlier, 201…

Fix: 15.006.30499 / 17.011.30144+
Fix from $2,300 2019-08-20
Fedora HIGH 8.8
CVE-2019-2126EPSS 6%

In ParseContentEncodingEntry of mkvparser.cc, there is a possible double free due to a missing reset of a freed pointer. This could lead to remote co…

Mitigation only
Fix from $1,950 2019-08-20
Fedora CRITICAL 9.8
CVE-2019-15151

AdPlug 2.3.1 has a double free in the Cu6mPlayer class in u6m.h.

Patch available
Fix from $2,300 2019-08-18
Windows 10 HIGH 8.8
CVE-2019-1144EPSS 13%

A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts. An attacker who succe…

Patch available
Fix from $1,950 2019-08-14
Emily L29c Firmware MEDIUM 6.3
CVE-2019-5236

Huawei smart phones Emily-L29C with versions of 8.1.0.132a(C432), 8.1.0.135(C782), 8.1.0.154(C10), 8.1.0.154(C461), 8.1.0.154(C635), 8.1.0.156(C185),…

Mitigation only
Fix from $1,600 2019-08-08
Linux Kernel CRITICAL 9.8
CVE-2018-20961EPSS 6%

In the Linux kernel before 4.16.4, a double free vulnerability in the f_midi_set_alt function of drivers/usb/gadget/function/f_midi.c in the f_midi d…

Fix: 4.4.190 / 4.9.96+
Fix from $2,300 2019-08-07
U Boot HIGH 7.8
CVE-2019-13105

Das U-Boot versions 2019.07-rc1 through 2019.07-rc4 can double-free a cached block of data when listing files in a crafted ext4 filesystem.

Patch available
Fix from $1,950 2019-08-06
Vlc Media Player MEDIUM 5.5
CVE-2019-5460

Double Free in VLC versions <= 3.0.6 leads to a crash.

Fix: after 3.0.6
Fix from $1,600 2019-07-30
Credential Helpers MEDIUM 5.5
CVE-2019-1020014

docker-credential-helpers before 0.6.3 has a double free in the List functions.

Fix: 0.6.3+
Fix from $1,600 2019-07-29
Linux Kernel HIGH 7.8
CVE-2019-3896

A double-free can happen in idr_remove_all() in lib/idr.c in the Linux kernel 2.6 branch. An unprivileged local attacker can use this flaw for a priv…

Fix: after 2.6.39.4
Fix from $1,950 2019-06-19
Vlc Media Player CRITICAL 9.8
CVE-2019-12874

An issue was discovered in zlib_decompress_extra in modules/demux/mkv/util.cpp in VideoLAN VLC media player 3.x through 3.0.7. The Matroska demuxer, …

Fix: after 3.0.7
Fix from $2,300 2019-06-18
Radare2 MEDIUM 5.5
CVE-2019-12865

In radare2 through 3.5.1, cmd_mount in libr/core/cmd_mount.c has a double free for the ms command.

Fix: after 3.5.1
Fix from $1,600 2019-06-17
Ipq8064 Firmware MEDIUM 5.5
CVE-2018-11947

The txrx stats req might be double freed in the pdev detach when the host driver is unloading in Snapdragon Auto, Snapdragon Consumer Electronics Con…

Patch available
Fix from $1,600 2019-06-14
Android HIGH 7.8
CVE-2019-2096

In EffectRelease of EffectBundle.cpp, there is a possible memory corruption due to a double free. This could lead to local escalation of privilege in…

Mitigation only
Fix from $1,950 2019-06-07
Mate 10 Firmware MEDIUM 5.5
CVE-2019-5219

There is a double free vulnerability on certain drivers of Huawei Mate10 smartphones versions earlier than ALP-AL00B 9.0.0.181(C00E87R2P20T8). An att…

Mitigation only
Fix from $1,600 2019-06-06
Mate 10 Firmware MEDIUM 5.5
CVE-2019-5305

The image processing module of some Huawei Mate 10 smartphones versions before ALP-L29 9.0.0.159(C185) has a memory double free vulnerability. An att…

Mitigation only
Fix from $1,600 2019-06-06
Acrobat Dc CRITICAL 9.8
CVE-2019-7080

Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and …

Fix: 15.006.30475 / 17.011.30120+
Fix from $2,300 2019-05-24
Mdm9150 Firmware HIGH 7.8
CVE-2019-2247

Possibility of double free issue while running multiple instances of smp2p test because of proper protection is missing while using global variable i…

Patch available
Fix from $1,950 2019-05-24
Libwebp HIGH 7.5
CVE-2016-9969

In libwebp 0.5.1, there is a double free bug in libwebpmux.

No fix yet
Fix from $1,950 2019-05-23
Acrobat Dc CRITICAL 9.8
CVE-2019-7784EPSS 7%

Adobe Acrobat and Reader versions 2019.010.20100 and earlier, 2019.010.20099 and earlier, 2017.011.30140 and earlier, 2017.011.30138 and earlier, 201…

Fix: after 19.010.20100
Fix from $2,300 2019-05-22
Sdl2 Image HIGH 8.8
CVE-2019-12219

An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunction with libSDL2_image.a in SDL2_image 2.0.4. There…

No fix yet
Fix from $1,950 2019-05-20
Npcap HIGH 7.8
CVE-2019-11490

An issue was discovered in Npcap 0.992. Sending a malformed .pcap file with the loopback adapter using either pcap_sendqueue_queue() or pcap_sendqueu…

Patch available
Fix from $1,950 2019-04-24
Fedora HIGH 7.5
CVE-2019-3829EPSS 59%

A vulnerability was found in gnutls versions from 3.5.8 before 3.6.7. A memory corruption (double free) vulnerability in the certificate verification…

Fix: 3.6.7+
Fix from $1,950 2019-03-27
Smart Firewall CRITICAL 9.8
CVE-2018-3985

An exploitable double free vulnerability exists in the mdnscap binary of the CUJO Smart Firewall. When parsing mDNS packets, a memory space is freed …

No fix yet
Fix from $2,300 2019-03-21