Vulnerability index

Browse CVEs

810 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Double FreeCWE-415 × clear
Software Guard Extensions Sdk HIGH 7.1
CVE-2019-0122

Double free in Intel(R) SGX SDK for Linux before version 2.2 and Intel(R) SGX SDK for Windows before version 2.1 may allow an authenticated user to p…

Fix: 2.1 / 2.2+
Fix from $1,950 2019-03-14
Debian Linux HIGH 7.8
CVE-2019-1999

In binder_alloc_free_page of binder_alloc.c, there is a possible double free due to improper locking. This could lead to local escalation of privileg…

No fix yet
Fix from $1,950 2019-02-28
Debian Linux CRITICAL 9.8
CVE-2019-6978

The GD Graphics Library (aka LibGD) 2.2.5 has a double free in the gdImage*Ptr() functions in gd_gif_out.c, gd_jpeg.c, and gd_wbmp.c. NOTE: PHP is un…

Patch available
Fix from $2,300 2019-01-28
Recutils MEDIUM 6.5
CVE-2019-6455

An issue was discovered in GNU Recutils 1.8. There is a double-free problem in the function rec_mset_elem_destroy() in the file rec-mset.c.

No fix yet
Fix from $1,600 2019-01-16
Debian Linux HIGH 8.8
CVE-2018-15518

QXmlStream in Qt 5.x before 5.11.3 has a double-free or corruption during parsing of a specially crafted illegal XML document.

Fix: 5.11.3+
Fix from $1,950 2018-12-26
Libxls MEDIUM 6.5
CVE-2018-20450

The read_MSAT function in ole.c in libxls 1.4.0 has a double free that allows attackers to cause a denial of service (application crash) via a crafte…

No fix yet
Fix from $1,600 2018-12-25
Debian Linux HIGH 8.8
CVE-2018-1000877

libarchive version commit 416694915449219d505531b1096384f3237dd6cc onwards (release v3.1.0 onwards) contains a CWE-415: Double Free vulnerability in …

Fix: 3.4.0+
Fix from $1,950 2018-12-20
Android HIGH 7.8
CVE-2018-11987

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, if there is an unlikely memory alloc failu…

Patch available
Fix from $1,950 2018-12-20
Android HIGH 7.8
CVE-2018-9553

In MasteringMetadata::Parse of mkvparser.cc there is a possible double free due to an insecure default value. This could lead to remote code executio…

Patch available
Fix from $1,950 2018-12-06
Ubuntu Linux MEDIUM 6.5
CVE-2018-16841

Samba from version 4.3.0 and before versions 4.7.12, 4.8.7 and 4.9.3 are vulnerable to a denial of service. When configured to accept smart-card auth…

Fix: 4.7.12 / 4.8.7+
Fix from $1,600 2018-11-28
Android HIGH 7.8
CVE-2018-11918

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, memory allocated is automatically released…

Patch available
Fix from $1,950 2018-11-27
Android HIGH 7.8
CVE-2018-11823

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, freeing device memory in driver probe fail…

Patch available
Fix from $1,950 2018-11-27
Android CRITICAL 9.8
CVE-2018-9356

In bnep_data_ind of bnep_main.c, there is a possible remote code execution due to a double free. This could lead to remote code execution with no add…

Patch available
Fix from $2,300 2018-11-06
Ubuntu Linux HIGH 7.8
CVE-2018-9415

In driver_override_store and driver_override_show of bus.c, there is a possible double free due to improper locking. This could lead to local escalat…

Patch available
Fix from $1,950 2018-11-06
Ubuntu Linux CRITICAL 9.8
CVE-2018-18751

An issue was discovered in GNU gettext 0.19.8. There is a double free in default_add_message in read-catalog.c, related to an invalid free in po_gram…

No fix yet
Fix from $2,300 2018-10-29
Debian Linux HIGH 7.8
CVE-2018-18718

An issue was discovered in gThumb through 3.6.2. There is a double-free vulnerability in the add_themes_from_dir method in dlg-contact-sheet.c becaus…

Fix: after 3.6.2
Fix from $1,950 2018-10-29
Sd 425 Firmware HIGH 7.8
CVE-2017-18297

Double memory free while closing TEE SE API Session management in Snapdragon Mobile in version SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 820.

Mitigation only
Fix from $1,950 2018-10-23
Acrobat Dc HIGH 7.8
CVE-2018-12841

Adobe Acrobat and Reader versions 2018.011.20063 and earlier, 2017.011.30102 and earlier, and 2015.006.30452 and earlier have a double free vulnerabi…

Fix: after 18.011.20063
Fix from $1,950 2018-10-12
Ios Xe MEDIUM 6.8
CVE-2018-0469

A vulnerability in the web user interface of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to rel…

Mitigation only
Fix from $1,600 2018-10-05
Android HIGH 7.8
CVE-2018-9513

In copy_process of fork.c, there is possible memory corruption due to a double free. This could lead to local escalation of privilege with no additio…

Mitigation only
Fix from $1,950 2018-10-02
Atlantis Word Processor HIGH 7.8
CVE-2018-4000

An exploitable double-free vulnerability exists in the Office Open XML parser of Atlantis Word Processor, version 3.2.5.0. A specially crafted docume…

No fix yet
Fix from $1,950 2018-10-01
Fedora CRITICAL 9.8
CVE-2018-17825

An issue was discovered in AdPlug 2.3.1. There are several double-free vulnerabilities in the CEmuopl class in emuopl.cpp because of a destructor's t…

No fix yet
Fix from $2,300 2018-10-01
Mdm9206 Firmware HIGH 8.8
CVE-2018-11982

In Snapdragon (Mobile, Wear) in version MDM9206, MDM9607, MDM9635M, MDM9640, MDM9645, MDM9655, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, …

Mitigation only
Fix from $1,950 2018-09-20
Android HIGH 7.8
CVE-2018-11840

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while processing the WLAN driver command …

Patch available
Fix from $1,950 2018-09-18
Android HIGH 7.8
CVE-2018-11276

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, double free of memory allocation is possi…

Patch available
Fix from $1,950 2018-09-18
Android HIGH 7.8
CVE-2018-11270

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, memory allocated with devm_kzalloc is aut…

Patch available
Fix from $1,950 2018-09-18
Android HIGH 7.8
CVE-2018-11273

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, 'voice_svc_dev' is allocated as a device-…

Patch available
Fix from $1,950 2018-09-18
Soundtouch HIGH 8.8
CVE-2018-17097

The WavFileBase class in WavFile.cpp in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (double free) or possibly…

No fix yet
Fix from $1,950 2018-09-16
Enterprise Linux Aus HIGH 7.5
CVE-2018-14638

A flaw was found in 389-ds-base before version 1.3.8.4-13. The process ns-slapd crashes in delete_passwdPolicy function when persistent search connec…

Fix: 1.3.8.4+
Fix from $1,950 2018-09-14
Opensc MEDIUM 6.6
CVE-2018-16424

A double free when handling responses in read_file in tools/egk-tool.c (aka the eGK card tool) in OpenSC before 0.19.0-rc1 could be used by attackers…

Fix: after 0.18.0
Fix from $1,600 2018-09-04