Vulnerability index

Browse CVEs

809 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Double FreeCWE-415 × clear
Windows 10 1607 MEDIUM 6.7
CVE-2026-21530

Double free in Windows Rich Text Edit allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.9140 / 10.0.17763.8755+
Fix from $1,600 2026-05-12
Linux Kernel HIGH 7.8
CVE-2026-43460

In the Linux kernel, the following vulnerability has been resolved: spi: rockchip-sfc: Fix double-free in remove() callback The driver uses devm_sp…

Fix: 6.18.19 / 6.19.9+
Fix from $1,950 2026-05-08
Linux Kernel CRITICAL 9.8
CVE-2026-43414

In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Completely fix fcport double free In qla24xx_els_dcmd_iocb() sp-…

Fix: 5.16 / 6.2+
Fix from $2,300 2026-05-08
Linux Kernel HIGH 7.8
CVE-2026-43328

In the Linux kernel, the following vulnerability has been resolved: cpufreq: governor: fix double free in cpufreq_dbs_governor_init() error path Wh…

Fix: 5.10.253 / 6.1.168+
Fix from $1,950 2026-05-08
Go HIGH 7.5
CVE-2026-33811

When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a crash.

Fix: 1.25.10 / 1.26.3+
Fix from $1,950 2026-05-07
Linux Kernel HIGH 7.8
CVE-2026-43278

In the Linux kernel, the following vulnerability has been resolved: dm: clear cloned request bio pointer when last clone bio completes Stale rq->bi…

Fix: 6.1.165 / 6.6.128+
Fix from $1,950 2026-05-06
Linux Kernel HIGH 7.8
CVE-2026-43276

In the Linux kernel, the following vulnerability has been resolved: net: mana: Fix double destroy_workqueue on service rescan PCI path While testin…

Fix: 6.18.16 / 6.19.6+
Fix from $1,950 2026-05-06
Linux Kernel HIGH 7.8
CVE-2026-43260

In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Fix RSS context delete logic We need to free the corresponding RSS con…

Fix: 6.12.75 / 6.18.16+
Fix from $1,950 2026-05-06
Linux Kernel HIGH 8.8
CVE-2026-43249

In the Linux kernel, the following vulnerability has been resolved: 9p/xen: protect xen_9pfs_front_free against concurrent calls The xenwatch threa…

Fix: 6.12.75 / 6.18.16+
Fix from $1,950 2026-05-06
Linux Kernel HIGH 7.8
CVE-2026-43196

In the Linux kernel, the following vulnerability has been resolved: soc: ti: pruss: Fix double free in pruss_clk_mux_setup() In the pruss_clk_mux_s…

Fix: 5.10.252 / 5.15.202+
Fix from $1,950 2026-05-06
Linux Kernel HIGH 7.8
CVE-2026-43178

In the Linux kernel, the following vulnerability has been resolved: procfs: fix possible double mmput() in do_procmap_query() When user provides in…

Fix: 6.12.75 / 6.18.16+
Fix from $1,950 2026-05-06
Linux Kernel HIGH 7.8
CVE-2026-43128

In the Linux kernel, the following vulnerability has been resolved: RDMA/umem: Fix double dma_buf_unpin in failure path In ib_umem_dmabuf_get_pinne…

Fix: 6.1.165 / 6.6.128+
Fix from $1,950 2026-05-06
Linux Kernel HIGH 7.8
CVE-2026-43120

In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Fix double free related to rereg_user_mr If IB_MR_REREG_TRANS is se…

Fix: 6.6.136 / 6.12.83+
Fix from $1,950 2026-05-06
Linux Kernel HIGH 7.8
CVE-2026-43097

In the Linux kernel, the following vulnerability has been resolved: PCI: hv: Fix double ida_free in hv_pci_probe error path If hv_pci_probe() fails…

Fix: 6.19.14+
Fix from $1,950 2026-05-06
HTTP Server HIGH 8.8
CVE-2026-23918EPSS 50%

Double Free and possible RCE vulnerability in Apache HTTP Server with the HTTP/2 protocol. This issue affects Apache HTTP Server: 2.4.66. Users are…

Mitigation only
Fix from $1,950 2026-05-04
Linux Kernel HIGH 7.8
CVE-2026-43007

In the Linux kernel, the following vulnerability has been resolved: accel/qaic: Handle DBC deactivation if the owner went away When a DBC is releas…

Fix: 6.6.134 / 6.12.81+
Fix from $1,950 2026-05-01
Linux Kernel CRITICAL 9.8
CVE-2026-43011

In the Linux kernel, the following vulnerability has been resolved: net/x25: Fix potential double free of skb When alloc_skb fails in x25_queue_rx_…

Fix: 5.10.253 / 5.15.203+
Fix from $2,300 2026-05-01
Linux Kernel HIGH 7.8
CVE-2026-31759

In the Linux kernel, the following vulnerability has been resolved: usb: ulpi: fix double free in ulpi_register_interface() error path When device_…

Fix: 5.10.253 / 5.15.203+
Fix from $1,950 2026-05-01
Linux Kernel HIGH 7.8
CVE-2026-31745

In the Linux kernel, the following vulnerability has been resolved: reset: gpio: fix double free in reset_add_gpio_aux_device() error path When __a…

Fix: 6.19.12+
Fix from $1,950 2026-05-01
Linux Kernel HIGH 7.8
CVE-2026-31730

In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: possible double-free of cctx->remote_heap fastrpc_init_create_st…

Fix: 6.6.134 / 6.12.81+
Fix from $1,950 2026-05-01
Linux Kernel HIGH 7.8
CVE-2026-31787

In the Linux kernel, the following vulnerability has been resolved: xen/privcmd: fix double free via VMA splitting privcmd_vm_ops defines .close (p…

Fix: 5.10.254 / 5.15.204+
Fix from $1,950 2026-04-30
Wireshark HIGH 7.5
CVE-2026-5657

iLBC codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

Fix: after 4.6.4
Fix from $1,950 2026-04-30
Linux Kernel HIGH 7.8
CVE-2026-31686

In the Linux kernel, the following vulnerability has been resolved: mm/kasan: fix double free for kasan pXds kasan_free_pxd() assumes the page tabl…

Fix: 6.6.136 / 6.12.83+
Fix from $1,950 2026-04-27
Linux Kernel CRITICAL 9.8
CVE-2026-31608

In the Linux kernel, the following vulnerability has been resolved: smb: server: avoid double-free in smb_direct_free_sendmsg after smb_direct_flush…

Fix: 6.18.24 / 6.19.14+
Fix from $2,300 2026-04-24
Linux Kernel CRITICAL 9.8
CVE-2026-31609

In the Linux kernel, the following vulnerability has been resolved: smb: client: avoid double-free in smbd_free_send_io() after smbd_send_batch_flus…

Fix: 6.18.24 / 6.19.14+
Fix from $2,300 2026-04-24
Linux Kernel HIGH 7.8
CVE-2026-31506

In the Linux kernel, the following vulnerability has been resolved: net: bcmasp: fix double free of WoL irq We do not need to free wol_irq since it…

Fix: 6.12.80 / 6.18.21+
Fix from $1,950 2026-04-22
Linux Kernel HIGH 7.8
CVE-2026-31507

In the Linux kernel, the following vulnerability has been resolved: net/smc: fix double-free of smc_spd_priv when tee() duplicates splice pipe buffe…

Fix: 5.10.253 / 5.15.203+
Fix from $1,950 2026-04-22
Linux Kernel HIGH 7.8
CVE-2026-31489

In the Linux kernel, the following vulnerability has been resolved: spi: meson-spicc: Fix double-put in remove path meson_spicc_probe() registers t…

Fix: 4.15 / 4.20+
Fix from $1,950 2026-04-22
Linux Kernel HIGH 7.8
CVE-2026-31475

In the Linux kernel, the following vulnerability has been resolved: ASoC: sma1307: fix double free of devm_kzalloc() memory A previous change added…

Fix: 6.15 / 6.18.21+
Fix from $1,950 2026-04-22
Linux Kernel HIGH 7.8
CVE-2026-31468

In the Linux kernel, the following vulnerability has been resolved: vfio/pci: Fix double free in dma-buf feature The error path through vfio_pci_co…

Fix: 6.19.11+
Fix from $1,950 2026-04-22