Vulnerability index

Browse CVEs

809 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Double FreeCWE-415 × clear
HIGH 7.8 CVE-2024-47404 in OpenHarmony v4.1.0 and prior versions allow a local attacker cause the common permission is upgraded to root and sensitive information leak throug… Openharmony after 4.1 Fix from $1,9502024-11-05 MEDIUM 6.5 CVE-2024-3935 In Eclipse Mosquito, versions from 2.0.0 through 2.0.18, if a Mosquitto broker is configured to create an outgoing bridge connection, and that bridge… Mosquitto 2.0.19+ Fix from $1,6002024-10-30 HIGH 7.8 CVE-2024-50071 In the Linux kernel, the following vulnerability has been resolved: pinctrl: nuvoton: fix a double free in ma35_pinctrl_dt_node_to_map_func() 'new_… Linux Kernel 6.11.5+ Fix from $1,9502024-10-29 HIGH 7.4 CVE-2024-44098 In lwis_device_event_states_clear_locked of lwis_event.c, there is a possible privilege escalation due to a double free. This could lead to local esc… Android Mitigation only Fix from $1,9502024-10-25 HIGH 7.8 CVE-2024-50055 In the Linux kernel, the following vulnerability has been resolved: driver core: bus: Fix double free in driver API bus_register() For bus_register… Debian Linux 5.4.291 / 5.10.231+ Fix from $1,9502024-10-21 HIGH 7.8 CVE-2024-49989 In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: fix double free issue during amdgpu module unload Flexible end… Debian Linux 5.15.181 / 6.1.129+ Fix from $1,9502024-10-21 HIGH 7.8 CVE-2024-49983 In the Linux kernel, the following vulnerability has been resolved: ext4: drop ppath from ext4_ext_replay_update_ex() to avoid double-free When cal… Linux Kernel 5.10.227 / 5.15.168+ Fix from $1,9502024-10-21 HIGH 7.8 CVE-2024-49882 In the Linux kernel, the following vulnerability has been resolved: ext4: fix double brelse() the buffer of the extents path In ext4_ext_try_to_mer… Debian Linux 4.19.323 / 5.4.285+ Fix from $1,9502024-10-21 HIGH 7.8 CVE-2024-49853 In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Fix double free in OPTEE transport Channels can be shared b… Linux Kernel 6.1.113 / 6.6.54+ Fix from $1,9502024-10-21 MEDIUM 5.9 CVE-2024-3187 This issue tracks two CWE-416 Use After Free (UAF) and one CWE-415 Double Free vulnerabilities in Goahead versions <= 6.0.0. These are caused by JST … Mitigation only Fix from $1,6002024-10-17 CRITICAL 9.8 CVE-2024-45402 Picotls is a TLS protocol library that allows users select different crypto backends based on their use case. When parsing a spoofed TLS handshake me… Picotls 2024-10-10+ Fix from $2,3002024-10-11 HIGH 7.8 CVE-2024-43514 Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability Windows 10 1507 10.0.10240.20796 / 10.0.14393.7428+ Fix from $1,9502024-10-08 MEDIUM 6.7 CVE-2024-23379 Memory corruption while unmapping the fastrpc map when two threads can free the same map in concurrent scenario. Wsa8835 Firmware Mitigation only Fix from $1,6002024-10-07 HIGH 7.5 CVE-2024-20498 Multiple vulnerabilities in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an un… Meraki Mx65 Firmware 18.211.2+ Fix from $1,9502024-10-02 HIGH 7.8 CVE-2024-46736 In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double put of @cfile in smb2_rename_path() If smb2_set_path_at… Linux Kernel 6.6.51 / 6.10.10+ Fix from $1,9502024-09-18 HIGH 7.8 CVE-2024-46741 In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: Fix double free of 'buf' in error path smatch warning: drivers/m… Linux Kernel 6.6.51 / 6.10.10+ Fix from $1,9502024-09-18 HIGH 7.8 CVE-2024-46687 In the Linux kernel, the following vulnerability has been resolved: btrfs: fix a use-after-free when hitting errors inside btrfs_submit_chunk() [BU… Linux Kernel 6.6.49 / 6.10.8+ Fix from $1,9502024-09-13 HIGH 7.8 CVE-2024-46673 In the Linux kernel, the following vulnerability has been resolved: scsi: aacraid: Fix double-free on probe failure aac_probe_one() calls hardware-… Linux Kernel 4.19.321 / 5.4.283+ Fix from $1,9502024-09-13 HIGH 7.8 CVE-2024-38247 Windows Graphics Component Elevation of Privilege Vulnerability Windows 10 1507 10.0.10240.20766 / 10.0.14393.7336+ Fix from $1,9502024-09-10 HIGH 7.8 CVE-2022-48919 In the Linux kernel, the following vulnerability has been resolved: cifs: fix double free race when mount fails in cifs_get_root() When cifs_get_ro… Linux Kernel 4.9.305 / 4.14.270+ Fix from $1,9502024-08-22 HIGH 7.8 CVE-2022-48892 In the Linux kernel, the following vulnerability has been resolved: sched/core: Fix use-after-free bug in dup_user_cpus_ptr() Since commit 07ec77a1… Linux Kernel 5.15.89 / 6.1.7+ Fix from $1,9502024-08-21 HIGH 7.0 CVE-2024-38157 Azure IoT SDK Remote Code Execution Vulnerability Azure Iot Hub Device Client Sdk 1.12.1+ Fix from $1,9502024-08-13 MEDIUM 5.5 CVE-2024-42234 In the Linux kernel, the following vulnerability has been resolved: mm: fix crashes from deferred split racing folio migration Even on 6.10-rc6, I'… Linux Kernel 6.9.10+ Fix from $1,6002024-08-07 MEDIUM 5.3 CVE-2024-41957 Vim is an open source command line text editor. Vim < v9.1.0647 has double free in src/alloc.c:616. When closing a window, the corresponding tagstack… Vim 9.1.0647+ Fix from $1,6002024-08-01 HIGH 7.8 CVE-2024-42147 In the Linux kernel, the following vulnerability has been resolved: crypto: hisilicon/debugfs - Fix debugfs uninit process issue During the zip pro… Linux Kernel 6.1.98 / 6.6.39+ Fix from $1,9502024-07-30 HIGH 7.8 CVE-2024-42138 In the Linux kernel, the following vulnerability has been resolved: mlxsw: core_linecards: Fix double memory deallocation in case of invalid INI fil… Linux Kernel 6.1.98 / 6.6.39+ Fix from $1,9502024-07-30 MEDIUM 5.5 CVE-2023-52888 In the Linux kernel, the following vulnerability has been resolved: media: mediatek: vcodec: Only free buffer VA that is not NULL In the MediaTek v… Linux Kernel 6.6.39 / 6.9.9+ Fix from $1,6002024-07-30 HIGH 7.8 CVE-2024-41087 In the Linux kernel, the following vulnerability has been resolved: ata: libata-core: Fix double free on error If e.g. the ata_port_alloc() call in… Linux Kernel 4.19.317 / 5.4.279+ Fix from $1,9502024-07-29 HIGH 7.8 CVE-2024-41073 In the Linux kernel, the following vulnerability has been resolved: nvme: avoid double free special payload If a discard request needs to be retrie… Debian Linux 5.10.237 / 5.15.164+ Fix from $1,9502024-07-29 HIGH 7.8 CVE-2024-41046 In the Linux kernel, the following vulnerability has been resolved: net: ethernet: lantiq_etop: fix double free in detach The number of the current… Linux Kernel 4.19.318 / 5.4.280+ Fix from $1,9502024-07-29