Vulnerability index

Browse CVEs

809 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Double FreeCWE-415 × clear
CRITICAL 9.1 CVE-2023-38562 A double-free vulnerability exists in the IP header loopback parsing functionality of Weston Embedded uC-TCP-IP v3.06.01. A specially crafted set of … Uc Tcp Ip No fix yet Fix from $2,3002024-02-20 HIGH 7.5 CVE-2024-21606 A Double Free vulnerability in the flow processing daemon (flowd) of Juniper Networks Junos OS on SRX Series allows a network-based, unauthenticated … Junos 20.4+ Fix from $1,9502024-01-12 MEDIUM 5.5 CVE-2023-1032 The Linux kernel io_uring IORING_OP_SOCKET operation contained a double free in function __sys_socket_file() in file net/socket.c. This issue was int… Linux Kernel 6.3+ Fix from $1,6002024-01-08 HIGH 7.8 CVE-2022-2588EPSS 6% It was discovered that the cls_route filter implementation in the Linux kernel would not remove an old filter from the hashtable before freeing it if… Linux Kernel 4.9.326 / 4.14.291+ Fix from $1,9502024-01-08 HIGH 7.8 CVE-2023-28583 Memory corruption when IPv6 prefix timer object`s lifetime expires which are created while Netmgr daemon gets an IPv6 address. Aqt1000 Firmware Mitigation only Fix from $1,9502024-01-02 MEDIUM 5.5 CVE-2023-52284 Bytecode Alliance wasm-micro-runtime (aka WebAssembly Micro Runtime or WAMR) before 1.3.0 can have an "double free or corruption" error for a valid W… Webassembly Micro Runtime 1.3.0+ Fix from $1,6002023-12-31 MEDIUM 5.5 CVE-2023-4256 Within tcpreplay's tcprewrite, a double free vulnerability has been identified in the tcpedit_dlt_cleanup() function within plugins/dlt_plugins.c. Th… Fedora No fix yet Fix from $1,6002023-12-21 CRITICAL 9.8 CVE-2023-49937 An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. Because of a double free, attackers can cause a denial of service or possibly… Slurm 22.05.12 / 23.02.7+ Fix from $2,3002023-12-14 HIGH 8.8 CVE-2023-41678 A double free in Fortinet FortiOS versions 7.0.0 through 7.0.5, FortiPAM version 1.0.0 through 1.0.3, 1.1.0 through 1.1.1 allows attacker to execute … Fortios Mitigation only Fix from $1,9502023-12-13 HIGH 7.8 CVE-2023-40103 In multiple locations, there is a possible way to corrupt memory due to a double free. This could lead to local escalation of privilege with no addit… Android Patch available Fix from $1,9502023-12-04 HIGH 7.8 CVE-2023-48013 GPAC v2.3-DEV-rev566-g50c2ab06f-master was discovered to contain a double free via the gf_filterpacket_del function at /gpac/src/filter_core/filter.c. Gpac Patch available Fix from $1,9502023-11-15 MEDIUM 6.5 CVE-2023-43281 Double Free vulnerability in Nothings Stb Image.h v.2.28 allows a remote attacker to cause a denial of service via a crafted file to the stbi_load_gi… Stb Image.h No fix yet Fix from $1,6002023-10-25 HIGH 8.8 CVE-2023-45664 stb_image is a single file MIT licensed library for processing images. A crafted image file can trigger `stbi__load_gif_main_outofmem` attempt to dou… Stb Image.h Mitigation only Fix from $1,9502023-10-21 CRITICAL 9.8 CVE-2023-45666 stb_image is a single file MIT licensed library for processing images. It may look like `stbi__load_gif_main` doesn’t give guarantees about the cont… Stb Image.h Mitigation only Fix from $2,3002023-10-21 HIGH 7.8 CVE-2023-45679 stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger memory allocation failure in `start_deco… Stb Vorbis.c Mitigation only Fix from $1,9502023-10-21 HIGH 7.5 CVE-2023-42459 Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group). In affected versions specific … Fast Dds 2.6.7 / 2.10.3+ Fix from $1,9502023-10-16 HIGH 7.8 CVE-2023-36418 Azure RTOS GUIX Studio Remote Code Execution Vulnerability Azure Rtos Guix Studio 6.3.0+ Fix from $1,9502023-10-10 HIGH 7.8 CVE-2023-36420 Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability Odbc Driver For Sql Server 17.10.5.1 / 18.3.2.1+ Fix from $1,9502023-10-10 MEDIUM 6.7 CVE-2023-32824 In rpmb , there is a possible double free due to improper locking. This could lead to local escalation of privilege with System execution privileges … Android Mitigation only Fix from $1,6002023-10-02 MEDIUM 5.5 CVE-2023-41911 Samsung Mobile Processor Exynos 2200 allows a GPU Double Free (issue 1 of 2). Exynos 2200 Firmware Mitigation only Fix from $1,6002023-09-28 HIGH 7.8 CVE-2023-41374 Double free issue exists in Kostac PLC Programming Software Version 1.6.11.0 and earlier. Arbitrary code may be executed by having a user open a spec… Kostac Plc 1.6.10.0+ Fix from $1,9502023-09-20 MEDIUM 6.7 CVE-2023-41325 OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone… Op Tee 3.22.0+ Fix from $1,6002023-09-15 HIGH 7.1 CVE-2023-4389 A flaw was found in btrfs_get_root_ref in fs/btrfs/disk-io.c in the btrfs filesystem in the Linux Kernel due to a double decrement of the reference c… Linux Kernel 5.10.112 / 5.15.35+ Fix from $1,9502023-08-16 HIGH 8.8 CVE-2023-39975 kdc/do_tgs_req.c in MIT Kerberos 5 (aka krb5) 1.21 before 1.21.2 has a double free that is reachable if an authenticated user can trigger an authoriz… Kerberos 5 1.21.2+ Fix from $1,9502023-08-16 HIGH 7.8 CVE-2023-35371 Microsoft Office Remote Code Execution Vulnerability 365 Apps Patch available Fix from $1,9502023-08-08 MEDIUM 6.7 CVE-2023-33952 A double-free vulnerability was found in handling vmw_buffer_object objects in the vmwgfx driver in the Linux kernel. This issue occurs due to the la… Linux Kernel after 6.3.9 Fix from $1,6002023-07-24 HIGH 7.5 CVE-2023-38434 xHTTP 72f812d has a double free in close_connection in xhttp.c via a malformed HTTP request method. Xhttp No fix yet Fix from $1,9502023-07-18 HIGH 7.8 CVE-2023-33161 Microsoft Excel Remote Code Execution Vulnerability 365 Apps Patch available Fix from $1,9502023-07-11 MEDIUM 6.8 CVE-2023-21629 Memory Corruption in Modem due to double free while parsing the PKCS15 sim files. 315 5g Firmware Mitigation only Fix from $1,6002023-07-04 MEDIUM 6.5 CVE-2023-37365 Hnswlib 0.7.0 has a double free in init_index when the M argument is a large integer. Hnswlib No fix yet Fix from $1,6002023-06-30