Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Linux Kernel HIGH 7.8
CVE-2024-50261

In the Linux kernel, the following vulnerability has been resolved: macsec: Fix use-after-free while sending the offloading packet KASAN reports th…

Fix: 6.1.116 / 6.6.60+
Fix from $1,950 2024-11-09
Linux Kernel HIGH 7.8
CVE-2024-50226

In the Linux kernel, the following vulnerability has been resolved: cxl/port: Fix use-after-free, permit out-of-order decoder shutdown In support o…

Fix: 6.6.60 / 6.11.7+
Fix from $1,950 2024-11-09
Linux Kernel HIGH 7.8
CVE-2024-50217

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix use-after-free of block device file in __btrfs_free_extra_devids() M…

Fix: 6.11.7+
Fix from $1,950 2024-11-09
Wasm3 HIGH 8.4
CVE-2024-27530

wasm3 139076a contains a Use-After-Free in ForEachModule.

No fix yet
Fix from $1,950 2024-11-08
Linux Kernel HIGH 7.8
CVE-2024-50186

In the Linux kernel, the following vulnerability has been resolved: net: explicitly clear the sk pointer, when pf->create fails We have recently no…

Fix: 5.15.168 / 6.1.113+
Fix from $1,950 2024-11-08
Linux Kernel MEDIUM 5.5
CVE-2024-50149

In the Linux kernel, the following vulnerability has been resolved: drm/xe: Don't free job in TDR Freeing job in TDR is not safe as TDR can pass th…

Fix: 6.11.6+
Fix from $1,600 2024-11-07
Linux Kernel HIGH 7.8
CVE-2024-50150

In the Linux kernel, the following vulnerability has been resolved: usb: typec: altmode should keep reference to parent The altmode device release …

Fix: 4.19.323 / 5.4.285+
Fix from $1,950 2024-11-07
Linux Kernel HIGH 7.0
CVE-2024-50154

In the Linux kernel, the following vulnerability has been resolved: tcp/dccp: Don't use timer_pending() in reqsk_queue_unlink(). Martin KaFai Lau r…

Fix: 4.2 / 5.15.170+
Fix from $1,950 2024-11-07
Chrome HIGH 8.8
CVE-2024-10827

Use after free in Serial in Google Chrome prior to 130.0.6723.116 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 130.0.6723.116+
Fix from $1,950 2024-11-06
Chrome HIGH 8.8
CVE-2024-10826

Use after free in Family Experiences in Google Chrome on Android prior to 130.0.6723.116 allowed a remote attacker to potentially exploit heap corrup…

Fix: 130.0.6723.116+
Fix from $1,950 2024-11-06
Linux Kernel HIGH 7.8
CVE-2024-50121

In the Linux kernel, the following vulnerability has been resolved: nfsd: cancel nfsd_shrinker_work using sync mode in nfs4_state_shutdown_net In t…

Fix: 5.15 / 6.1+
Fix from $1,950 2024-11-05
Linux Kernel HIGH 7.8
CVE-2024-50124

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: Fix UAF on iso_sock_timeout conn->sk maybe have been unlinked/f…

Fix: 6.1.115 / 6.6.59+
Fix from $1,950 2024-11-05
Linux Kernel HIGH 7.8
CVE-2024-50125

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: SCO: Fix UAF on sco_sock_timeout conn->sk maybe have been unlinked/f…

Fix: 6.1.115 / 6.6.59+
Fix from $1,950 2024-11-05
Linux Kernel HIGH 7.8
CVE-2024-50126

In the Linux kernel, the following vulnerability has been resolved: net: sched: use RCU read-side critical section in taprio_dump() Fix possible us…

Fix: 6.6.59 / 6.11.6+
Fix from $1,950 2024-11-05
Linux Kernel HIGH 7.8
CVE-2024-50127

In the Linux kernel, the following vulnerability has been resolved: net: sched: fix use-after-free in taprio_change() In 'taprio_change()', 'admin'…

Fix: 5.15.170 / 6.1.115+
Fix from $1,950 2024-11-05
Linux Kernel HIGH 7.8
CVE-2024-50130

In the Linux kernel, the following vulnerability has been resolved: netfilter: bpf: must hold reference on net namespace BUG: KASAN: slab-use-after…

Fix: 6.6.59 / 6.11.6+
Fix from $1,950 2024-11-05
Linux Kernel HIGH 7.0
CVE-2024-50106

In the Linux kernel, the following vulnerability has been resolved: nfsd: fix race between laundromat and free_stateid There is a race between laun…

Fix: 6.11.6+
Fix from $1,950 2024-11-05
Linux Kernel HIGH 7.8
CVE-2024-50114

In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Unregister redistributor for failed vCPU creation Alex reports that…

Fix: 6.11.6+
Fix from $1,950 2024-11-05
Snapdragon W5\+ Gen 1 Wearable Platform Firmware HIGH 7.8
CVE-2024-38424

Memory corruption during GNSS HAL process initialization.

Patch available
Fix from $1,950 2024-11-04
Wsa8845h Firmware HIGH 7.8
CVE-2024-38415

Memory corruption while handling session errors from firmware.

Patch available
Fix from $1,950 2024-11-04
Wsa8845h Firmware HIGH 7.8
CVE-2024-38419

Memory corruption while invoking IOCTL calls from the use-space for HGSL memory node.

Patch available
Fix from $1,950 2024-11-04
Wsa8845h Firmware HIGH 7.8
CVE-2024-38421

Memory corruption while processing GPU commands.

Patch available
Fix from $1,950 2024-11-04
Wsa8845h Firmware HIGH 7.8
CVE-2024-33033

Memory corruption while processing IOCTL calls to unmap the buffers.

Patch available
Fix from $1,950 2024-11-04
Wsa8845h Firmware MEDIUM 6.5
CVE-2024-33068

Transient DOS while parsing fragments of MBSSID IE from beacon frame.

Patch available
Fix from $1,600 2024-11-04
Snapdragon Auto 5g Modem Rf Gen 2 Firmware MEDIUM 6.7
CVE-2024-33029

Memory corruption while handling the PDR in driver for getting the remote heap maps.

Patch available
Fix from $1,600 2024-11-04
Autocad HIGH 7.8
CVE-2024-9826

A maliciously crafted 3DM file when parsed in atf_api.dll through Autodesk AutoCAD can force a Use-After-Free vulnerability. A malicious actor can le…

Fix: 2025.1.1+
Fix from $1,950 2024-10-29
Autocad HIGH 7.8
CVE-2024-8595

A maliciously crafted MODEL file when parsed in libodxdll.dll through Autodesk AutoCAD can force a Use-After-Free vulnerability. A malicious actor ca…

Fix: 2025.1.1+
Fix from $1,950 2024-10-29
Autocad HIGH 7.8
CVE-2024-8590

A maliciously crafted 3DM file when parsed in atf_api.dll through Autodesk AutoCAD can force a Use-After-Free vulnerability. A malicious actor can l…

Fix: 2025.1.1+
Fix from $1,950 2024-10-29
Chrome HIGH 8.8
CVE-2024-10488

Use after free in WebRTC in Google Chrome prior to 130.0.6723.92 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 130.0.6723.92+
Fix from $1,950 2024-10-29
Firefox HIGH 7.5
CVE-2024-10459

An attacker could have caused a use-after-free when accessibility was enabled, leading to a potentially exploitable crash. This vulnerability affects…

Fix: 115.17 / 128.4.0+
Fix from $1,950 2024-10-29