Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Linux Kernel HIGH 7.0
CVE-2024-47747

In the Linux kernel, the following vulnerability has been resolved: net: seeq: Fix use after free vulnerability in ether3 Driver Due to Race Conditi…

Fix: 5.10.227 / 5.15.168+
Fix from $1,950 2024-10-21
Linux Kernel HIGH 7.8
CVE-2024-47748

In the Linux kernel, the following vulnerability has been resolved: vhost_vdpa: assign irq bypass producer token correctly We used to call irq_bypa…

Fix: 5.10.227 / 5.15.168+
Fix from $1,950 2024-10-21
Debian Linux HIGH 7.8
CVE-2024-47730

In the Linux kernel, the following vulnerability has been resolved: crypto: hisilicon/qm - inject error before stopping queue The master ooo cannot…

Fix: 5.10.235 / 5.15.174+
Fix from $1,950 2024-10-21
Linux Kernel MEDIUM 5.5
CVE-2024-47732

In the Linux kernel, the following vulnerability has been resolved: crypto: iaa - Fix potential use after free bug The free_device_compression_mode…

Fix: 6.10.13 / 6.11.2+
Fix from $1,600 2024-10-21
Linux Kernel HIGH 7.8
CVE-2024-47718

In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: always wait for both firmware loading attempts In 'rtw_wait_firmwa…

Fix: 5.10.227 / 5.15.168+
Fix from $1,950 2024-10-21
Linux Kernel MEDIUM 5.5
CVE-2024-47706

In the Linux kernel, the following vulnerability has been resolved: block, bfq: fix possible UAF for bfqq->bic with merge chain 1) initial state, t…

Fix: 5.10.227 / 5.15.168+
Fix from $1,600 2024-10-21
Linux Kernel HIGH 7.8
CVE-2024-47711

In the Linux kernel, the following vulnerability has been resolved: af_unix: Don't return OOB skb in manage_oob(). syzbot reported use-after-free i…

Fix: 6.10 / 6.11.2+
Fix from $1,950 2024-10-21
Linux Kernel HIGH 7.8
CVE-2024-47696

In the Linux kernel, the following vulnerability has been resolved: RDMA/iwcm: Fix WARNING:at_kernel/workqueue.c:#check_flush_dependency In the com…

Fix: 5.4 / 5.10+
Fix from $1,950 2024-10-21
Linux Kernel HIGH 7.8
CVE-2024-47701

In the Linux kernel, the following vulnerability has been resolved: ext4: avoid OOB when system.data xattr changes underneath the filesystem When l…

Fix: 5.10.227 / 5.15.168+
Fix from $1,950 2024-10-21
Linux Kernel HIGH 7.8
CVE-2024-47691

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid use-after-free in f2fs_stop_gc_thread() syzbot reports a f2f…

Fix: 6.6.54 / 6.10.13+
Fix from $1,950 2024-10-21
Linux Kernel HIGH 7.8
CVE-2024-47675

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix use-after-free in bpf_uprobe_multi_link_attach() If bpf_link_prime() f…

Fix: 6.6.54 / 6.10.13+
Fix from $1,950 2024-10-21
Linux Kernel HIGH 7.8
CVE-2024-47676

In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb.c: fix UAF of vma in hugetlb fault pathway Syzbot reports a UAF in h…

Fix: 6.10.13 / 6.11.2+
Fix from $1,950 2024-10-21
Edge Chromium MEDIUM 5.3
CVE-2024-49023

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

Fix: 130.0.2849.46+
Fix from $1,600 2024-10-18
Unclassified MEDIUM 5.9
CVE-2024-3187

This issue tracks two CWE-416 Use After Free (UAF) and one CWE-415 Double Free vulnerabilities in Goahead versions <= 6.0.0. These are caused by JST …

Mitigation only
Fix from $1,600 2024-10-17
Chrome HIGH 8.8
CVE-2024-9954

Use after free in AI in Google Chrome prior to 130.0.6723.58 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 130.0.6723.58+
Fix from $1,950 2024-10-15
Chrome HIGH 8.8
CVE-2024-9955

Use after free in WebAuthentication in Google Chrome prior to 130.0.6723.58 allowed a remote attacker to potentially exploit heap corruption via a cr…

Fix: 130.0.6723.58+
Fix from $1,950 2024-10-15
Chrome HIGH 8.8
CVE-2024-9957

Use after free in UI in Google Chrome on iOS prior to 130.0.6723.58 allowed a remote attacker who convinced a user to engage in specific UI gestures …

Fix: 130.0.6723.58+
Fix from $1,950 2024-10-15
Chrome HIGH 8.8
CVE-2024-9959

Use after free in DevTools in Google Chrome prior to 130.0.6723.58 allowed a remote attacker who had compromised the renderer process to potentially …

Fix: 130.0.6723.58+
Fix from $1,950 2024-10-15
Chrome HIGH 7.5
CVE-2024-9960

Use after free in Dawn in Google Chrome prior to 130.0.6723.58 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 130.0.6723.58+
Fix from $1,950 2024-10-15
Chrome HIGH 8.8
CVE-2024-9961

Use after free in ParcelTracking in Google Chrome on iOS prior to 130.0.6723.58 allowed a remote attacker who convinced a user to engage in specific …

Fix: 130.0.6723.58+
Fix from $1,950 2024-10-15
Unclassified MEDIUM 5.3
CVE-2024-9979

A flaw was found in PyO3. This vulnerability causes a use-after-free issue, potentially leading to memory corruption or crashes via unsound borrowing…

Patch available
Fix from $1,600 2024-10-15
Unclassified HIGH 7.8
CVE-2024-43701

Software installed and run as a non-privileged user may conduct GPU system calls to read and write freed physical memory from the GPU.

Mitigation only
Fix from $1,950 2024-10-14
Mosquitto HIGH 7.5
CVE-2024-8376

In Eclipse Mosquitto up to version 2.0.18a, an attacker can achieve memory leaking, segmentation fault or heap-use-after-free by sending specific seq…

Fix: 2.0.19+
Fix from $1,950 2024-10-11
Linux Kernel MEDIUM 5.5
CVE-2024-47666

In the Linux kernel, the following vulnerability has been resolved: scsi: pm80xx: Set phy->enable_completion only when we wait for it pm8001_phy_co…

Fix: 6.6.51 / 6.10.10+
Fix from $1,600 2024-10-09
Substance 3d Stager HIGH 7.8
CVE-2024-45138

Substance3D - Stager versions 3.0.3 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the c…

Fix: 3.0.4+
Fix from $1,950 2024-10-09
Firefox CRITICAL 9.8
CVE-2024-9680 KEVEPSS 23%

An attacker was able to achieve code execution in the content process by exploiting a use-after-free in Animation timelines. We have had reports of t…

Fix: 115.16.0 / 115.16.1+
Fix from $2,300 2024-10-09
Animate HIGH 7.8
CVE-2024-47418

Animate versions 23.0.7, 24.0.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the conte…

Fix: 23.0.8 / 24.0.5+
Fix from $1,950 2024-10-09
Animate HIGH 7.8
CVE-2024-47412

Animate versions 23.0.7, 24.0.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the conte…

Fix: 23.0.8 / 24.0.5+
Fix from $1,950 2024-10-09
Animate HIGH 7.8
CVE-2024-47413

Animate versions 23.0.7, 24.0.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the conte…

Fix: 23.0.8 / 24.0.5+
Fix from $1,950 2024-10-09
Animate HIGH 7.8
CVE-2024-47414

Animate versions 23.0.7, 24.0.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the conte…

Fix: 23.0.8 / 24.0.5+
Fix from $1,950 2024-10-09