Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Chrome HIGH 8.8
CVE-2021-38023

Use after free in Extensions in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to potentially exploit heap corruption via a crafted H…

Fix: 92.0.4515.107+
Fix from $1,950 2024-09-23
Reverb HIGH 7.8
CVE-2024-8375

There exists a use after free vulnerability in Reverb. Reverb supports the VARIANT datatype, which is supposed to represent an arbitrary object in C+…

Fix: 2024-08-05+
Fix from $1,950 2024-09-19
Linux Kernel HIGH 7.8
CVE-2024-46796

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double put of @cfile in smb2_set_path_size() If smb2_compound_…

Fix: 6.6.51 / 6.10.10+
Fix from $1,950 2024-09-18
Linux Kernel HIGH 7.8
CVE-2024-46798

In the Linux kernel, the following vulnerability has been resolved: ASoC: dapm: Fix UAF for snd_soc_pcm_runtime object When using kernel with the f…

Fix: 5.4.284 / 5.10.226+
Fix from $1,950 2024-09-18
Linux Kernel HIGH 7.8
CVE-2024-46800

In the Linux kernel, the following vulnerability has been resolved: sch/netem: fix use after free in netem_dequeue If netem_dequeue() enqueues pack…

Fix: 4.19.322 / 5.4.284+
Fix from $1,950 2024-09-18
Linux Kernel MEDIUM 5.5
CVE-2024-46781

In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix missing cleanup on rollforward recovery error In an error injection…

Fix: 4.19.322 / 5.4.284+
Fix from $1,600 2024-09-18
Linux Kernel HIGH 7.8
CVE-2024-46782

In the Linux kernel, the following vulnerability has been resolved: ila: call nf_unregister_net_hooks() sooner syzbot found an use-after-free Read …

Fix: 4.19.322 / 5.4.284+
Fix from $1,950 2024-09-18
Linux Kernel HIGH 7.8
CVE-2024-46786

In the Linux kernel, the following vulnerability has been resolved: fscache: delete fscache_cookie_lru_timer when fscache exits to avoid UAF The fs…

Fix: 6.1.160 / 6.6.51+
Fix from $1,950 2024-09-18
Linux Kernel MEDIUM 5.5
CVE-2024-46762

In the Linux kernel, the following vulnerability has been resolved: xen: privcmd: Fix possible access to a freed kirqfd instance Nothing prevents s…

Fix: 6.6.51 / 6.10.10+
Fix from $1,600 2024-09-18
Linux Kernel HIGH 7.8
CVE-2024-46738

In the Linux kernel, the following vulnerability has been resolved: VMCI: Fix use-after-free when removing resource in vmci_resource_remove() When …

Fix: 4.19.322 / 5.4.284+
Fix from $1,950 2024-09-18
Linux Kernel HIGH 7.8
CVE-2024-46740

In the Linux kernel, the following vulnerability has been resolved: binder: fix UAF caused by offsets overwrite Binder objects are processed and co…

Fix: 5.4.284 / 5.10.226+
Fix from $1,950 2024-09-18
Debian Linux HIGH 7.8
CVE-2024-46746

In the Linux kernel, the following vulnerability has been resolved: HID: amd_sfh: free driver_data after destroying hid device HID driver callbacks…

Fix: 5.15.167 / 6.1.110+
Fix from $1,950 2024-09-18
Linux Kernel MEDIUM 5.5
CVE-2024-46716

In the Linux kernel, the following vulnerability has been resolved: dmaengine: altera-msgdma: properly free descriptor in msgdma_free_descriptor Re…

Fix: 6.1.109 / 6.6.50+
Fix from $1,600 2024-09-18
Micropython HIGH 8.1
CVE-2024-8947

A vulnerability was found in MicroPython 1.22.2. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the …

Patch available
Fix from $1,950 2024-09-17
Acrobat HIGH 7.8
CVE-2024-41869

Acrobat Reader versions 24.002.21005, 24.001.30159, 20.005.30655, 24.003.20054 and earlier are affected by a Use After Free vulnerability that could …

Fix: 20.005.30680 / 24.001.30187+
Fix from $1,950 2024-09-13
Illustrator HIGH 7.8
CVE-2024-43758

Illustrator versions 28.6, 27.9.5 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the con…

Fix: 27.9.6 / 28.7.1+
Fix from $1,950 2024-09-13
Premiere Pro MEDIUM 5.5
CVE-2024-39385

Premiere Pro versions 24.5, 23.6.8 and earlier are affected by a Use After Free vulnerability that could lead to disclosure of sensitive memory. An a…

Fix: 23.6.9 / 24.6+
Fix from $1,600 2024-09-13
Linux Kernel HIGH 7.8
CVE-2024-46696

In the Linux kernel, the following vulnerability has been resolved: nfsd: fix potential UAF in nfsd4_cb_getattr_release Once we drop the delegation…

Fix: 6.10.8+
Fix from $1,950 2024-09-13
Linux Kernel HIGH 7.8
CVE-2024-46687

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix a use-after-free when hitting errors inside btrfs_submit_chunk() [BU…

Fix: 6.6.49 / 6.10.8+
Fix from $1,950 2024-09-13
Linux Kernel HIGH 7.8
CVE-2024-46674

In the Linux kernel, the following vulnerability has been resolved: usb: dwc3: st: fix probed platform device ref count on probe error path The pro…

Fix: 4.19.321 / 5.4.283+
Fix from $1,950 2024-09-13
Linux Kernel HIGH 7.8
CVE-2024-46683

In the Linux kernel, the following vulnerability has been resolved: drm/xe: prevent UAF around preempt fence The fence lock is part of the queue, t…

Fix: 6.10.8+
Fix from $1,950 2024-09-13
Linux Kernel MEDIUM 5.5
CVE-2024-45013

In the Linux kernel, the following vulnerability has been resolved: nvme: move stopping keep-alive into nvme_uninit_ctrl() Commit 4733b65d82bd ("nv…

Fix: 6.10.7+
Fix from $1,600 2024-09-11
Linux Kernel MEDIUM 5.5
CVE-2024-45016

In the Linux kernel, the following vulnerability has been resolved: netem: fix return value if duplicate enqueue fails There is a bug in netem_enqu…

Fix: 5.4.283 / 5.10.225+
Fix from $1,600 2024-09-11
Chrome HIGH 8.8
CVE-2024-8638

Type Confusion in V8 in Google Chrome prior to 128.0.6613.137 allowed a remote attacker to potentially exploit object corruption via a crafted HTML p…

Fix: 128.0.6613.137+
Fix from $1,950 2024-09-11
Chrome HIGH 8.8
CVE-2024-8639

Use after free in Autofill in Google Chrome on Android prior to 128.0.6613.137 allowed a remote attacker to potentially exploit heap corruption via a…

Fix: 128.0.6613.137+
Fix from $1,950 2024-09-11
Chrome HIGH 8.8
CVE-2024-8636

Heap buffer overflow in Skia in Google Chrome prior to 128.0.6613.137 allowed a remote attacker to potentially exploit heap corruption via a crafted …

Fix: 128.0.6613.137+
Fix from $1,950 2024-09-11
Chrome HIGH 8.8
CVE-2024-8637

Use after free in Media Router in Google Chrome on Android prior to 128.0.6613.137 allowed a remote attacker to potentially exploit heap corruption v…

Fix: 128.0.6613.137+
Fix from $1,950 2024-09-11
Android HIGH 7.0
CVE-2024-23716

In DevmemIntPFNotify of devicemem_server.c, there is a possible use-after-free due to a race condition. This could lead to local escalation of privil…

Mitigation only
Fix from $1,950 2024-09-11
Windows 10 1507 CRITICAL 9.8
CVE-2024-43491EPSS 12%

Microsoft is aware of a vulnerability in Servicing Stack that has rolled back the fixes for some vulnerabilities affecting Optional Components on Win…

Fix: 10.0.10240.20766+
Fix from $2,300 2024-09-10
365 Apps HIGH 7.8
CVE-2024-43465

Microsoft Excel Elevation of Privilege Vulnerability

Fix: 16.0.10414.20000+
Fix from $1,950 2024-09-10