Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Android HIGH 8.4
CVE-2024-25985

In bigo_unlocked_ioctl of bigo.c, there is a possible UAF due to a missing bounds check. This could lead to local escalation of privilege with no add…

Mitigation only
Fix from $1,950 2024-03-11
Android HIGH 8.4
CVE-2024-27205

there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileg…

No fix yet
Fix from $1,950 2024-03-11
Linux Kernel HIGH 7.8
CVE-2024-26616

In the Linux kernel, the following vulnerability has been resolved: btrfs: scrub: avoid use-after-free when chunk length is not 64K aligned [BUG] T…

Fix: 6.6.15 / 6.7.3+
Fix from $1,950 2024-03-11
Linux Kernel HIGH 7.8
CVE-2024-26619

In the Linux kernel, the following vulnerability has been resolved: riscv: Fix module loading free order Reverse order of kfree calls to resolve us…

Fix: 6.7.3+
Fix from $1,950 2024-03-11
Linux Kernel HIGH 7.8
CVE-2023-52491

In the Linux kernel, the following vulnerability has been resolved: media: mtk-jpeg: Fix use after free bug due to error path handling in mtk_jpeg_d…

Fix: 5.10.210 / 5.15.149+
Fix from $1,950 2024-03-11
Mio CRITICAL 9.1
CVE-2024-27308

Mio is a Metal I/O library for Rust. When using named pipes on Windows, mio will under some circumstances return invalid tokens that correspond to na…

Fix: after 0.8.10
Fix from $2,300 2024-03-06
Chrome HIGH 8.8
CVE-2024-2176

Use after free in FedCM in Google Chrome prior to 122.0.6261.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 122.0.6261.111+
Fix from $1,950 2024-03-06
Fast Dds CRITICAL 9.8
CVE-2023-50716

eProsima Fast DDS (formerly Fast RTPS) is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to ver…

Fix: 2.6.7 / 2.10.3+
Fix from $2,300 2024-03-06
Linux Kernel HIGH 7.8
CVE-2024-26625

In the Linux kernel, the following vulnerability has been resolved: llc: call sock_orphan() at release time syzbot reported an interesting trace [1…

Fix: 4.19.307 / 5.4.269+
Fix from $1,950 2024-03-06
Linux Kernel HIGH 7.8
CVE-2023-52600

In the Linux kernel, the following vulnerability has been resolved: jfs: fix uaf in jfs_evict_inode When the execution of diMount(ipimap) fails, th…

Fix: 4.19.307 / 5.4.269+
Fix from $1,950 2024-03-06
Workstation MEDIUM 6.7
CVE-2024-22252

VMware ESXi, Workstation, and Fusion contain a use-after-free vulnerability in the XHCI USB controller. A malicious actor with local administrative p…

Fix: 13.5.1 / 17.5.1+
Fix from $1,600 2024-03-05
Cloud Foundation MEDIUM 6.7
CVE-2024-22253

VMware ESXi, Workstation, and Fusion contain a use-after-free vulnerability in the UHCI USB controller. A malicious actor with local administrative p…

Fix: 13.5.1 / 17.5.1+
Fix from $1,600 2024-03-05
Imagesharp HIGH 7.1
CVE-2024-27929

ImageSharp is a managed, cross-platform, 2D graphics library. A heap-use-after-free flaw was found in ImageSharp's InitializeImage() function of PngD…

Fix: 2.1.7 / 3.1.3+
Fix from $1,950 2024-03-05
Android MEDIUM 6.4
CVE-2024-20833

Use after free vulnerability in pub_crypto_recv_msg prior to SMR Mar-2024 Release 1 due to race condition allows local attackers with system privileg…

Mitigation only
Fix from $1,600 2024-03-05
Swftools MEDIUM 5.5
CVE-2024-26333

swftools v0.9.2 was discovered to contain a segmentation violation via the function free_lines at swftools/lib/modules/swfshape.c.

No fix yet
Fix from $1,600 2024-03-05
Linux Kernel HIGH 7.8
CVE-2021-47106

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: fix use-after-free in nft_set_catchall_destroy() We need …

Fix: 5.15.12+
Fix from $1,950 2024-03-04
Linux Kernel MEDIUM 5.5
CVE-2021-47100

In the Linux kernel, the following vulnerability has been resolved: ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module Hi, When testi…

Fix: 4.19.223 / 5.4.169+
Fix from $1,600 2024-03-04
Linux Kernel HIGH 7.8
CVE-2021-47103

In the Linux kernel, the following vulnerability has been resolved: inet: fully convert sk->sk_rx_dst to RCU rules syzbot reported various issues a…

Fix: 4.9.331 / 4.14.296+
Fix from $1,950 2024-03-04
Linux Kernel HIGH 7.0
CVE-2021-47088

In the Linux kernel, the following vulnerability has been resolved: mm/damon/dbgfs: protect targets destructions with kdamond_lock DAMON debugfs in…

Fix: 5.15.12+
Fix from $1,950 2024-03-04
Digital Delivery HIGH 7.8
CVE-2024-0155

Dell Digital Delivery, versions prior to 5.2.0.0, contain a Use After Free Vulnerability. A local low privileged attacker could potentially exploit t…

Fix: 5.2.0.0+
Fix from $1,950 2024-03-04
5th Gen Gpu Architecture Kernel Driver HIGH 7.0
CVE-2023-6241

Use After Free vulnerability in Arm Ltd Midgard GPU Kernel Driver, Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm …

Mitigation only
Fix from $1,950 2024-03-04
Ar8035 Firmware CRITICAL 9.8
CVE-2023-43552

Memory corruption while processing MBSSID beacon containing several subelement IE.

Patch available
Fix from $2,300 2024-03-04
Ar8035 Firmware HIGH 7.8
CVE-2023-43546

Memory corruption while invoking HGSL IOCTL context create.

Patch available
Fix from $1,950 2024-03-04
Ar8035 Firmware HIGH 7.8
CVE-2023-43547

Memory corruption while invoking IOCTLs calls in Automotive Multimedia.

Patch available
Fix from $1,950 2024-03-04
5th Gen Gpu Architecture Kernel Driver HIGH 8.4
CVE-2023-6143

Use After Free vulnerability in Arm Ltd Midgard GPU Kernel Driver, Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm …

Mitigation only
Fix from $1,950 2024-03-04
Linux Kernel HIGH 7.8
CVE-2024-26622

In the Linux kernel, the following vulnerability has been resolved: tomoyo: fix UAF write bug in tomoyo_write_control() Since tomoyo_write_control(…

Fix: 5.10.212 / 5.15.151+
Fix from $1,950 2024-03-04
Openharmony HIGH 7.8
CVE-2023-46708

in OpenHarmony v3.2.4 and prior versions allow a local attacker arbitrary code execution in any apps through use after free.

Fix: after 3.2.4
Fix from $1,950 2024-03-04
Linux Kernel MEDIUM 5.5
CVE-2023-52566

In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix potential use after free in nilfs_gccache_submit_read_data() In nil…

Fix: 4.14.327 / 4.19.296+
Fix from $1,600 2024-03-02
Debian Linux HIGH 7.8
CVE-2023-52572

In the Linux kernel, the following vulnerability has been resolved: cifs: Fix UAF in cifs_demultiplex_thread() There is a UAF when xfstests on cifs…

Fix: 5.4.297 / 5.10.237+
Fix from $1,950 2024-03-02
Linux Kernel MEDIUM 5.5
CVE-2023-52576

In the Linux kernel, the following vulnerability has been resolved: x86/mm, kexec, ima: Use memblock_free_late() from ima_free_kexec_buffer() The c…

Fix: 6.1.56 / 6.5.6+
Fix from $1,600 2024-03-02