Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Linux Kernel HIGH 7.0
CVE-2023-51780

An issue was discovered in the Linux kernel before 6.6.8. do_vcc_ioctl in net/atm/ioctl.c has a use-after-free because of a vcc_recvmsg race conditio…

Fix: 6.6.8+
Fix from $1,950 2024-01-11
Linux Kernel HIGH 7.0
CVE-2023-51781

An issue was discovered in the Linux kernel before 6.6.8. atalk_ioctl in net/appletalk/ddp.c has a use-after-free because of an atalk_recvmsg race co…

Fix: 6.6.8+
Fix from $1,950 2024-01-11
Linux Kernel HIGH 7.0
CVE-2023-51782

An issue was discovered in the Linux kernel before 6.6.8. rose_ioctl in net/rose/af_rose.c has a use-after-free because of a rose_accept race conditi…

Fix: 6.6.8+
Fix from $1,950 2024-01-11
Ipados HIGH 7.8
CVE-2023-42870

A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Sonoma 14, iOS 17 and iPadOS 17. An app may be abl…

Fix: 14.0 / 17.0+
Fix from $1,950 2024-01-10
Ipados HIGH 7.8
CVE-2023-41974 KEV

A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 17 and iPadOS 17, iOS 15.8.7 and iPadOS 15.8.7. An a…

Fix: 15.8.7 / 17.0+
Fix from $1,950 2024-01-10
Safari CRITICAL 9.8
CVE-2023-40414

A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 10, iOS 17 and iPadOS 17, tvOS 17, macOS Sonoma …

Fix: 10.0 / 14.0+
Fix from $2,300 2024-01-10
macOS HIGH 7.8
CVE-2023-32378

A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Ventura 13.3, macOS Big Sur 11.7.5, macOS Monterey…

Fix: 11.7.5 / 12.6.4+
Fix from $1,950 2024-01-10
Windows 10 1507 HIGH 7.5
CVE-2024-21307

Remote Desktop Client Remote Code Execution Vulnerability

Fix: 10.0.10240.20402 / 10.0.14393.6614+
Fix from $1,950 2024-01-09
Windows 10 21h2 HIGH 7.8
CVE-2024-20681

Windows Subsystem for Linux Elevation of Privilege Vulnerability

Fix: 10.0.19044.3930 / 10.0.19045.3930+
Fix from $1,950 2024-01-09
Windows 10 1507 HIGH 7.8
CVE-2024-20683

Win32k Elevation of Privilege Vulnerability

Fix: 10.0.10240.20402 / 10.0.14393.6614+
Fix from $1,950 2024-01-09
Windows Server 2008 MEDIUM 6.6
CVE-2024-20655

Microsoft Online Certificate Status Protocol (OCSP) Remote Code Execution Vulnerability

Patch available
Fix from $1,600 2024-01-09
Linux Kernel HIGH 7.0
CVE-2022-2602

io_uring UAF, Unix SCM garbage collection

Fix: after 6.0.19
Fix from $1,950 2024-01-08
Linux Kernel HIGH 7.8
CVE-2022-2585

It was discovered that when exec'ing from a non-leader thread, armed POSIX CPU timers would be left on a list but freed, leading to a use-after-free.

Fix: 5.10.137 / 5.15.61+
Fix from $1,950 2024-01-08
Linux Kernel HIGH 7.8
CVE-2022-2586 KEVEPSS 10%

It was discovered that a nft object or expression could reference a nft set on a different nft table, leading to a use-after-free once that table was…

Fix: 4.14.316 / 4.19.256+
Fix from $1,950 2024-01-08
Linux Kernel HIGH 7.8
CVE-2022-2588EPSS 6%

It was discovered that the cls_route filter implementation in the Linux kernel would not remove an old filter from the hashtable before freeing it if…

Fix: 4.9.326 / 4.14.291+
Fix from $1,950 2024-01-08
Gtkwave HIGH 7.8
CVE-2023-37576

Multiple use-after-free vulnerabilities exist in the VCD get_vartoken realloc functionality of GTKWave 3.3.115. A specially crafted .vcd file can lea…

No fix yet
Fix from $1,950 2024-01-08
Gtkwave HIGH 7.8
CVE-2023-37577

Multiple use-after-free vulnerabilities exist in the VCD get_vartoken realloc functionality of GTKWave 3.3.115. A specially crafted .vcd file can lea…

No fix yet
Fix from $1,950 2024-01-08
Gtkwave HIGH 7.8
CVE-2023-37578

Multiple use-after-free vulnerabilities exist in the VCD get_vartoken realloc functionality of GTKWave 3.3.115. A specially crafted .vcd file can lea…

No fix yet
Fix from $1,950 2024-01-08
Gtkwave HIGH 7.8
CVE-2023-37573

Multiple use-after-free vulnerabilities exist in the VCD get_vartoken realloc functionality of GTKWave 3.3.115. A specially crafted .vcd file can lea…

No fix yet
Fix from $1,950 2024-01-08
Gtkwave HIGH 7.8
CVE-2023-37574

Multiple use-after-free vulnerabilities exist in the VCD get_vartoken realloc functionality of GTKWave 3.3.115. A specially crafted .vcd file can lea…

No fix yet
Fix from $1,950 2024-01-08
Gtkwave HIGH 7.8
CVE-2023-37575

Multiple use-after-free vulnerabilities exist in the VCD get_vartoken realloc functionality of GTKWave 3.3.115. A specially crafted .vcd file can lea…

No fix yet
Fix from $1,950 2024-01-08
Valhall Gpu Kernel Driver MEDIUM 5.5
CVE-2023-5091

Use After Free vulnerability in Arm Ltd Valhall GPU Kernel Driver allows a local non-privileged user to make improper GPU processing operations to ga…

Mitigation only
Fix from $1,600 2024-01-08
Lotos Webserver CRITICAL 9.8
CVE-2024-22088

Lotos WebServer through 0.1.1 (commit 3eb36cc) has a use-after-free in buffer_avail() at buffer.h via a long URI, because realloc is mishandled.

Fix: after 0.1.1
Fix from $2,300 2024-01-05
Debian Linux HIGH 7.0
CVE-2023-6270

A flaw was found in the ATA over Ethernet (AoE) driver in the Linux kernel. The aoecmd_cfg_pkts() function improperly updates the refcnt on `struct n…

Fix: 6.9+
Fix from $1,950 2024-01-04
Chrome HIGH 8.8
CVE-2024-0224

Use after free in WebAudio in Google Chrome prior to 120.0.6099.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HT…

Fix: 120.0.6099.199+
Fix from $1,950 2024-01-04
Chrome HIGH 8.8
CVE-2024-0225

Use after free in WebGPU in Google Chrome prior to 120.0.6099.199 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 120.0.6099.199+
Fix from $1,950 2024-01-04
Chrome HIGH 8.8
CVE-2024-0222

Use after free in ANGLE in Google Chrome prior to 120.0.6099.199 allowed a remote attacker who had compromised the renderer process to potentially ex…

Fix: 120.0.6099.199+
Fix from $1,950 2024-01-04
Yasm MEDIUM 5.5
CVE-2023-49554

Use After Free vulnerability in YASM 1.3.0.86.g9def allows a remote attacker to cause a denial of service via the do_directive function in the module…

No fix yet
Fix from $1,600 2024-01-03
Codeready Linux Builder For Eus MEDIUM 6.7
CVE-2024-0193

A use-after-free flaw was found in the netfilter subsystem of the Linux kernel. If the catchall element is garbage-collected when the pipapo set is r…

Patch available
Fix from $1,600 2024-01-02
Openharmony MEDIUM 5.5
CVE-2023-47857

in OpenHarmony v3.2.2 and prior versions allow a local attacker cause multimedia camera crash through modify a released pointer.

Fix: after 3.2.2
Fix from $1,600 2024-01-02