Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Acrobat Dc HIGH 7.8
CVE-2023-44336

Adobe Acrobat Reader versions 23.006.20360 (and earlier) and 20.005.30524 (and earlier) are affected by a Use After Free vulnerability that could res…

Fix: 20.005.30539 / 23.006.20380+
Fix from $1,950 2023-11-16
Gpac HIGH 7.8
CVE-2023-48011

GPAC v2.3-DEV-rev566-g50c2ab06f-master was discovered to contain a heap-use-after-free via the flush_ref_samples function at /gpac/src/isomedia/movie…

Patch available
Fix from $1,950 2023-11-15
Chrome HIGH 8.8
CVE-2023-5997

Use after free in Garbage Collection in Google Chrome prior to 119.0.6045.159 allowed a remote attacker to potentially exploit heap corruption via a …

Fix: 119.0.6045.159+
Fix from $1,950 2023-11-15
Chrome HIGH 8.8
CVE-2023-6112EPSS 25%

Use after free in Navigation in Google Chrome prior to 119.0.6045.159 allowed a remote attacker to potentially exploit heap corruption via a crafted …

Fix: 119.0.6045.159+
Fix from $1,950 2023-11-15
Aptio V Uefi Firmware Integrator Tools MEDIUM 5.5
CVE-2023-26589

Use after free in some Intel(R) Aptio* V UEFI Firmware Integrator Tools may allowed an authenticated user to potentially enable denial of service via…

Mitigation only
Fix from $1,600 2023-11-14
365 Apps HIGH 7.8
CVE-2023-36041EPSS 57%

Microsoft Excel Remote Code Execution Vulnerability

Patch available
Fix from $1,950 2023-11-14
Linux Kernel HIGH 7.8
CVE-2023-6111

A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. The func…

Fix: 5.15.140 / 6.1.64+
Fix from $1,950 2023-11-14
Openvpn CRITICAL 9.8
CVE-2023-46850

Use after free in OpenVPN version 2.6.0 to 2.6.6 may lead to undefined behavoir, leaking memory buffers or remote execution when sending network buff…

Fix: 2.12.2+
Fix from $2,300 2023-11-11
Linux Kernel MEDIUM 6.4
CVE-2023-39198

A race condition was found in the QXL driver in the Linux kernel. The qxl_mode_dumb_create() function dereferences the qobj returned by the qxl_gem_o…

Fix: 6.5+
Fix from $1,600 2023-11-09
Linux Kernel MEDIUM 5.5
CVE-2023-6039

A use-after-free flaw was found in lan78xx_disconnect in drivers/net/usb/lan78xx.c in the network sub-component, net/usb/lan78xx in the Linux Kernel.…

Fix: 6.5+
Fix from $1,600 2023-11-09
View Driver MEDIUM 5.5
CVE-2023-4891

A potential use-after-free vulnerability was reported in the Lenovo View driver that could result in denial of service.

Fix: 2.3.18.1+
Fix from $1,600 2023-11-08
Jbig2enc MEDIUM 5.5
CVE-2023-46362

jbig2enc v0.28 was discovered to contain a heap-use-after-free via jbig2enc_auto_threshold_using_hash in src/jbig2enc.cc.

No fix yet
Fix from $1,600 2023-11-08
Chrome HIGH 8.8
CVE-2023-5996

Use after free in WebAudio in Google Chrome prior to 119.0.6045.123 allowed a remote attacker to potentially exploit heap corruption via a crafted HT…

Fix: 119.0.6045.123+
Fix from $1,950 2023-11-08
Harmonyos HIGH 7.5
CVE-2023-46768

Multi-thread vulnerability in the idmap module. Successful exploitation of this vulnerability may cause features to perform abnormally.

No fix yet
Fix from $1,950 2023-11-08
Harmonyos HIGH 7.5
CVE-2023-46769

Use-After-Free (UAF) vulnerability in the dubai module. Successful exploitation of this vulnerability will affect availability.

No fix yet
Fix from $1,950 2023-11-08
Mali Gpu Kernel Driver HIGH 7.8
CVE-2023-4295

A local non-privileged user can make improper GPU memory processing operations to gain access to already freed memory.

No fix yet
Fix from $1,950 2023-11-07
Wcn6750 Firmware HIGH 7.8
CVE-2023-33074

Memory corruption in Audio when SSR event is triggered after music playback is stopped.

Patch available
Fix from $1,950 2023-11-07
Linux Kernel HIGH 7.0
CVE-2023-1476

A use-after-free flaw was found in the Linux kernel’s mm/mremap memory address space accounting source code. This issue occurs due to a race conditio…

Fix: 5.14+
Fix from $1,950 2023-11-03
Linux Kernel HIGH 8.1
CVE-2023-1194

An out-of-bounds (OOB) memory read flaw was found in parse_lease_state in the KSMBD implementation of the in-kernel samba server and CIFS in the Linu…

Fix: 5.15.145 / 6.1.34+
Fix from $1,950 2023-11-03
Edge Chromium HIGH 7.3
CVE-2023-36034

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

Fix: 118.0.2088.88 / 119.0.2151.44+
Fix from $1,950 2023-11-03
Linux Kernel MEDIUM 6.5
CVE-2023-1192

A use-after-free flaw was found in smb2_is_status_io_timeout() in CIFS in the Linux Kernel. After CIFS transfers response data to a system call, ther…

Fix: 6.4+
Fix from $1,600 2023-11-01
Linux Kernel MEDIUM 6.5
CVE-2023-1193

A use-after-free flaw was found in setup_async_work in the KSMBD implementation of the in-kernel samba server and CIFS in the Linux kernel. This issu…

Fix: 6.3+
Fix from $1,600 2023-11-01
Linux Kernel MEDIUM 6.3
CVE-2023-3397

A race condition occurred between the functions lmLogClose and txEnd in JFS, in the Linux Kernel, executed in different threads. This flaw allows a l…

Patch available
Fix from $1,600 2023-11-01
Chrome HIGH 8.8
CVE-2023-5852

Use after free in Printing in Google Chrome prior to 119.0.6045.105 allowed a remote attacker who convinced a user to engage in specific UI gestures …

Fix: 119.0.6045.105+
Fix from $1,950 2023-11-01
Chrome HIGH 8.8
CVE-2023-5854

Use after free in Profiles in Google Chrome prior to 119.0.6045.105 allowed a remote attacker who convinced a user to engage in specific UI gestures …

Fix: 119.0.6045.105+
Fix from $1,950 2023-11-01
Chrome HIGH 8.8
CVE-2023-5855

Use after free in Reading Mode in Google Chrome prior to 119.0.6045.105 allowed a remote attacker who convinced a user to engage in specific UI gestu…

Fix: 119.0.6045.105+
Fix from $1,950 2023-11-01
Chrome HIGH 8.8
CVE-2023-5856

Use after free in Side Panel in Google Chrome prior to 119.0.6045.105 allowed a remote attacker who convinced a user to engage in specific UI gesture…

Fix: 119.0.6045.105+
Fix from $1,950 2023-11-01
Linux Kernel HIGH 8.8
CVE-2023-5178EPSS 9%

A use-after-free vulnerability was found in drivers/nvme/target/tcp.c` in `nvmet_tcp_free_crypto` due to a logical bug in the NVMe/TCP subsystem in t…

Fix: 5.4.260 / 5.10.199+
Fix from $1,950 2023-11-01
Android HIGH 7.8
CVE-2023-21381

In Media Resource Manager, there is a possible local arbitrary code execution due to use after free. This could lead to local escalation of privilege…

Fix: 14.0+
Fix from $1,950 2023-10-30
Android HIGH 8.8
CVE-2023-21392

In Bluetooth, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege when connecting to …

Fix: 14.0+
Fix from $1,950 2023-10-30