Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Chrome HIGH 8.8
CVE-2023-3730

Use after free in Tab Groups in Google Chrome prior to 115.0.5790.98 allowed a remote attacker who convinced a user to engage in specific UI interact…

Fix: 115.0.5790.98+
Fix from $1,950 2023-08-01
Linux Kernel HIGH 7.8
CVE-2023-4004

A use-after-free flaw was found in the Linux kernel's netfilter in the way a user triggers the nft_pipapo_remove function with the element, without a…

Fix: 5.10.188 / 5.15.123+
Fix from $1,950 2023-07-31
Chrome HIGH 8.8
CVE-2022-4916

Use after free in Media in Google Chrome prior to 103.0.5060.53 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (C…

Fix: 103.0.5060.53+
Fix from $1,950 2023-07-29
Chrome HIGH 8.8
CVE-2022-4918

Use after free in UI in Google Chrome prior to 102.0.5005.61 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Chro…

Fix: 102.0.5005.61+
Fix from $1,950 2023-07-29
Chrome HIGH 8.8
CVE-2022-4919

Use after free in Base Internals in Google Chrome prior to 101.0.4951.41 allowed a remote attacker to perform arbitrary read/write via a crafted HTML…

Fix: 101.0.4951.41+
Fix from $1,950 2023-07-29
Chrome HIGH 8.8
CVE-2022-4921

Use after free in Accessibility in Google Chrome prior to 99.0.4844.51 allowed a remote attacker who convinced a user to engage in specific UI gestur…

Fix: 99.0.4844.51+
Fix from $1,950 2023-07-29
Chrome CRITICAL 9.6
CVE-2022-4924

Use after free in WebRTC in Google Chrome prior to 97.0.4692.71 allowed a remote attacker who had compromised the renderer process to potentially per…

Fix: 97.0.4692.71+
Fix from $2,300 2023-07-29
Chrome HIGH 8.8
CVE-2021-4317

Use after free in ANGLE in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Ch…

Fix: 96.0.4664.93+
Fix from $1,950 2023-07-29
Chrome HIGH 8.8
CVE-2021-4319

Use after free in Blink in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Ch…

Fix: 93.0.4577.82+
Fix from $1,950 2023-07-29
Chrome HIGH 8.8
CVE-2021-4320

Use after free in Blink in Google Chrome prior to 92.0.4515.107 allowed a remote attacker who had compromised the renderer process to perform arbitra…

Fix: 92.0.4515.107+
Fix from $1,950 2023-07-29
Chrome HIGH 8.8
CVE-2021-4322

Use after free in DevTools in Google Chrome prior to 91.0.4472.77 allowed an attacker who convinced a user to install a malicious extension to execut…

Fix: 91.0.4472.77+
Fix from $1,950 2023-07-29
Ipados CRITICAL 9.8
CVE-2023-38598

A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 9.6, macOS Big Sur 11.7.9, iOS 15.7.8 and iPadOS…

Fix: 9.6 / 11.7.9+
Fix from $2,300 2023-07-28
Ipados HIGH 7.8
CVE-2023-35993

A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.6.8, iOS 15.7.8 and iPadOS 15.7.8, iOS…

Fix: 9.6 / 11.7.9+
Fix from $1,950 2023-07-27
Ipados HIGH 7.8
CVE-2023-32381

A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.6.8, iOS 16.6 and iPadOS 16.6, tvOS 16…

Fix: 9.6 / 11.7.9+
Fix from $1,950 2023-07-27
Ipados HIGH 7.8
CVE-2023-32433

A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.6.8, iOS 15.7.8 and iPadOS 15.7.8, iOS…

Fix: 9.6 / 11.7.9+
Fix from $1,950 2023-07-27
Paddlepaddle CRITICAL 9.8
CVE-2023-38669

Use after free in paddle.diagonal in PaddlePaddle before 2.5.0. This resulted in a potentially exploitable condition.

Fix: 2.5.0+
Fix from $2,300 2023-07-26
Envoy MEDIUM 6.5
CVE-2023-35942

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to versions 1.27.0, 1.26.4, 1.25.9, 1.24.10, and 1.23.12…

Fix: 1.23.12 / 1.24.10+
Fix from $1,600 2023-07-25
Envoy HIGH 7.5
CVE-2023-35943

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to versions 1.27.0, 1.26.4, 1.25.9, 1.24.10, and 1.23.12…

Fix: 1.23.12 / 1.24.10+
Fix from $1,950 2023-07-25
Gdb MEDIUM 5.5
CVE-2023-39129

GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a heap use after free via the function add_pe_exported_sym() at /gdb/coff-pe-read.c.

Mitigation only
Fix from $1,600 2023-07-25
Linux Kernel HIGH 7.8
CVE-2023-3812

An out-of-bounds memory access flaw was found in the Linux kernel’s TUN/TAP device driver functionality in how a user generates a malicious (too big)…

Fix: 4.19.265 / 5.4.224+
Fix from $1,950 2023-07-24
Enterprise Linux MEDIUM 6.5
CVE-2023-3019

A DMA reentrancy issue leading to a use-after-free error was found in the e1000e NIC emulation code in QEMU. This issue could allow a privileged gues…

Fix: 8.2.0+
Fix from $1,600 2023-07-24
Linux Kernel HIGH 7.1
CVE-2023-3567

A use-after-free flaw was found in vcs_read in drivers/tty/vt/vc_screen.c in vc_screen in the Linux Kernel. This issue may allow an attacker with loc…

Fix: 6.2.0+
Fix from $1,950 2023-07-24
Linux Kernel HIGH 7.8
CVE-2023-3609

A use-after-free vulnerability in the Linux kernel's net/sched: cls_u32 component can be exploited to achieve local privilege escalation. If tcf_c…

Fix: 6.4+
Fix from $1,950 2023-07-21
Linux Kernel HIGH 7.8
CVE-2023-3610

A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. Flaw in …

Fix: 5.10.188 / 5.15.119+
Fix from $1,950 2023-07-21
Linux Kernel HIGH 7.8
CVE-2023-3776

A use-after-free vulnerability in the Linux kernel's net/sched: cls_fw component can be exploited to achieve local privilege escalation. If tcf_chan…

Fix: 4.14.322 / 4.19.291+
Fix from $1,950 2023-07-21
Grub2 HIGH 7.8
CVE-2022-28736

There's a use-after-free vulnerability in grub_cmd_chainloader() function; The chainloader command is used to boot up operating systems that doesn't …

Fix: 2.06-3+
Fix from $1,950 2023-07-20
Pdf Reader HIGH 8.8
CVE-2023-27379

A use-after-free vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 12.1.2.15332. By prematurely deleting objects …

No fix yet
Fix from $1,950 2023-07-19
Pdf Reader HIGH 8.8
CVE-2023-28744

A use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader, version 12.1.1.15289. A specially crafted PDF document…

No fix yet
Fix from $1,950 2023-07-19
Pdf Reader HIGH 8.8
CVE-2023-33866

A use-after-free vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 12.1.2.15332. By prematurely deleting objects …

No fix yet
Fix from $1,950 2023-07-19
Pdf Reader HIGH 8.8
CVE-2023-33876

A use-after-free vulnerability exists in the way Foxit Reader 12.1.2.15332 handles destroying annotations. Specially crafted Javascript code inside a…

No fix yet
Fix from $1,950 2023-07-19