Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Fastconnect 6700 Firmware HIGH 7.8
CVE-2023-21672

Memory corruption in Audio while running concurrent tunnel playback or during concurrent audio tunnel recording sessions.

Patch available
Fix from $1,950 2023-07-04
Linux Kernel HIGH 7.8
CVE-2023-3390

A use-after-free vulnerability was found in the Linux kernel's netfilter subsystem in net/netfilter/nf_tables_api.c. Mishandled error handling with …

Fix: 4.14.322 / 4.19.291+
Fix from $1,950 2023-06-28
Linux Kernel HIGH 7.8
CVE-2023-3389

A use-after-free vulnerability in the Linux Kernel io_uring subsystem can be exploited to achieve local privilege escalation. Racing a io_uring canc…

Fix: 5.10.185 / 6.4+
Fix from $1,950 2023-06-28
Android MEDIUM 6.7
CVE-2023-21146

there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with System execution privileges …

Mitigation only
Fix from $1,600 2023-06-28
Android HIGH 7.8
CVE-2023-21147

In lwis_i2c_device_disable of lwis_device_i2c.c, there is a possible UAF due to a logic error in the code. This could lead to local escalation of pri…

Mitigation only
Fix from $1,950 2023-06-28
Navisworks HIGH 7.8
CVE-2023-25001

A maliciously crafted SKP file in Autodesk Navisworks 2023 and 2022 be used to trigger use-after-free vulnerability. Exploitation of this vulnerabili…

Mitigation only
Fix from $1,950 2023-06-27
3ds Max HIGH 7.8
CVE-2023-25002

A maliciously crafted SKP file in Autodesk products is used to trigger use-after-free vulnerability. Exploitation of this vulnerability may lead to c…

Mitigation only
Fix from $1,950 2023-06-27
Chrome HIGH 8.8
CVE-2023-3421

Use after free in Media in Google Chrome prior to 114.0.5735.198 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 114.0.5735.198+
Fix from $1,950 2023-06-26
Chrome HIGH 8.8
CVE-2023-3422

Use after free in Guest View in Google Chrome prior to 114.0.5735.198 allowed an attacker who convinced a user to install a malicious extension to po…

Fix: 114.0.5735.198+
Fix from $1,950 2023-06-26
Linux Kernel HIGH 7.1
CVE-2023-3317

A use-after-free flaw was found in mt7921_check_offload_capability in drivers/net/wireless/mediatek/mt76/mt7921/init.c in wifi mt76/mt7921 sub-compon…

Fix: 6.2.15+
Fix from $1,950 2023-06-23
Ipados CRITICAL 9.8
CVE-2023-32412

A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, iOS 15.7.6 a…

Fix: 9.5 / 11.7.7+
Fix from $2,300 2023-06-23
Safari HIGH 8.8
CVE-2023-32373 KEVEPSS 12%

A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, iOS 15.7.6 a…

Fix: 2.42.3 / 9.5+
Fix from $1,950 2023-06-23
macOS CRITICAL 9.8
CVE-2023-32387

A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.7.7, macOS Monterey 12.6.6, macOS Ventu…

Fix: 11.7.7 / 12.6.6+
Fix from $2,300 2023-06-23
Ipados HIGH 7.8
CVE-2023-32398

A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, iOS 15.7.6 a…

Fix: 9.5 / 11.7.7+
Fix from $1,950 2023-06-23
Mac Os X CRITICAL 9.8
CVE-2022-22630

A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.6.6, macOS Monterey 12.3, Security Upda…

Fix: 11.6.6 / 12.3+
Fix from $2,300 2023-06-23
Fedora HIGH 7.1
CVE-2023-34241

OpenPrinting CUPS is a standards-based, open source printing system for Linux and other Unix-like operating systems. Starting in version 2.0.0 and pr…

Fix: 2.4.6 / 11.7.9+
Fix from $1,950 2023-06-22
Vcenter Server CRITICAL 9.8
CVE-2023-20893

The VMware vCenter Server contains a use-after-free vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access…

Fix: 7.0+
Fix from $2,300 2023-06-22
Libwebp HIGH 7.5
CVE-2023-1999

There exists a use after free/double free in libwebp. An attacker can use the ApplyFiltersAndEncode() function and loop through to free best.bw and a…

Fix: 1.3.1+
Fix from $1,950 2023-06-20
Firefox Mobile HIGH 7.5
CVE-2023-25747

A potential use-after-free in libaudio was fixed by disabling the AAudio backend when running on Android API below version 30. *This bug only affects…

Fix: 110.1+
Fix from $1,950 2023-06-19
Linux Kernel HIGH 7.0
CVE-2023-35823

An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in saa7134_finidev in drivers/media/pci/saa7134/saa7134-core.c.

Fix: 6.3.2+
Fix from $1,950 2023-06-18
Linux Kernel HIGH 7.0
CVE-2023-35824

An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in dm1105_remove in drivers/media/pci/dm1105/dm1105.c.

Fix: 6.3.2+
Fix from $1,950 2023-06-18
Linux Kernel HIGH 7.0
CVE-2023-35826

An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in cedrus_remove in drivers/staging/media/sunxi/cedrus/cedrus.c.

Fix: 6.1.28 / 6.2.15+
Fix from $1,950 2023-06-18
Linux Kernel HIGH 7.0
CVE-2023-35827

An issue was discovered in the Linux kernel through 6.3.8. A use-after-free was found in ravb_remove in drivers/net/ethernet/renesas/ravb_main.c.

Fix: 6.3.8+
Fix from $1,950 2023-06-18
Linux Kernel HIGH 7.0
CVE-2023-35828

An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in renesas_usb3_remove in drivers/usb/gadget/udc/renesas_usb3.c.

Fix: 4.19.283 / 5.4.243+
Fix from $1,950 2023-06-18
Linux Kernel HIGH 7.0
CVE-2023-35829

An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in rkvdec_remove in drivers/staging/media/rkvdec/rkvdec.c.

Fix: 5.10.180 / 5.15.111+
Fix from $1,950 2023-06-18
365 Apps HIGH 7.8
CVE-2023-28287

Microsoft Publisher Remote Code Execution Vulnerability

Patch available
Fix from $1,950 2023-06-17
Fedora MEDIUM 5.5
CVE-2023-34475

A heap use after free issue was discovered in ImageMagick's ReplaceXmpValue() function in MagickCore/profile.c. An attacker could trick user to open …

Fix: 7.1.1-10+
Fix from $1,600 2023-06-16
Libressl CRITICAL 9.8
CVE-2023-35784

A double free or use after free could occur after SSL_clear in OpenBSD 7.2 before errata 026 and 7.3 before errata 004, and in LibreSSL before 3.6.3 …

Fix: 3.6.3 / 3.7.3+
Fix from $2,300 2023-06-16
Xlsxio HIGH 7.8
CVE-2023-34795

xlsxio v0.1.2 to v0.2.34 was discovered to contain a free of uninitialized pointer in the xlsxioread_sheetlist_close() function. This vulnerability a…

Fix: after 0.2.34
Fix from $1,950 2023-06-16
Odbc Driver For Sql Server HIGH 7.8
CVE-2023-29356

Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability

Fix: 17.10.4.1 / 18.2.1.1+
Fix from $1,950 2023-06-16