Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Vim HIGH 7.8
CVE-2022-3591

Use After Free in GitHub repository vim/vim prior to 9.0.0789.

Fix: 9.0.0789+
Fix from $1,950 2022-12-02
Chrome HIGH 8.8
CVE-2022-4194

Use after free in Accessibility in Google Chrome prior to 108.0.5359.71 allowed a remote attacker to potentially exploit heap corruption via a crafte…

Fix: 108.0.5359.71+
Fix from $1,950 2022-11-30
Chrome HIGH 8.8
CVE-2022-4175

Use after free in Camera Capture in Google Chrome prior to 108.0.5359.71 allowed a remote attacker to potentially exploit heap corruption via a craft…

Fix: 108.0.5359.71+
Fix from $1,950 2022-11-30
Chrome HIGH 8.8
CVE-2022-4177

Use after free in Extensions in Google Chrome prior to 108.0.5359.71 allowed an attacker who convinced a user to install an extension to potentially …

Fix: 108.0.5359.71+
Fix from $1,950 2022-11-30
Chrome HIGH 8.8
CVE-2022-4178EPSS 24%

Use after free in Mojo in Google Chrome prior to 108.0.5359.71 allowed a remote attacker who had compromised the renderer process to potentially expl…

Fix: 108.0.5359.71+
Fix from $1,950 2022-11-30
Chrome HIGH 8.8
CVE-2022-4179

Use after free in Audio in Google Chrome prior to 108.0.5359.71 allowed an attacker who convinced a user to install a malicious extension to potentia…

Fix: 108.0.5359.71+
Fix from $1,950 2022-11-30
Chrome HIGH 8.8
CVE-2022-4180

Use after free in Mojo in Google Chrome prior to 108.0.5359.71 allowed an attacker who convinced a user to install a malicious extension to potential…

Fix: 108.0.5359.71+
Fix from $1,950 2022-11-30
Chrome HIGH 8.8
CVE-2022-4181

Use after free in Forms in Google Chrome prior to 108.0.5359.71 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 108.0.5359.71+
Fix from $1,950 2022-11-30
Chrome HIGH 8.8
CVE-2022-4191

Use after free in Sign-In in Google Chrome prior to 108.0.5359.71 allowed a remote attacker who convinced a user to engage in specific UI interaction…

Fix: 108.0.5359.71+
Fix from $1,950 2022-11-30
Chrome HIGH 8.8
CVE-2022-4192

Use after free in Live Caption in Google Chrome prior to 108.0.5359.71 allowed a remote attacker who convinced a user to engage in specific UI intera…

Fix: 108.0.5359.71+
Fix from $1,950 2022-11-30
Gpac HIGH 7.8
CVE-2022-45343

GPAC v2.1-DEV-rev478-g696e6f868-master was discovered to contain a heap use-after-free via the Q_IsTypeOn function at /gpac/src/bifs/unquantize.c.

Fix: 2.2.0+
Fix from $1,950 2022-11-29
Linux Kernel HIGH 7.0
CVE-2022-45919

An issue was discovered in the Linux kernel through 6.0.10. In drivers/media/dvb-core/dvb_ca_en50221.c, a use-after-free can occur is there is a disc…

Fix: 4.14.317 / 4.19.285+
Fix from $1,950 2022-11-27
Linux Kernel HIGH 7.0
CVE-2022-45884

An issue was discovered in the Linux kernel through 6.0.9. drivers/media/dvb-core/dvbdev.c has a use-after-free, related to dvb_register_device dynam…

Fix: 4.19.311 / 5.4.249+
Fix from $1,950 2022-11-25
Linux Kernel HIGH 7.0
CVE-2022-45885

An issue was discovered in the Linux kernel through 6.0.9. drivers/media/dvb-core/dvb_frontend.c has a race condition that can cause a use-after-free…

Fix: after 6.0.9
Fix from $1,950 2022-11-25
Linux Kernel HIGH 7.0
CVE-2022-45886

An issue was discovered in the Linux kernel through 6.0.9. drivers/media/dvb-core/dvb_net.c has a .disconnect versus dvb_device_open race condition t…

Fix: 4.19.285 / 5.4.246+
Fix from $1,950 2022-11-25
Linux Kernel MEDIUM 6.4
CVE-2022-45888

An issue was discovered in the Linux kernel through 6.0.9. drivers/char/xillybus/xillyusb.c has a race condition and use-after-free during physical r…

Fix: after 6.0.9
Fix from $1,600 2022-11-25
Linux Kernel HIGH 8.8
CVE-2022-42896

There are use-after-free vulnerabilities in the Linux kernel's net/bluetooth/l2cap_core.c's l2cap_connect and l2cap_le_connect_req functions which ma…

Fix: 4.9.335 / 4.14.301+
Fix from $1,950 2022-11-23
Linux Kernel HIGH 7.8
CVE-2022-3910

Use After Free vulnerability in Linux Kernel allows Privilege Escalation. An improper Update of Reference Count in io_uring leads to Use-After-Free a…

Fix: 5.19.11+
Fix from $1,950 2022-11-22
Pdf Reader HIGH 7.8
CVE-2022-40129

A use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader, version 12.0.1.12430. A specially-crafted PDF document…

No fix yet
Fix from $1,950 2022-11-21
Pdf Reader HIGH 7.8
CVE-2022-32774

A use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader, version 12.0.1.12430. By prematurely deleting objects …

No fix yet
Fix from $1,950 2022-11-21
Pdf Reader HIGH 7.8
CVE-2022-37332

A use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader, version 12.0.1.12430. A specially-crafted PDF document…

No fix yet
Fix from $1,950 2022-11-21
Pdf Reader HIGH 7.8
CVE-2022-38097

A use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader, version 12.0.1.12430. By prematurely destroying annota…

Mitigation only
Fix from $1,950 2022-11-21
Fips Java Api MEDIUM 5.5
CVE-2022-45146

An issue was discovered in the FIPS Java API of Bouncy Castle BC-FJA before 1.0.2.4. Changes to the JVM garbage collector in Java 13 and later trigge…

Fix: 1.0.2.4+
Fix from $1,600 2022-11-21
Drachtio Server CRITICAL 9.8
CVE-2022-45474

drachtio-server 0.8.18 has a request-handler.cpp event_cb use-after-free for any request.

Patch available
Fix from $2,300 2022-11-18
Apq8009 Firmware HIGH 7.8
CVE-2022-25743

Memory corruption in graphics due to use-after-free while importing graphics buffer in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, …

Patch available
Fix from $1,950 2022-11-15
Harmonyos HIGH 7.5
CVE-2022-44547

The Display Service module has a UAF vulnerability. Successful exploitation of this vulnerability may affect the display service availability.

No fix yet
Fix from $1,950 2022-11-09
Harmonyos HIGH 7.5
CVE-2022-44550

The graphics display module has a UAF vulnerability when traversing graphic layers. Successful exploitation of this vulnerability may affect system a…

No fix yet
Fix from $1,950 2022-11-09
Chrome HIGH 8.8
CVE-2022-3449

Use after free in Safe Browsing in Google Chrome prior to 106.0.5249.119 allowed an attacker who convinced a user to install a malicious extension to…

Fix: 106.0.5249.119+
Fix from $1,950 2022-11-09
Chrome HIGH 8.8
CVE-2022-3450

Use after free in Peer Connection in Google Chrome prior to 106.0.5249.119 allowed a remote attacker to potentially exploit heap corruption via a cra…

Fix: 106.0.5249.119+
Fix from $1,950 2022-11-09
Chrome HIGH 8.8
CVE-2022-3448

Use after free in Permissions API in Google Chrome prior to 106.0.5249.119 allowed a remote attacker who convinced a user to engage in specific UI ge…

Fix: 106.0.5249.119+
Fix from $1,950 2022-11-09