Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Debian Linux MEDIUM 5.5
CVE-2022-26291

lrzip v0.641 was discovered to contain a multiple concurrency use-after-free between the functions zpaq_decompress_buf() and clear_rulist(). This vul…

Patch available
Fix from $1,600 2022-03-28
Mruby CRITICAL 9.1
CVE-2022-1106

use after free in mrb_vm_exec in GitHub repository mruby/mruby prior to 3.2.

Fix: after 3.1
Fix from $2,300 2022-03-27
Mruby HIGH 8.2
CVE-2022-1071

User after free in mrb_vm_exec in GitHub repository mruby/mruby prior to 3.2.

Fix: after 3.1
Fix from $1,950 2022-03-26
Linux Kernel HIGH 7.0
CVE-2021-4202

A use-after-free flaw was found in nci_request in net/nfc/nci/core.c in NFC Controller Interface (NCI) in the Linux kernel. This flaw could allow a l…

Fix: 4.4.294 / 4.9.292+
Fix from $1,950 2022-03-25
Linux Kernel MEDIUM 6.8
CVE-2021-4203

A use-after-free read flaw was found in sock_getsockopt() in net/core/sock.c due to SO_PEERCRED and SO_PEERGROUPS race with listen() (and connect()) …

Fix: 5.15+
Fix from $1,600 2022-03-25
Linux Kernel MEDIUM 5.5
CVE-2021-4150

A use-after-free flaw was found in the add_partition in block/partitions/core.c in the Linux kernel. A local attacker with user privileges could caus…

Fix: 5.15+
Fix from $1,600 2022-03-23
Debian Linux HIGH 7.5
CVE-2021-3748

A use-after-free vulnerability was found in the virtio-net device of QEMU. It could occur when the descriptor's address belongs to the non direct acc…

Fix: 6.2.0+
Fix from $1,950 2022-03-23
Radare2 HIGH 7.8
CVE-2022-1031

Use After Free in op_is_set_bp in GitHub repository radareorg/radare2 prior to 5.6.6.

Fix: 5.6.6+
Fix from $1,950 2022-03-22
Ipados HIGH 7.8
CVE-2022-22667

A use after free issue was addressed with improved memory management. This issue is fixed in iOS 15.4 and iPadOS 15.4. An application may be able to …

Fix: 15.4+
Fix from $1,950 2022-03-18
macOS HIGH 7.8
CVE-2022-22669

A use after free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.3. An application may be able to execu…

Fix: 12.3+
Fix from $1,950 2022-03-18
Ipados CRITICAL 9.8
CVE-2022-22641

A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 15.4, iOS 15.4 and iPadOS 15.4, macOS Monterey 12.3…

Fix: 12.3 / 15.4+
Fix from $2,300 2022-03-18
Ipados HIGH 7.8
CVE-2022-22614

A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 15.4, iOS 15.4 and iPadOS 15.4, macOS Big Sur 11.6.…

Fix: 8.5 / 10.15.7+
Fix from $1,950 2022-03-18
Ipados HIGH 7.8
CVE-2022-22615

A use after free issue was addressed with improved memory management. This issue is fixed in tvOS 15.4, iOS 15.4 and iPadOS 15.4, macOS Big Sur 11.6.…

Fix: 8.5 / 10.15.7+
Fix from $1,950 2022-03-18
Safari HIGH 8.8
CVE-2022-22620 KEVEPSS 16%

A use after free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.2.1, iOS 15.3.1 and iPadOS 15.3.1, Saf…

Fix: 12.2.1 / 15.3+
Fix from $1,950 2022-03-18
Linux Kernel HIGH 7.8
CVE-2022-1011

A use-after-free flaw was found in the Linux kernel’s FUSE filesystem in the way a user triggers write(). This flaw allows a local user to gain unaut…

Fix: 5.17+
Fix from $1,950 2022-03-18
Safari HIGH 8.8
CVE-2022-22590

A use after free issue was addressed with improved memory management. This issue is fixed in iOS 15.3 and iPadOS 15.3, watchOS 8.4, tvOS 15.3, Safari…

Fix: 2.36.7 / 8.4+
Fix from $1,950 2022-03-18
Linux Kernel MEDIUM 5.5
CVE-2021-45868

In the Linux kernel before 5.15.3, fs/quota/quota_tree.c does not validate the block number in the quota tree (on disk). This can, for example, lead …

Fix: 5.15.3+
Fix from $1,600 2022-03-18
Android HIGH 7.8
CVE-2021-39714

In ion_buffer_kmap_get of ion.c, there is a possible use-after-free due to an integer overflow. This could lead to local escalation of privilege with…

Patch available
Fix from $1,950 2022-03-16
Android HIGH 7.8
CVE-2021-39698

In aio_poll_complete_work of aio.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege w…

Patch available
Fix from $1,950 2022-03-16
Lua MEDIUM 6.3
CVE-2021-44964

Use after free in garbage collector and finalizer of lgc.c in Lua interpreter 5.4.0~5.4.3 allows attackers to perform Sandbox Escape via a crafted sc…

Fix: after 5.4.3
Fix from $1,600 2022-03-14
Gpac MEDIUM 5.5
CVE-2022-24576

GPAC 1.0.1 is affected by Use After Free through MP4Box.

No fix yet
Fix from $1,600 2022-03-14
Android MEDIUM 6.2
CVE-2022-25822

An use after free vulnerability in sdp driver prior to SMR Mar-2022 Release 1 allows kernel crash.

Mitigation only
Fix from $1,600 2022-03-10
Cx Programmer HIGH 7.8
CVE-2022-25325

Use after free vulnerability in CX-Programmer v9.76.1 and earlier which is a part of CX-One (v4.60) suite allows an attacker to cause information dis…

Fix: 9.77+
Fix from $1,950 2022-03-10
Cx Programmer HIGH 7.8
CVE-2022-25230

Use after free vulnerability in CX-Programmer v9.76.1 and earlier which is a part of CX-One (v4.60) suite allows an attacker to cause information dis…

Fix: 9.77+
Fix from $1,950 2022-03-10
Pdftron HIGH 7.8
CVE-2022-24960

A use after free vulnerability was discovered in PDFTron SDK version 9.2.0. A crafted PDF can overwrite RIP with data previously allocated on the hea…

Mitigation only
Fix from $1,950 2022-03-10
Radare2 MEDIUM 5.5
CVE-2022-0849

Use After Free in r_reg_get_name_idx in GitHub repository radareorg/radare2 prior to 5.6.6.

Fix: 5.6.6+
Fix from $1,600 2022-03-05
Linux Kernel HIGH 7.0
CVE-2021-3640

A flaw use-after-free in function sco_sock_sendmsg() of the Linux kernel HCI subsystem was found in the way user calls ioct UFFDIO_REGISTER or other …

Fix: 4.4.293 / 4.9.291+
Fix from $1,950 2022-03-03
Samba HIGH 8.8
CVE-2021-3738

In DCE/RPC it is possible to share the handles (cookies for resource state) between multiple connections via a mechanism called 'association groups'.…

Fix: 4.13.14 / 4.14.10+
Fix from $1,950 2022-03-02
Linux Kernel HIGH 7.8
CVE-2021-3715

A flaw was found in the "Routing decision" classifier in the Linux kernel's Traffic Control networking subsystem in the way it handled changing of cl…

Fix: 4.4.218 / 4.9.218+
Fix from $1,950 2022-03-02
PHP CRITICAL 9.8
CVE-2021-21708

In PHP versions 7.4.x below 7.4.28, 8.0.x below 8.0.16, and 8.1.x below 8.1.3, when using filter functions with FILTER_VALIDATE_FLOAT filter and min/…

Fix: 7.4.28 / 8.0.16+
Fix from $2,300 2022-02-27