Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Firefox HIGH 8.8
CVE-2021-38496

During operations on MessageTasks, a task may have been removed while it was still scheduled, resulting in memory corruption and a potentially exploi…

Fix: 78.15 / 91.2+
Fix from $1,950 2021-11-03
Firefox HIGH 7.5
CVE-2021-38498

During process shutdown, a document could have caused a use-after-free of a languages service object, leading to memory corruption and a potentially …

Fix: 91.2 / 93.0+
Fix from $1,950 2021-11-03
Chrome CRITICAL 9.6
CVE-2020-6492

Use after free in ANGLE in Google Chrome prior to 83.0.4103.97 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML p…

Fix: 83.0.4103.97+
Fix from $2,300 2021-11-02
Chrome HIGH 8.8
CVE-2021-37982

Use after free in Incognito in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome HIGH 8.8
CVE-2021-37983

Use after free in Dev Tools in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome HIGH 8.8
CVE-2021-37985

Use after free in V8 in Google Chrome prior to 95.0.4638.54 allowed a remote attacker who had convinced a user to allow for connection to debugger to…

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome HIGH 8.8
CVE-2021-37987

Use after free in Network APIs in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a crafted …

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome HIGH 8.8
CVE-2021-37988

Use after free in Profiles in Google Chrome prior to 95.0.4638.54 allowed a remote attacker who convinced a user to engage in specific gestures to po…

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome HIGH 8.8
CVE-2021-37993

Use after free in PDF Accessibility in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a cra…

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome HIGH 8.8
CVE-2021-37977

Use after free in Garbage Collection in Google Chrome prior to 94.0.4606.81 allowed a remote attacker to potentially exploit heap corruption via a cr…

Fix: 94.0.4606.81+
Fix from $1,950 2021-11-02
Safari HIGH 8.8
CVE-2021-30809

A use after free issue was addressed with improved memory management. This issue is fixed in Safari 15, tvOS 15, watchOS 8, iOS 15 and iPadOS 15. Pro…

Fix: 8.0 / 12.0.1+
Fix from $1,950 2021-10-28
Harmonyos MEDIUM 5.5
CVE-2021-22463

A component of the HarmonyOS has a Use After Free vulnerability . Local attackers may exploit this vulnerability to cause Kernel Information disclosu…

Mitigation only
Fix from $1,600 2021-10-28
Harmonyos MEDIUM 5.5
CVE-2021-22466

A component of the HarmonyOS has a Use After Free vulnerability. Local attackers may exploit this vulnerability to cause kernel crash.

Mitigation only
Fix from $1,600 2021-10-28
Linux Kernel HIGH 7.8
CVE-2021-43057

An issue was discovered in the Linux kernel before 5.14.8. A use-after-free in selinux_ptrace_traceme (aka the SELinux handler for PTRACE_TRACEME) co…

Fix: 5.14.8+
Fix from $1,950 2021-10-28
Secure Firewall Threat Defense MEDIUM 6.5
CVE-2021-40125

A vulnerability in the Internet Key Exchange Version 2 (IKEv2) implementation of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower…

Fix: 6.4.0.13 / 6.6.5+
Fix from $1,600 2021-10-27
Cloudengine 12800 Firmware MEDIUM 6.5
CVE-2021-37122

There is a use-after-free (UAF) vulnerability in Huawei products. An attacker may craft specific packets to exploit this vulnerability. Successful ex…

Mitigation only
Fix from $1,600 2021-10-27
Android MEDIUM 6.7
CVE-2021-0935

In ip6_xmit of ip6_output.c, there is a possible out of bounds write due to a use after free. This could lead to local escalation of privilege with S…

Mitigation only
Fix from $1,600 2021-10-25
Android HIGH 7.8
CVE-2021-0936

In acc_read of f_accessory.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no…

Mitigation only
Fix from $1,950 2021-10-25
Android MEDIUM 6.7
CVE-2021-0941

In bpf_skb_change_head of filter.c, there is a possible out of bounds read due to a use after free. This could lead to local escalation of privilege …

Mitigation only
Fix from $1,600 2021-10-25
Android MEDIUM 6.8
CVE-2021-0703

In SecondStageMain of init.cpp, there is a possible use after free due to incorrect shared_ptr usage. This could lead to local escalation of privileg…

Patch available
Fix from $1,600 2021-10-22
Android HIGH 7.8
CVE-2021-0483

In multiple methods of AAudioService, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege wi…

Patch available
Fix from $1,950 2021-10-22
Versiondog HIGH 8.1
CVE-2021-38467

A specific function code receives a raw pointer supplied by the user and deallocates this pointer. The user can then control what memory regions will…

Fix: 8.0.0+
Fix from $1,950 2021-10-22
Mdm9628 Firmware HIGH 7.8
CVE-2021-30315

Improper handling of sensor HAL structure in absence of sensor can lead to use after free in Snapdragon Auto

Patch available
Fix from $1,950 2021-10-20
Zephyr HIGH 7.5
CVE-2021-3455

Disconnecting L2CAP channel right after invalid ATT request leads freeze. Zephyr versions >= 2.4.0, >= 2.5.0 contain Use After Free (CWE-416). For mo…

Fix: 2.6.0+
Fix from $1,950 2021-10-19
Nitro Pro HIGH 7.8
CVE-2021-21796EPSS 16%

An exploitable use-after-free vulnerability exists in the JavaScript implementation of Nitro Pro PDF. A specially crafted document can cause an objec…

No fix yet
Fix from $1,950 2021-10-18
Winproladder HIGH 7.8
CVE-2021-38438

A use after free vulnerability in FATEK Automation WinProladder versions 3.30 and prior may be exploited when a valid user opens a malformed project …

Fix: after 3.30
Fix from $1,950 2021-10-18
Acrobat Dc HIGH 7.8
CVE-2021-40728EPSS 55%

Adobe Acrobat Reader DC version 21.007.20095 (and earlier), 21.007.20096 (and earlier), 20.004.30015 (and earlier), and 17.011.30202 (and earlier) is…

Fix: after 21.007.20096
Fix from $1,950 2021-10-15
Windows 10 1507 HIGH 7.8
CVE-2021-40449 KEVEPSS 74%

Win32k Elevation of Privilege Vulnerability

Fix: 10.0.10240.19086 / 10.0.14393.4704+
Fix from $1,950 2021-10-13
Eufy Homebase 2 Firmware CRITICAL 9.0
CVE-2021-21941

A use-after-free vulnerability exists in the pushMuxer CreatePushThread functionality of Anker Eufy Homebase 2 2.1.6.9h. A specially-crafted set of n…

No fix yet
Fix from $2,300 2021-10-12
Chrome HIGH 8.8
CVE-2021-37970

Use after free in File System API in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to potentially exploit heap corruption via a craft…

Fix: 94.0.4606.54+
Fix from $1,950 2021-10-08