Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Android MEDIUM 6.4
CVE-2021-25394 KEV

A use after free vulnerability via race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows arbitrary write given a radio privileg…

Mitigation only
Fix from $1,600 2021-06-11
Jerryscript MEDIUM 6.5
CVE-2021-26194

An issue was discovered in JerryScript 2.4.0. There is a heap-use-after-free in ecma_is_lexical_environment in the ecma-helpers.c file.

Patch available
Fix from $1,600 2021-06-10
Jerryscript MEDIUM 6.5
CVE-2021-26199

An issue was discovered in JerryScript 2.4.0. There is a heap-use-after-free in ecma_bytecode_ref in ecma-helpers.c file.

Patch available
Fix from $1,600 2021-06-10
Jerryscript CRITICAL 9.8
CVE-2020-23302

There is a heap-use-after-free at ecma-helpers-string.c:772 in ecma_ref_ecma_string in JerryScript 2.2.0

Patch available
Fix from $2,300 2021-06-10
Debian Linux MEDIUM 5.5
CVE-2021-27347

Use after free in lzma_decompress_buf function in stream.c in Irzip 0.631 allows attackers to cause Denial of Service (DoS) via a crafted compressed …

Patch available
Fix from $1,600 2021-06-10
Apq8009 Firmware HIGH 7.0
CVE-2021-1900

Possible use after free in Display due to race condition while creating an external display in Snapdragon Auto, Snapdragon Compute, Snapdragon Connec…

Mitigation only
Fix from $1,950 2021-06-09
Apq8009 Firmware HIGH 7.8
CVE-2020-11239

Use after free issue when importing a DMA buffer by using the CPU address of the buffer due to attachment is not cleaned up properly in Snapdragon Au…

Patch available
Fix from $1,950 2021-06-09
Apq8009w Firmware HIGH 7.0
CVE-2020-11250

Use after free due to race condition when reopening the device driver repeatedly in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Sna…

Patch available
Fix from $1,950 2021-06-09
Apq8009 Firmware HIGH 7.0
CVE-2020-11262

A race between command submission and destroying the context can cause an invalid context being added to the list leads to use after free issue. in S…

Patch available
Fix from $1,950 2021-06-09
Linux Kernel HIGH 7.8
CVE-2020-36387

An issue was discovered in the Linux kernel before 5.8.2. fs/io_uring.c has a use-after-free related to io_async_task_func and ctx reference holding,…

Fix: 5.7.16 / 5.8.2+
Fix from $1,950 2021-06-07
Chrome HIGH 8.8
CVE-2021-30522

Use after free in WebAudio in Google Chrome prior to 91.0.4472.77 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 91.0.4472.77+
Fix from $1,950 2021-06-07
Chrome HIGH 8.8
CVE-2021-30523

Use after free in WebRTC in Google Chrome prior to 91.0.4472.77 allowed a remote attacker to potentially exploit heap corruption via a crafted SCTP p…

Fix: 91.0.4472.77+
Fix from $1,950 2021-06-07
Chrome HIGH 8.8
CVE-2021-30524

Use after free in TabStrip in Google Chrome prior to 91.0.4472.77 allowed an attacker who convinced a user to install a malicious extension to potent…

Fix: 91.0.4472.77+
Fix from $1,950 2021-06-07
Chrome HIGH 8.8
CVE-2021-30525

Use after free in TabGroups in Google Chrome prior to 91.0.4472.77 allowed an attacker who convinced a user to install a malicious extension to poten…

Fix: 91.0.4472.77+
Fix from $1,950 2021-06-07
Chrome HIGH 8.8
CVE-2021-30527

Use after free in WebUI in Google Chrome prior to 91.0.4472.77 allowed an attacker who convinced a user to install a malicious extension to potential…

Fix: 91.0.4472.77+
Fix from $1,950 2021-06-07
Chrome HIGH 8.8
CVE-2021-30528

Use after free in WebAuthentication in Google Chrome on Android prior to 91.0.4472.77 allowed a remote attacker who had compromised the renderer proc…

Fix: 91.0.4472.77+
Fix from $1,950 2021-06-07
Chrome HIGH 8.8
CVE-2021-30529

Use after free in Bookmarks in Google Chrome prior to 91.0.4472.77 allowed an attacker who convinced a user to install a malicious extension to poten…

Fix: 91.0.4472.77+
Fix from $1,950 2021-06-07
Chrome HIGH 8.8
CVE-2021-30542

Use after free in Tab Strip in Google Chrome prior to 91.0.4472.77 allowed an attacker who convinced a user to install a malicious extension to poten…

Fix: 91.0.4472.77+
Fix from $1,950 2021-06-07
Chrome HIGH 8.8
CVE-2021-30543

Use after free in Tab Strip in Google Chrome prior to 91.0.4472.77 allowed an attacker who convinced a user to install a malicious extension to poten…

Fix: 91.0.4472.77+
Fix from $1,950 2021-06-07
Linux Kernel HIGH 7.8
CVE-2018-25015

An issue was discovered in the Linux kernel before 4.14.16. There is a use-after-free in net/sctp/socket.c for a held lock after a peel off, aka CID-…

Fix: 4.14.16+
Fix from $1,950 2021-06-07
Linux Kernel HIGH 7.8
CVE-2019-25045

An issue was discovered in the Linux kernel before 5.0.19. The XFRM subsystem has a use-after-free, related to an xfrm_state_fini panic, aka CID-dbb2…

Fix: 5.0.19+
Fix from $1,950 2021-06-07
Linux Kernel HIGH 7.8
CVE-2020-36385

An issue was discovered in the Linux kernel before 5.10. drivers/infiniband/core/ucma.c has a use-after-free because the ctx is reached via the ctx_l…

Fix: 5.10+
Fix from $1,950 2021-06-07
Chrome HIGH 8.8
CVE-2021-30519

Use after free in Payments in Google Chrome prior to 90.0.4430.212 allowed an attacker who convinced a user to install a malicious payments app to po…

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Chrome HIGH 8.8
CVE-2021-30520

Use after free in Tab Strip in Google Chrome prior to 90.0.4430.212 allowed an attacker who convinced a user to install a malicious extension to pote…

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Chrome HIGH 8.8
CVE-2021-30510

Use after free in Aura in Google Chrome prior to 90.0.4430.212 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Chrome HIGH 8.8
CVE-2021-30512

Use after free in Notifications in Google Chrome prior to 90.0.4430.212 allowed a remote attacker who had compromised the renderer process to potenti…

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Chrome HIGH 8.8
CVE-2021-30514

Use after free in Autofill in Google Chrome prior to 90.0.4430.212 allowed a remote attacker who had compromised the renderer process to potentially …

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
Chrome HIGH 8.8
CVE-2021-30515

Use after free in File API in Google Chrome prior to 90.0.4430.212 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 90.0.4430.212+
Fix from $1,950 2021-06-04
FreeBSD HIGH 7.5
CVE-2020-7469

In FreeBSD 12.2-STABLE before r367402, 11.4-STABLE before r368202, 12.2-RELEASE before p1, 12.1-RELEASE before p11 and 11.4-RELEASE before p5 the han…

Mitigation only
Fix from $1,950 2021-06-04
Aomedia CRITICAL 9.8
CVE-2021-30474

aom_dsp/grain_table.c in libaom in AOMedia before 2021-03-30 has a use-after-free.

Fix: 2021-03-30+
Fix from $2,300 2021-06-02