Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Apq8009 Firmware CRITICAL 9.8
CVE-2020-11272

Before enqueuing a frame to the PE queue for further processing, an entry in a hash table can be deleted and using a stale version later can lead to …

Patch available
Fix from $2,300 2021-02-22
Pm3003a Firmware HIGH 7.4
CVE-2020-11277

Possible race condition during async fastrpc session after sending RPC message due to the fastrpc ctx gets free during async session in Snapdragon Co…

Mitigation only
Fix from $1,950 2021-02-22
Aqt1000 Firmware MEDIUM 6.7
CVE-2020-11147

Use after free issue in audio modules while removing and freeing objects during list iteration due to incorrect usage of macro in Snapdragon Compute,…

Mitigation only
Fix from $1,600 2021-02-22
Yottadb CRITICAL 9.8
CVE-2021-27377

An issue was discovered in the yottadb crate before 1.2.0 for Rust. For some memory-allocation patterns, ydb_subscript_next_st and ydb_subscript_prev…

Fix: 1.2.0+
Fix from $2,300 2021-02-18
Graphics Drivers MEDIUM 5.5
CVE-2020-12361

Use after free in some Intel(R) Graphics Drivers before version 15.33.51.5146 may allow an authenticated user to potentially enable denial of service…

Fix: 15.33.51.5146+
Fix from $1,600 2021-02-17
Dbus HIGH 7.8
CVE-2020-35512

A use-after-free flaw was found in D-Bus Development branch <= 1.13.16, dbus-1.12.x stable branch <= 1.12.18, and dbus-1.10.x and older branches <= 1…

Mitigation only
Fix from $1,950 2021-02-15
Acrobat HIGH 8.8
CVE-2021-21035

Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by a Use…

Fix: after 20.013.20074
Fix from $1,950 2021-02-11
Acrobat HIGH 7.8
CVE-2021-21039

Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by a Use…

Fix: after 20.013.20074
Fix from $1,950 2021-02-11
Acrobat HIGH 7.8
CVE-2021-21040

Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by a Use…

Fix: after 20.013.20074
Fix from $1,950 2021-02-11
Acrobat HIGH 7.8
CVE-2021-21041

Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by a use…

Fix: after 20.013.20074
Fix from $1,950 2021-02-11
Acrobat HIGH 8.8
CVE-2021-21021

Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by a Use…

Fix: after 20.013.20074
Fix from $1,950 2021-02-11
Acrobat HIGH 8.8
CVE-2021-21028

Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by a Use…

Fix: after 20.013.20074
Fix from $1,950 2021-02-11
Acrobat HIGH 8.8
CVE-2021-21033

Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by a Use…

Fix: after 20.013.20074
Fix from $1,950 2021-02-11
Foxit Reader HIGH 8.8
CVE-2020-13548EPSS 66%

In Foxit Reader 10.1.0.37527, a specially crafted PDF document can trigger reuse of previously free memory which can lead to arbitrary code execution…

No fix yet
Fix from $1,950 2021-02-10
Android HIGH 7.8
CVE-2021-0332

In bootFinished of SurfaceFlinger.cpp, there is a possible memory corruption due to a use after free. This could lead to local escalation of privileg…

Patch available
Fix from $1,950 2021-02-10
Android MEDIUM 6.5
CVE-2021-0335

In process of C2SoftHevcDec.cpp, there is a possible out of bounds write due to a use after free. This could lead to remote information disclosure wi…

Patch available
Fix from $1,600 2021-02-10
Android HIGH 7.8
CVE-2021-0330

In add_user_ce and remove_user_ce of storaged.cpp, there is a possible use-after-free due to improper locking. This could lead to local escalation of…

Patch available
Fix from $1,950 2021-02-10
Libzip CRITICAL 9.8
CVE-2019-17582

A use-after-free in the _zip_dirent_read function of zip_dirent.c in libzip 1.2.0 allows attackers to have an unspecified impact by attempting to unz…

Patch available
Fix from $2,300 2021-02-09
Chrome CRITICAL 9.6
CVE-2021-21142

Use after free in Payments in Google Chrome on Mac prior to 88.0.4324.146 allowed a remote attacker to potentially perform a sandbox escape via a cra…

Fix: 88.0.4324.146+
Fix from $2,300 2021-02-09
Chrome HIGH 8.8
CVE-2021-21145

Use after free in Fonts in Google Chrome prior to 88.0.4324.146 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 88.0.4324.146+
Fix from $1,950 2021-02-09
Chrome CRITICAL 9.6
CVE-2021-21146

Use after free in Navigation in Google Chrome prior to 88.0.4324.146 allowed a remote attacker who had compromised the renderer process to potentiall…

Fix: 88.0.4324.146+
Fix from $2,300 2021-02-09
Chrome HIGH 8.6
CVE-2021-21138

Use after free in DevTools in Google Chrome prior to 88.0.4324.96 allowed a local attacker to potentially perform a sandbox escape via a crafted file.

Fix: 88.0.4324.96+
Fix from $1,950 2021-02-09
Chrome HIGH 8.8
CVE-2021-21119EPSS 7%

Use after free in Media in Google Chrome prior to 88.0.4324.96 allowed a remote attacker who had compromised the renderer process to potentially expl…

Fix: 88.0.705.50 / 88.0.4324.96+
Fix from $1,950 2021-02-09
Chrome HIGH 8.8
CVE-2021-21120EPSS 7%

Use after free in WebSQL in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 88.0.705.50 / 88.0.4324.96+
Fix from $1,950 2021-02-09
Chrome CRITICAL 9.6
CVE-2021-21121EPSS 6%

Use after free in Omnibox in Google Chrome on Linux prior to 88.0.4324.96 allowed a remote attacker to potentially perform a sandbox escape via a cra…

Fix: 88.0.705.50 / 88.0.4324.96+
Fix from $2,300 2021-02-09
Chrome HIGH 8.8
CVE-2021-21122EPSS 7%

Use after free in Blink in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 88.0.705.50 / 88.0.4324.96+
Fix from $1,950 2021-02-09
Chrome CRITICAL 9.6
CVE-2021-21124EPSS 8%

Potential user after free in Speech Recognizer in Google Chrome on Android prior to 88.0.4324.96 allowed a remote attacker to potentially perform a s…

Fix: 88.0.705.50 / 88.0.4324.96+
Fix from $2,300 2021-02-09
Chrome HIGH 8.8
CVE-2020-16044

Use after free in WebRTC in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to potentially exploit heap corruption via a crafted SCTP p…

Fix: 88.0.4324.96+
Fix from $1,950 2021-02-09
Android MEDIUM 6.7
CVE-2021-0349

In display driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execut…

Mitigation only
Fix from $1,600 2021-02-04
Android CRITICAL 9.8
CVE-2021-26689

An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, 9.0, and 10 software. The USB laf gadget has a use-after-free. The LG ID is LV…

Mitigation only
Fix from $2,300 2021-02-04