Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Android MEDIUM 6.7
CVE-2021-0365

In display driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execut…

Mitigation only
Fix from $1,600 2021-02-03
Linux Kernel HIGH 7.0
CVE-2021-3348

nbd_add_socket in drivers/block/nbd.c in the Linux kernel through 5.10.12 has an ndb_queue_rq use-after-free that could be triggered by local attacke…

Fix: after 5.10.12
Fix from $1,950 2021-02-01
Linux Kernel HIGH 7.8
CVE-2021-3347

An issue was discovered in the Linux kernel through 5.10.11. PI futexes have a kernel stack use-after-free during fault handling, allowing local user…

Fix: after 5.10.11
Fix from $1,950 2021-01-29
Xcb MEDIUM 5.5
CVE-2020-36205

An issue was discovered in the xcb crate through 2020-12-10 for Rust. base::Error does not have soundness. Because of the public ptr field, a use-aft…

Fix: after 2020-12-10
Fix from $1,600 2021-01-26
Ispsoft HIGH 7.8
CVE-2020-27280

A use after free issue has been identified in the way ISPSoft(v3.12 and prior) processes project files, allowing an attacker to craft a special proje…

Fix: after 3.12
Fix from $1,950 2021-01-26
Apq8017 MEDIUM 6.7
CVE-2020-11148

Use after free issue in HIDL while using callback to post event in Rx thread when internal mutex is not acquired and meantime close is triggered and …

Mitigation only
Fix from $1,600 2021-01-21
Pm3003a MEDIUM 6.4
CVE-2020-11151

Race condition occurs while calling user space ioctl from two different threads can results to use after free issue in video in Snapdragon Auto, Snap…

Patch available
Fix from $1,600 2021-01-21
Chrome CRITICAL 9.6
CVE-2020-16045

Use after Free in Payments in Google Chrome on Android prior to 87.0.4280.66 allowed a remote attacker who had compromised the renderer process to po…

Fix: 87.0.4280.66+
Fix from $2,300 2021-01-14
Chrome HIGH 8.8
CVE-2020-6572 KEVEPSS 11%

Use after free in Media in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to execute arbitrary code via a crafted HTML page.

Fix: 81.0.4044.92+
Fix from $1,950 2021-01-14
Linux Kernel HIGH 7.8
CVE-2020-16119

Use-after-free vulnerability in the Linux kernel exploitable by a local attacker due to reuse of a DCCP socket with an attached dccps_hc_tx_ccid obje…

Patch available
Fix from $1,950 2021-01-14
Industrial Gateway Server CRITICAL 9.1
CVE-2020-27267

KEPServerEX v6.0 to v6.9, ThingWorx Kepware Server v6.8 and v6.9, ThingWorx Industrial Connectivity (all versions), OPC-Aggregator (all versions), Ro…

Fix: after 6.9
Fix from $2,300 2021-01-14
Android HIGH 7.8
CVE-2021-0310

In LazyServiceRegistrar of LazyServiceRegistrar.cpp, there is a possible memory corruption due to a use after free. This could lead to local escalati…

Mitigation only
Fix from $1,950 2021-01-11
Android HIGH 7.8
CVE-2021-0318

In appendEventsToCacheLocked of SensorEventConnection.cpp, there is a possible out of bounds write due to a use-after-free. This could lead to local …

Mitigation only
Fix from $1,950 2021-01-11
Android HIGH 7.0
CVE-2021-0303

In dispatchGraphTerminationMessage() of packages/services/Car/computepipe/runner/graph/StreamSetObserver.cpp, there is a possible use after free due …

Mitigation only
Fix from $1,950 2021-01-11
Android MEDIUM 6.7
CVE-2021-0342

In tun_get_user of tun.c, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege with System e…

Patch available
Fix from $1,600 2021-01-11
Chrome CRITICAL 9.6
CVE-2021-21109

Use after free in payments in Google Chrome prior to 87.0.4280.141 allowed a remote attacker who had compromised the renderer process to potentially …

Fix: 87.0.4280.141+
Fix from $2,300 2021-01-08
Chrome CRITICAL 9.6
CVE-2021-21110

Use after free in safe browsing in Google Chrome prior to 87.0.4280.141 allowed a remote attacker to potentially perform a sandbox escape via a craft…

Fix: 87.0.4280.141+
Fix from $2,300 2021-01-08
Chrome HIGH 8.8
CVE-2021-21112

Use after free in Blink in Google Chrome prior to 87.0.4280.141 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 87.0.4280.141+
Fix from $1,950 2021-01-08
Chrome HIGH 8.8
CVE-2021-21114

Use after free in audio in Google Chrome prior to 87.0.4280.141 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 87.0.4280.141+
Fix from $1,950 2021-01-08
Chrome CRITICAL 9.6
CVE-2021-21115

User after free in safe browsing in Google Chrome prior to 87.0.4280.141 allowed a remote attacker who had compromised the renderer process to potent…

Fix: 87.0.4280.141+
Fix from $2,300 2021-01-08
Chrome HIGH 8.8
CVE-2020-16039

Use after free in extensions in Google Chrome prior to 87.0.4280.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HT…

Fix: 87.0.4280.88+
Fix from $1,950 2021-01-08
Chrome CRITICAL 9.6
CVE-2021-21106

Use after free in autofill in Google Chrome prior to 87.0.4280.141 allowed a remote attacker who had compromised the renderer process to potentially …

Fix: 87.0.4280.141+
Fix from $2,300 2021-01-08
Chrome CRITICAL 9.6
CVE-2021-21107

Use after free in drag and drop in Google Chrome on Linux prior to 87.0.4280.141 allowed a remote attacker who had compromised the renderer process t…

Fix: 87.0.4280.141+
Fix from $2,300 2021-01-08
Chrome CRITICAL 9.6
CVE-2021-21108

Use after free in media in Google Chrome prior to 87.0.4280.141 allowed a remote attacker who had compromised the renderer process to potentially per…

Fix: 87.0.4280.141+
Fix from $2,300 2021-01-08
Chrome HIGH 8.8
CVE-2020-16023

Use after free in WebCodecs in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 87.0.4280.66+
Fix from $1,950 2021-01-08
Chrome HIGH 8.8
CVE-2020-16026

Use after free in WebRTC in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 87.0.4280.66+
Fix from $1,950 2021-01-08
Chrome HIGH 8.8
CVE-2020-16037

Use after free in clipboard in Google Chrome prior to 87.0.4280.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 87.0.4280.88+
Fix from $1,950 2021-01-08
Chrome HIGH 8.8
CVE-2020-16038

Use after free in media in Google Chrome on OS X prior to 87.0.4280.88 allowed a remote attacker to potentially exploit heap corruption via a crafted…

Fix: 87.0.4280.88+
Fix from $1,950 2021-01-08
Chrome CRITICAL 9.6
CVE-2020-16014

Use after free in PPAPI in Google Chrome prior to 87.0.4280.66 allowed a remote attacker who had compromised the renderer process to potentially perf…

Fix: 87.0.4280.66+
Fix from $2,300 2021-01-08
Chrome CRITICAL 9.6
CVE-2020-16017 KEV

Use after free in site isolation in Google Chrome prior to 86.0.4240.198 allowed a remote attacker who had compromised the renderer process to potent…

Fix: 86.0.4240.198+
Fix from $2,300 2021-01-08