Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Fusion HIGH 8.2
CVE-2020-4004

VMware ESXi (7.0 before ESXi70U1b-17168206, 6.7 before ESXi670-202011101-SG, 6.5 before ESXi650-202011301-SG), Workstation (15.x before 15.5.7), Fusi…

Fix: 3.10.1.2 / 4.1.0.1+
Fix from $1,950 2020-11-20
Openwrt CRITICAL 9.8
CVE-2020-28951

libuci in OpenWrt before 18.06.9 and 19.x before 19.07.5 may encounter a use after free when using malicious package names. This is related to uci_pa…

Fix: 18.06.9 / 19.07.5+
Fix from $2,300 2020-11-19
Trusted Execution Engine HIGH 7.8
CVE-2020-8750

Use after free in Kernel Mode Driver for Intel(R) TXE versions before 3.1.80 and 4.0.30 may allow an authenticated user to potentially enable escalat…

Fix: 3.1.80 / 4.0.30+
Fix from $1,950 2020-11-12
Converged Security And Manageability Engine HIGH 7.8
CVE-2020-12303

Use after free in DAL subsystem for Intel(R) CSME versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25, Intel…

Fix: 11.8.80 / 11.12.80+
Fix from $1,950 2020-11-12
Apq8009w Firmware HIGH 7.8
CVE-2020-11175

u'Use after free issue in Bluetooth transport driver when a method in the object is accessed after the object has been deleted due to improper timer …

Mitigation only
Fix from $1,950 2020-11-12
Android HIGH 8.8
CVE-2020-0449

In btm_sec_disconnected of btm_sec.cc, there is a possible memory corruption due to a use after free. This could lead to remote code execution in the…

Patch available
Fix from $1,950 2020-11-10
Acrobat HIGH 7.8
CVE-2020-24430EPSS 19%

Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are affected by a use-after-fr…

Fix: after 20.012.20048
Fix from $1,950 2020-11-05
Acrobat HIGH 7.8
CVE-2020-24437EPSS 47%

Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are affected by a use-after-fr…

Fix: after 20.012.20048
Fix from $1,950 2020-11-05
Whatsapp CRITICAL 9.8
CVE-2020-1909

A use-after-free in a logging library in WhatsApp for iOS prior to v2.20.111 and WhatsApp Business for iOS prior to v2.20.111 could have resulted in …

Fix: 2.20.111+
Fix from $2,300 2020-11-03
Chrome HIGH 8.8
CVE-2020-16002

Use after free in PDFium in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF f…

Fix: 86.0.4240.111+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-16003

Use after free in printing in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 86.0.4240.111+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-16004

Use after free in user interface in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potentially exploit heap corruption via a craft…

Fix: 86.0.4240.183+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-15987

Use after free in WebRTC in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially exploit heap corruption via a crafted WebRTC…

Fix: 86.0.4240.75+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-15990

Use after free in autofill in Google Chrome prior to 86.0.4240.75 allowed a remote attacker who had compromised the renderer process to potentially p…

Fix: 86.0.4240.75+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-15991

Use after free in password manager in Google Chrome prior to 86.0.4240.75 allowed a remote attacker who had compromised the renderer process to poten…

Fix: 86.0.4240.75+
Fix from $1,950 2020-11-03
Chrome CRITICAL 9.8
CVE-2020-15993

Use after free in printing in Google Chrome prior to 86.0.4240.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 86.0.4240.99+
Fix from $2,300 2020-11-03
Chrome HIGH 8.8
CVE-2020-15994EPSS 13%

Use after free in V8 in Google Chrome prior to 86.0.4240.99 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 86.0.4240.99+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-15996

Use after free in passwords in Google Chrome prior to 86.0.4240.99 allowed a remote attacker who had compromised the renderer process to potentially …

Fix: 86.0.4240.99+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-15997

Use after free in Mojo in Google Chrome prior to 86.0.4240.99 allowed a remote attacker who had compromised the renderer process to potentially perfo…

Fix: 86.0.4240.99+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-15998

Use after free in USB in Google Chrome prior to 86.0.4240.99 allowed a remote attacker who had compromised the renderer process to potentially perfor…

Fix: 86.0.4240.99+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-16001

Use after free in media in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 86.0.4240.111+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-15972

Use after free in audio in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 86.0.4240.75+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-15976

Use after free in WebXR in Google Chrome on Android prior to 86.0.4240.75 allowed a remote attacker to potentially exploit heap corruption via a craf…

Fix: 86.0.4240.75+
Fix from $1,950 2020-11-03
Chrome MEDIUM 6.5
CVE-2020-15986

Integer overflow in media in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 86.0.4240.75+
Fix from $1,600 2020-11-03
Chrome HIGH 8.8
CVE-2020-15967

Use after free in payments in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTM…

Fix: 86.0.4240.75+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-15968

Use after free in Blink in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 86.0.4240.75+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-15969

Use after free in WebRTC in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 11.1 / 14.0.2+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-15970

Use after free in NFC in Google Chrome prior to 86.0.4240.75 allowed a remote attacker who had compromised the renderer process to potentially perfor…

Fix: 86.0.4240.75+
Fix from $1,950 2020-11-03
Chrome HIGH 8.8
CVE-2020-15971

Use after free in printing in Google Chrome prior to 86.0.4240.75 allowed a remote attacker who had compromised the renderer process to potentially p…

Fix: 86.0.4240.75+
Fix from $1,950 2020-11-03
Apq8009 Firmware HIGH 7.8
CVE-2020-3696

u'Use after free while installing new security rule in ipcrtr as old one is deleted and this rule could still be in use for checking security permiss…

Patch available
Fix from $1,950 2020-11-02