Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Chrome HIGH 8.8
CVE-2020-6551EPSS 29%

Use after free in WebXR in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 84.0.4147.125+
Fix from $1,950 2020-09-21
Chrome HIGH 8.8
CVE-2020-6552

Use after free in Blink in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 84.0.4147.125+
Fix from $1,950 2020-09-21
Chrome HIGH 8.8
CVE-2020-6553

Use after free in offline mode in Google Chrome on iOS prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap corruption via a …

Fix: 84.0.4147.125+
Fix from $1,950 2020-09-21
Chrome HIGH 8.6
CVE-2020-6554

Use after free in extensions in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially perform a sandbox escape via a crafted …

Fix: 84.0.4147.125+
Fix from $1,950 2020-09-21
Chrome HIGH 8.8
CVE-2020-6559

Use after free in presentation API in Google Chrome prior to 85.0.4183.83 allowed a remote attacker to potentially exploit heap corruption via a craf…

Fix: 85.0.4183.83+
Fix from $1,950 2020-09-21
Chrome HIGH 8.8
CVE-2020-6532

Use after free in SCTP in Google Chrome prior to 84.0.4147.105 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 84.0.4147.105+
Fix from $1,950 2020-09-21
Chrome HIGH 8.8
CVE-2020-6539

Use after free in CSS in Google Chrome prior to 84.0.4147.105 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 84.0.4147.105+
Fix from $1,950 2020-09-21
Chrome HIGH 8.8
CVE-2020-6541EPSS 23%

Use after free in WebUSB in Google Chrome prior to 84.0.4147.105 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 84.0.4147.105+
Fix from $1,950 2020-09-21
Chrome HIGH 8.8
CVE-2020-6542

Use after free in ANGLE in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 84.0.4147.125+
Fix from $1,950 2020-09-21
Chrome HIGH 8.8
CVE-2020-6543

Use after free in task scheduling in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap corruption via a craf…

Fix: 84.0.4147.125+
Fix from $1,950 2020-09-21
Chrome HIGH 8.8
CVE-2020-6544

Use after free in media in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 84.0.4147.125+
Fix from $1,950 2020-09-21
Chrome HIGH 8.8
CVE-2020-6545

Use after free in audio in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 84.0.4147.125+
Fix from $1,950 2020-09-21
Taurus An00b Firmware MEDIUM 6.5
CVE-2020-9084

Taurus-AN00B versions earlier than 10.1.0.156(C00E155R7P2) have a use-after-free (UAF) vulnerability. An authenticated, local attacker may perform sp…

Fix: 10.1.0.156+
Fix from $1,600 2020-09-18
Android MEDIUM 6.4
CVE-2020-0268

In NFC, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges…

Mitigation only
Fix from $1,600 2020-09-18
Android HIGH 7.8
CVE-2020-0357

In SurfaceFlinger, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in the graphics serve…

Mitigation only
Fix from $1,950 2020-09-17
Android MEDIUM 6.4
CVE-2020-0358

In SurfaceFlinger, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution…

Mitigation only
Fix from $1,600 2020-09-17
Android MEDIUM 6.7
CVE-2020-0330

In iorap, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege and code execution with Sys…

Mitigation only
Fix from $1,600 2020-09-17
Android HIGH 8.8
CVE-2020-0303

In the Media extractor, there is a possible use after free due to improper locking. This could lead to remote code execution in the media extractor w…

Mitigation only
Fix from $1,950 2020-09-17
Android MEDIUM 6.7
CVE-2020-0429

In l2tp_session_delete and related functions of l2tp_core.c, there is possible memory corruption due to a use after free. This could lead to local es…

Patch available
Fix from $1,600 2020-09-17
Android HIGH 7.8
CVE-2020-0433

In blk_mq_queue_tag_busy_iter of blk-mq-tag.c, there is a possible use after free due to improper locking. This could lead to local escalation of pri…

Patch available
Fix from $1,950 2020-09-17
Android HIGH 7.8
CVE-2020-0434

In Pixel's use of the Catpipe library, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege …

Mitigation only
Fix from $1,950 2020-09-17
Debian Linux MEDIUM 5.5
CVE-2020-0427

In create_pinctrl of core.c, there is a possible out of bounds read due to a use after free. This could lead to local information disclosure with no …

Patch available
Fix from $1,600 2020-09-17
Android MEDIUM 6.4
CVE-2020-0428

In CamX code, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution priv…

Mitigation only
Fix from $1,600 2020-09-17
Nitro Pro HIGH 7.8
CVE-2020-6115

An exploitable vulnerability exists in the cross-reference table repairing functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242. While searc…

No fix yet
Fix from $1,950 2020-09-17
Fedora HIGH 7.8
CVE-2020-14363

An integer overflow vulnerability leading to a double-free was found in libX11. This flaw allows a local privileged attacker to cause an application …

Fix: 1.6.12+
Fix from $1,950 2020-09-11
Inspircd MEDIUM 6.5
CVE-2019-20918

An issue was discovered in InspIRCd 3 before 3.1.0. The silence module contains a use after free vulnerability. This vulnerability can be used for re…

Fix: 3.1.0+
Fix from $1,600 2020-09-11
Debian Linux MEDIUM 6.5
CVE-2020-25269

An issue was discovered in InspIRCd 2 before 2.0.29 and 3 before 3.6.0. The pgsql module contains a use after free vulnerability. When combined with …

Fix: 2.0.29 / 3.6.0+
Fix from $1,600 2020-09-11
Linux Kernel HIGH 7.8
CVE-2020-25220

The Linux kernel 4.9.x before 4.9.233, 4.14.x before 4.14.194, and 4.19.x before 4.19.140 has a use-after-free because skcd->no_refcnt was not consid…

Fix: 4.9.233 / 4.14.194+
Fix from $1,950 2020-09-10
Mdm9607 Firmware HIGH 7.8
CVE-2020-11124

u'Possible use-after-free while accessing diag client map table since list can be reallocated due to exceeding max client limit.' in Snapdragon Auto,…

Patch available
Fix from $1,950 2020-09-09
Bitra Firmware HIGH 7.8
CVE-2020-11129

u'During the error occurrence in capture request, the buffer is freed and later accessed causing the camera APP to fail due to memory use-after-free'…

Mitigation only
Fix from $1,950 2020-09-09