Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Android MEDIUM 6.4
CVE-2020-0305

In cdev_get of char_dev.c, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System e…

Patch available
Fix from $1,600 2020-07-17
Windows 10 HIGH 7.8
CVE-2020-1381

An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memory, aka 'Windows Graphics Compon…

Patch available
Fix from $1,950 2020-07-14
Windows 10 HIGH 7.8
CVE-2020-1382EPSS 5%

An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memory, aka 'Windows Graphics Compon…

Patch available
Fix from $1,950 2020-07-14
Firefox HIGH 8.8
CVE-2020-12416

A VideoStreamEncoder may have been freed in a race condition with VideoBroadcaster::AddOrUpdateSink, resulting in a use-after-free, memory corruption…

Fix: 78.0+
Fix from $1,950 2020-07-09
Firefox HIGH 8.8
CVE-2020-12419

When processing callbacks that occurred during window flushing in the parent process, the associated window may die; causing a use-after-free conditi…

Fix: 68.10 / 68.10.0+
Fix from $1,950 2020-07-09
Firefox HIGH 8.8
CVE-2020-12420

When trying to connect to a STUN server, a race condition could have caused a use-after-free of a pointer, leading to memory corruption and a potenti…

Fix: 68.10.0 / 78.0+
Fix from $1,950 2020-07-09
Firefox MEDIUM 5.3
CVE-2020-12405

When browsing a malicious page, a race condition in our SharedWorkerService could occur and lead to a potentially exploitable crash. This vulnerabili…

Fix: 68.9.0 / 77.0+
Fix from $1,600 2020-07-09
FreeBSD HIGH 8.1
CVE-2020-7457EPSS 33%

In FreeBSD 12.1-STABLE before r359565, 12.1-RELEASE before p7, 11.4-STABLE before r362975, 11.4-RELEASE before p1, and 11.3-RELEASE before p11, missi…

Patch available
Fix from $1,950 2020-07-09
Storage MEDIUM 6.5
CVE-2020-10730

A NULL pointer dereference, or possible use-after-free flaw was found in Samba AD LDAP server in versions before 4.10.17, before 4.11.11 and before 4…

Fix: 4.10.17 / 4.11.11+
Fix from $1,600 2020-07-07
Ubuntu Linux MEDIUM 6.5
CVE-2020-10760

A use-after-free flaw was found in all samba LDAP server versions before 4.10.17, before 4.11.11, before 4.12.4 used in a AC DC configuration. A Samb…

Fix: 4.10.17 / 4.11.11+
Fix from $1,600 2020-07-06
Mate 30 Firmware HIGH 7.8
CVE-2020-9262

HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have a use after free vulnerability. There is a condition exists that the system wo…

Fix: 10.1.0.150+
Fix from $1,950 2020-07-06
Debian Linux MEDIUM 5.5
CVE-2020-15569

PlayerGeneric.cpp in MilkyTracker through 1.02.00 has a use-after-free in the PlayerGeneric destructor.

Fix: after 1.02.00
Fix from $1,600 2020-07-06
Ndpi CRITICAL 9.8
CVE-2020-15475

In nDPI through 3.2, ndpi_reset_packet_line_info in lib/ndpi_main.c omits certain reinitialization, leading to a use-after-free.

Fix: after 3.2
Fix from $2,300 2020-07-01
Debian Linux MEDIUM 6.5
CVE-2020-15389

jp2/opj_decompress.c in OpenJPEG through 2.3.1 has a use-after-free that can be triggered if there is a mix of valid and invalid files in a directory…

Fix: after 2.3.1
Fix from $1,600 2020-06-29
Bridge HIGH 7.8
CVE-2020-9567

Adobe Bridge versions 10.0.1 and earlier version have an use after free vulnerability. Successful exploitation could lead to arbitrary code execution…

Fix: after 10.0.1
Fix from $1,950 2020-06-26
Bridge HIGH 7.8
CVE-2020-9566

Adobe Bridge versions 10.0.1 and earlier version have an use after free vulnerability. Successful exploitation could lead to arbitrary code execution…

Fix: after 10.0.1
Fix from $1,950 2020-06-26
Fedora MEDIUM 5.5
CVE-2020-15305

An issue was discovered in OpenEXR before 2.5.2. Invalid input could cause a use-after-free in DeepScanLineInputFile::DeepScanLineInputFile() in IlmI…

Fix: 2.5.2+
Fix from $1,600 2020-06-26
Acrobat Dc HIGH 7.8
CVE-2020-9607

Adobe Acrobat and Reader versions 2020.006.20042 and earlier, 2017.011.30166 and earlier, 2017.011.30166 and earlier, and 2015.006.30518 and earlier …

Fix: 15.006.30518 / 17.011.30166+
Fix from $1,950 2020-06-25
Acrobat Dc HIGH 7.8
CVE-2020-9606

Adobe Acrobat and Reader versions 2020.006.20042 and earlier, 2017.011.30166 and earlier, 2017.011.30166 and earlier, and 2015.006.30518 and earlier …

Fix: 15.006.30518 / 17.011.30166+
Fix from $1,950 2020-06-25
Cloud Foundation MEDIUM 5.5
CVE-2020-3963

VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202006401-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5…

Fix: 3.10 / 4.0.1+
Fix from $1,600 2020-06-25
Cloud Foundation HIGH 8.2
CVE-2020-3962

VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5…

Fix: 3.10 / 4.0.1+
Fix from $1,950 2020-06-24
Fedora HIGH 7.5
CVE-2020-4031

In FreeRDP before version 2.1.2, there is a use-after-free in gdi_SelectObject. All FreeRDP clients using compatibility mode with /relax-order-checks…

Fix: 2.1.2+
Fix from $1,950 2020-06-22
Lora Basics Station MEDIUM 5.0
CVE-2020-4060

In LoRa Basics Station before 2.0.4, there is a Use After Free vulnerability that leads to memory corruption. This bug is triggered on 32-bit machine…

Fix: 2.0.4+
Fix from $1,600 2020-06-22
Kamorta Firmware HIGH 7.8
CVE-2020-3642

Use after free issue in camera applications when used randomly over multiple operations due to pointer not set to NULL after free/destroy of the obje…

Mitigation only
Fix from $1,950 2020-06-22
Android CRITICAL 9.8
CVE-2020-0232

Function abc_pcie_issue_dma_xfer_sync creates a transfer object, adds it to the session object then continues to work with it. A concurrent thread co…

Mitigation only
Fix from $2,300 2020-06-16
Active Management Technology Firmware CRITICAL 9.8
CVE-2020-0595

Use after free in IPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticate…

Fix: 11.8.77 / 11.12.77+
Fix from $2,300 2020-06-15
Android HIGH 7.8
CVE-2020-0233

In main of main.cpp, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional…

Patch available
Fix from $1,950 2020-06-11
Android MEDIUM 6.5
CVE-2020-0212

In _onBufferDestroyed of InputBufferManager.cpp, there is a possible out of bounds read due to a use after free. This could lead to remote informatio…

Patch available
Fix from $1,600 2020-06-11
Android MEDIUM 6.4
CVE-2020-0126

In multiple functions in DrmPlugin.cpp, there is a possible use after free due to a race condition. This could lead to local code execution with Syst…

Patch available
Fix from $1,600 2020-06-11
Android MEDIUM 5.5
CVE-2020-0113

In sendCaptureResult of Camera3OutputUtils.cpp, there is a possible out of bounds read due to a use after free. This could lead to local information …

Patch available
Fix from $1,600 2020-06-10