Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Linux Kernel HIGH 7.1
CVE-2020-8648

There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the n_tty_receive_buf_common function in drivers/tty/n_tty.c.

Fix: after 5.5.2
Fix from $1,950 2020-02-06
Linux Kernel MEDIUM 5.9
CVE-2020-8649

There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the vgacon_invert_region function in drivers/video/console/vgacon.c.

Fix: after 5.5.2
Fix from $1,600 2020-02-06
Ossec CRITICAL 9.8
CVE-2020-8447

In OSSEC-HIDS 2.7 through 3.5.0, the server component responsible for log analysis (ossec-analysisd) is vulnerable to a use-after-free during process…

Fix: after 3.5.0
Fix from $2,300 2020-01-30
Ossec CRITICAL 9.8
CVE-2020-8444

In OSSEC-HIDS 2.7 through 3.5.0, the server component responsible for log analysis (ossec-analysisd) is vulnerable to a use-after-free during process…

Fix: after 3.5.0
Fix from $2,300 2020-01-30
Linux Kernel HIGH 7.1
CVE-2020-8428

fs/namei.c in the Linux kernel before 5.5 has a may_create_in_sticky use-after-free, which allows local users to cause a denial of service (OOPS) or …

Fix: 5.5+
Fix from $1,950 2020-01-29
Acrobat Dc CRITICAL 9.8
CVE-2019-8257

Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 2017.011.30143 and earlier, 201…

Fix: 15.006.30499 / 17.011.30144+
Fix from $2,300 2020-01-28
Ubuntu Linux HIGH 8.8
CVE-2016-4761

WebKitGTK+ before 2.14.0: A use-after-free vulnerability can allow remote attackers to cause a DoS

Fix: 2.14.0+
Fix from $1,950 2020-01-22
Ubuntu Linux MEDIUM 6.5
CVE-2019-19344

There is a use-after-free issue in all samba 4.9.x versions before 4.9.18, all samba 4.10.x versions before 4.10.12 and all samba 4.11.x versions bef…

Fix: 4.9.18 / 4.10.12+
Fix from $1,600 2020-01-21
Msm8917 Firmware HIGH 7.8
CVE-2019-14024

Possible stack-use-after-scope issue in NFC usecase for card emulation in Snapdragon Auto, Snapdragon Industrial IOT, Snapdragon Mobile in MSM8917, M…

Patch available
Fix from $1,950 2020-01-21
Apq8009 Firmware HIGH 7.8
CVE-2019-14034

Use after free while processing eeprom query as there is a chance to not unlock mutex after error occurs in Snapdragon Auto, Snapdragon Compute, Snap…

Patch available
Fix from $1,950 2020-01-21
Apq8009 Firmware HIGH 7.8
CVE-2019-10548

While trying to obtain datad ipc handle during DPL initialization, Heap use-after-free issue can occur if modem SSR occurs at same time in Snapdragon…

Mitigation only
Fix from $1,950 2020-01-21
Apq8009 Firmware CRITICAL 9.8
CVE-2019-10581

NULL is assigned to local instance of audio device pointer after free instead of global static pointer and can lead to use after free issue in Snapdr…

Patch available
Fix from $2,300 2020-01-21
Apq8096au Firmware HIGH 7.8
CVE-2019-10582

Use after free issue due to using of invalidated iterator to delete an object in sensors HAL in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon …

Mitigation only
Fix from $1,950 2020-01-21
Apq8096au Firmware HIGH 7.8
CVE-2019-10583

Use after free issue occurs when camera access sensors data through direct report mode in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IO…

Mitigation only
Fix from $1,950 2020-01-21
Apq8009 Firmware HIGH 7.8
CVE-2019-10585

Possible integer overflow happens when mmap find function will increment refcount every time when it invokes and can lead to use after free issue in …

Patch available
Fix from $1,950 2020-01-21
Apq8053 Firmware HIGH 7.8
CVE-2019-10602

Potential use-after-free heap error during Validate/Present calls on display HW composer in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer …

Patch available
Fix from $1,950 2020-01-21
Phantompdf HIGH 8.8
CVE-2019-5126

An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit PDF Reader, version 9.7.0.29435. A specially crafted PDF documen…

Fix: after 9.7.0.29435
Fix from $1,950 2020-01-16
Phantompdf HIGH 8.8
CVE-2019-5130

An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version 9.7.0.29435. A specially cra…

Fix: after 9.7.0.29435
Fix from $1,950 2020-01-16
Phantompdf HIGH 8.8
CVE-2019-5131

An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader, version 9.7.0.29435. A specially cr…

Fix: after 9.7.0.29435
Fix from $1,950 2020-01-16
Phantompdf HIGH 8.8
CVE-2019-5145

An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit PDF Reader, version 9.7.0.29435. A specially crafted PDF documen…

Fix: after 9.7.0.29435
Fix from $1,950 2020-01-16
Junos HIGH 8.8
CVE-2020-1602

When a device using Juniper Network's Dynamic Host Configuration Protocol Daemon (JDHCPD) process on Junos OS or Junos OS Evolved which is configured…

Mitigation only
Fix from $1,950 2020-01-15
Windows 10 HIGH 7.8
CVE-2020-0634

An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver improperly handles objects in memory, aka 'Windo…

Patch available
Fix from $1,950 2020-01-14
Windows 10 HIGH 7.8
CVE-2020-0642

An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation…

Patch available
Fix from $1,950 2020-01-14
Linux Kernel HIGH 7.8
CVE-2020-7053

In the Linux kernel 4.14 longterm through 4.14.165 and 4.19 longterm through 4.19.96 (and 5.x before 5.2), there is a use-after-free (write) in the i…

Fix: after 5.2
Fix from $1,950 2020-01-14
Mruby CRITICAL 9.8
CVE-2020-6840

In mruby 2.1.0, there is a use-after-free in hash_slice in mrbgems/mruby-hash-ext/src/hash-ext.c.

Patch available
Fix from $2,300 2020-01-11
Mruby CRITICAL 9.8
CVE-2020-6838

In mruby 2.1.0, there is a use-after-free in hash_values_at in mrbgems/mruby-hash-ext/src/hash-ext.c.

No fix yet
Fix from $2,300 2020-01-11
Chrome HIGH 8.8
CVE-2020-6377

Use after free in audio in Google Chrome prior to 79.0.3945.117 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 79.0.3945.117+
Fix from $1,950 2020-01-10
Chrome HIGH 8.8
CVE-2019-13767EPSS 16%

Use after free in media picker in Google Chrome prior to 79.0.3945.88 allowed a remote attacker who had compromised the renderer process to potential…

Fix: 79.0.3945.88+
Fix from $1,950 2020-01-10
Firefox HIGH 8.8
CVE-2019-17013

Mozilla developers reported memory safety bugs present in Firefox 70. Some of these bugs showed evidence of memory corruption and we presume that wit…

Fix: 71.0+
Fix from $1,950 2020-01-08
Firefox HIGH 8.8
CVE-2019-17008

When using nested workers, a use-after-free could occur during worker destruction. This resulted in a potentially exploitable crash. This vulnerabili…

Fix: 68.3 / 71.0+
Fix from $1,950 2020-01-08