Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Linux Kernel MEDIUM 6.5
CVE-2019-19319

In the Linux kernel before 5.2, a setxattr operation, after a mount of a crafted ext4 image, can cause a slab-out-of-bounds write access because of a…

Patch available
Fix from $1,600 2019-11-27
Chrome MEDIUM 6.5
CVE-2019-5826

Use after free in IndexedDB in Google Chrome prior to 73.0.3683.86 allowed a remote attacker who had compromised the renderer process to potentially …

Fix: 73.0.3683.86+
Fix from $1,600 2019-11-25
Chrome MEDIUM 6.5
CVE-2019-5872

Use after free in Mojo in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 77.0.3865.75+
Fix from $1,600 2019-11-25
Chrome HIGH 8.8
CVE-2019-5876

Use after free in media in Google Chrome on Android prior to 77.0.3865.75 allowed a remote attacker to potentially exploit heap corruption via a craf…

Fix: 77.0.3865.75+
Fix from $1,950 2019-11-25
Chrome HIGH 8.8
CVE-2019-5878

Use after free in V8 in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 77.0.3865.75+
Fix from $1,950 2019-11-25
Chrome MEDIUM 5.5
CVE-2019-5860

Use after free in PDFium in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF fi…

Fix: 76.0.3809.87+
Fix from $1,600 2019-11-25
Chrome MEDIUM 5.5
CVE-2019-5868

Use after free in PDFium in Google Chrome prior to 76.0.3809.100 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF f…

Fix: 76.0.3809.100+
Fix from $1,600 2019-11-25
Chrome MEDIUM 6.5
CVE-2019-5869

Use after free in Blink in Google Chrome prior to 76.0.3809.132 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 76.0.3809.132+
Fix from $1,600 2019-11-25
Chrome CRITICAL 9.6
CVE-2019-5870

Use after free in media in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML p…

Fix: 77.0.3865.75+
Fix from $2,300 2019-11-25
Chrome MEDIUM 6.5
CVE-2019-5842

Use after free in Blink in Google Chrome prior to 75.0.3770.90 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 75.0.3770.90+
Fix from $1,600 2019-11-25
Chrome CRITICAL 9.6
CVE-2019-5850

Use after free in offline mode in Google Chrome prior to 76.0.3809.87 allowed a remote attacker who had compromised the renderer process to potential…

Fix: 76.0.3809.87+
Fix from $2,300 2019-11-25
Chrome HIGH 8.8
CVE-2019-5851

Use after free in WebAudio in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 76.0.3809.87+
Fix from $1,950 2019-11-25
Chrome HIGH 8.8
CVE-2019-13723

Use after free in WebBluetooth in Google Chrome prior to 78.0.3904.108 allowed a remote attacker who had compromised the renderer process to potentia…

Fix: 78.0.3904.108+
Fix from $1,950 2019-11-25
Chrome HIGH 8.8
CVE-2019-13720 KEVEPSS 49%

Use after free in WebAudio in Google Chrome prior to 78.0.3904.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 78.0.3904.87+
Fix from $1,950 2019-11-25
Chrome HIGH 8.8
CVE-2019-13721

Use after free in PDFium in Google Chrome prior to 78.0.3904.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 78.0.3904.87+
Fix from $1,950 2019-11-25
Chrome HIGH 8.8
CVE-2019-13693

Use after free in IndexedDB in Google Chrome prior to 77.0.3865.120 allowed a remote attacker who had compromised the renderer process to execute arb…

Fix: 77.0.3865.120+
Fix from $1,950 2019-11-25
Chrome HIGH 8.8
CVE-2019-13694

Use after free in WebRTC in Google Chrome prior to 77.0.3865.120 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 77.0.3865.120+
Fix from $1,950 2019-11-25
Chrome HIGH 8.8
CVE-2019-13695

Use after free in audio in Google Chrome on Android prior to 77.0.3865.120 allowed a remote attacker to potentially exploit heap corruption via a cra…

Fix: 77.0.3865.120+
Fix from $1,950 2019-11-25
Chrome HIGH 8.8
CVE-2019-13696

Use after free in JavaScript in Google Chrome prior to 77.0.3865.120 allowed a remote attacker to potentially exploit heap corruption via a crafted H…

Fix: 77.0.3865.120+
Fix from $1,950 2019-11-25
Chrome HIGH 8.8
CVE-2019-13699

Use after free in media in Google Chrome prior to 78.0.3904.70 allowed a remote attacker who had compromised the renderer process to potentially expl…

Fix: 78.0.3904.70+
Fix from $1,950 2019-11-25
Chrome HIGH 8.8
CVE-2019-13685

Use after free in sharing view in Google Chrome prior to 77.0.3865.90 allowed a remote attacker to potentially exploit heap corruption via a crafted …

Fix: 77.0.3865.90+
Fix from $1,950 2019-11-25
Chrome HIGH 8.8
CVE-2019-13686

Use after free in offline mode in Google Chrome prior to 77.0.3865.90 allowed a remote attacker to potentially exploit heap corruption via a crafted …

Fix: 77.0.3865.90+
Fix from $1,950 2019-11-25
Chrome HIGH 8.8
CVE-2019-13687

Use after free in Blink in Google Chrome prior to 77.0.3865.90 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 77.0.3865.90+
Fix from $1,950 2019-11-25
Chrome HIGH 8.8
CVE-2019-13688

Use after free in Blink in Google Chrome prior to 77.0.3865.90 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 77.0.3865.90+
Fix from $1,950 2019-11-25
Mdm9205 Firmware HIGH 7.8
CVE-2019-2329

Use after free issue in cleanup routine due to missing pointer sanitization for a failed start of a trusted application. in Snapdragon Compute, Snapd…

Mitigation only
Fix from $1,950 2019-11-21
Mdm9205 Firmware MEDIUM 5.5
CVE-2019-2336

Subsequent use of the CBO listener may result in further memory corruption due to use after free issue. in Snapdragon Auto, Snapdragon Compute, Snapd…

Mitigation only
Fix from $1,600 2019-11-21
Apq8009 Firmware MEDIUM 5.5
CVE-2019-10490

Use after free issue in Xtra daemon shutdown due to static object instance getting freed from a multiple places in Snapdragon Auto, Snapdragon Comput…

Mitigation only
Fix from $1,600 2019-11-21
Debian Linux MEDIUM 5.5
CVE-2015-1606

The keyring DB in GnuPG before 2.1.2 does not properly handle invalid packets, which allows remote attackers to cause a denial of service (invalid re…

Fix: 2.1.2+
Fix from $1,600 2019-11-20
Hhvm CRITICAL 9.8
CVE-2016-1000006

hhvm before 3.12.11 has a use-after-free in the serialize_memoize_param() and ResourceBundle::__construct() functions.

Fix: 3.12.11+
Fix from $2,300 2019-11-19
Android HIGH 7.4
CVE-2019-2213

In binder_free_transaction of binder.c, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege …

Mitigation only
Fix from $1,950 2019-11-13