Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Msm8909w Firmware HIGH 7.0
CVE-2019-2284

Possible use-after-free issue due to a race condition while calling camera ioctl concurrently in Snapdragon Compute, Snapdragon Consumer IOT, Snapdra…

Patch available
Fix from $1,950 2019-09-30
Mdm9150 Firmware HIGH 7.8
CVE-2019-10497

Use after free issue occurs If another instance of open for voice_svc node has been called from application without closing the previous one. in Snap…

Patch available
Fix from $1,950 2019-09-30
Mdm9150 Firmware HIGH 7.8
CVE-2019-10501

Possible use after free issue due to improper input validation in volume listener library in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer…

Patch available
Fix from $1,950 2019-09-30
Msm8909w Firmware CRITICAL 9.8
CVE-2019-10509

Device record of the pairing device used after free during ACL disconnection in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdra…

Patch available
Fix from $2,300 2019-09-30
Android MEDIUM 5.5
CVE-2019-9427

In Bluetooth, there is a possible information disclosure due to a use after free. This could lead to local information disclosure with no additional …

Mitigation only
Fix from $1,600 2019-09-27
Android HIGH 7.5
CVE-2019-9381

In netd, there is a possible out of bounds read due to a use after free. This could lead to remote information disclosure with no additional executio…

Mitigation only
Fix from $1,950 2019-09-27
Android MEDIUM 5.5
CVE-2019-9347

In the m4v_h263 codec, there is a possible out of bounds read due to a use after free. This could lead to local information disclosure with no additi…

Mitigation only
Fix from $1,600 2019-09-27
Android HIGH 7.8
CVE-2019-9350

In Keymaster, there is a possible EoP due to a use after free. This could lead to local escalation of privilege with no additional execution privileg…

Mitigation only
Fix from $1,950 2019-09-27
Android MEDIUM 6.7
CVE-2019-9259

In the Bluetooth stack, there is a possible out of bounds write due to a use after free. This could lead to local escalation of privilege with System…

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 5.5
CVE-2019-9268

In libstagefright, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in the media server w…

Mitigation only
Fix from $1,600 2019-09-27
Firefox HIGH 8.8
CVE-2019-11752

It is possible to delete an IndexedDB key value and subsequently try to extract it during conversion. This results in a use-after-free and a potentia…

Fix: 60.9.0 / 68.1.0+
Fix from $1,950 2019-09-27
Firefox HIGH 8.8
CVE-2019-11746

A use-after-free vulnerability can occur while manipulating video elements if the body is freed while still in use. This results in a potentially exp…

Fix: 60.9.0 / 68.1.0+
Fix from $1,950 2019-09-27
HTTP Server CRITICAL 9.1
CVE-2019-10082EPSS 17%

In Apache HTTP Server 2.4.18-2.4.39, using fuzzed network input, the http/2 session handling could be made to read memory after being freed, during c…

Fix: after 17.3
Fix from $2,300 2019-09-26
Portaudio Rs CRITICAL 9.8
CVE-2019-16881

An issue was discovered in the portaudio-rs crate through 0.3.1 for Rust. There is a use-after-free with resultant arbitrary code execution because o…

Fix: after 0.3.1
Fix from $2,300 2019-09-25
String Interner HIGH 7.5
CVE-2019-16882

An issue was discovered in the string-interner crate before 0.7.1 for Rust. It allows attackers to read from memory locations associated with danglin…

Fix: 0.7.1+
Fix from $1,950 2019-09-25
Crimson HIGH 7.8
CVE-2019-10996

Red Lion Controls Crimson, version 3.0 and prior and version 3.1 prior to release 3112.00, allow multiple vulnerabilities to be exploited when a vali…

Fix: 3112.00+
Fix from $1,950 2019-09-23
Libiec61850 HIGH 7.5
CVE-2019-16510

libIEC61850 through 1.3.3 has a use-after-free in MmsServer_waitReady in mms/iso_mms/server/mms_server.c, as demonstrated by server_example_goose.

Fix: after 1.3.3
Fix from $1,950 2019-09-19
Mosquitto MEDIUM 5.4
CVE-2019-11778

If an MQTT v5 client connects to Eclipse Mosquitto versions 1.6.0 to 1.6.4 inclusive, sets a last will and testament, sets a will delay interval, set…

Fix: 1.6.5+
Fix from $1,600 2019-09-18
Aspose.pdf For C\+\+ HIGH 8.8
CVE-2019-5042

An exploitable Use-After-Free vulnerability exists in the way FunctionType 0 PDF elements are processed in Aspose.PDF 19.2 for C++. A specially craft…

No fix yet
Fix from $1,950 2019-09-18
Aspose.pdf For C\+\+ CRITICAL 9.8
CVE-2019-5066

An exploitable use-after-free vulnerability exists in the way LZW-compressed streams are processed in Aspose.PDF 19.2 for C++. A specially crafted PD…

No fix yet
Fix from $2,300 2019-09-18
Aspose.pdf For C\+\+ CRITICAL 9.8
CVE-2019-5067

An uninitialized memory access vulnerability exists in the way Aspose.PDF 19.2 for C++ handles invalid parent object pointers. A specially crafted PD…

No fix yet
Fix from $2,300 2019-09-18
Gnucobol HIGH 7.8
CVE-2019-16396

GnuCOBOL 2.2 has a use-after-free in the end_scope_of_program_name() function in cobc/parser.y via crafted COBOL source code.

No fix yet
Fix from $1,950 2019-09-17
Cflow MEDIUM 6.5
CVE-2019-16165

GNU cflow through 1.6 has a use-after-free in the reference function in parser.c.

Fix: after 1.6
Fix from $1,600 2019-09-09
Image CRITICAL 9.8
CVE-2019-16138

An issue was discovered in the image crate before 0.21.3 for Rust, affecting the HDR image format decoder. Vec::set_len is called on an uninitialized…

Fix: 0.21.3+
Fix from $2,300 2019-09-09
Isahc CRITICAL 9.8
CVE-2019-16140

An issue was discovered in the chttp crate before 0.1.3 for Rust. There is a use-after-free during buffer conversion.

Mitigation only
Fix from $2,300 2019-09-09
Android MEDIUM 6.7
CVE-2019-9447

In the Android kernel in the FingerTipS touchscreen driver there is a possible use-after-free due to improper locking. This could lead to a local esc…

Mitigation only
Fix from $1,600 2019-09-06
Android HIGH 7.0
CVE-2019-9458

In the Android kernel in the video driver there is a use after free due to a race condition. This could lead to local escalation of privilege with no…

Patch available
Fix from $1,950 2019-09-06
Android MEDIUM 6.4
CVE-2019-9271

In the Android kernel in the mnh driver there is a race condition due to insufficient locking. This could lead to a use-after-free which could lead t…

Mitigation only
Fix from $1,600 2019-09-06
Android MEDIUM 6.7
CVE-2019-9273

In the Android kernel in the synaptics_dsx_htc touchscreen driver there is a possible use after free due to improper locking. This could lead to loca…

Mitigation only
Fix from $1,600 2019-09-06
Android MEDIUM 6.7
CVE-2019-9275

In the Android kernel in the mnh driver there is a use after free due to improper locking. This could lead to escalation of privilege with System exe…

Mitigation only
Fix from $1,600 2019-09-06