Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Jsish HIGH 7.5
CVE-2019-1010170

Jsish 2.4.77 2.0477 is affected by: Use After Free. The impact is: denial of service. The component is: function Jsi_ObjFree (jsiObj.c:230). The atta…

Patch available
Fix from $1,950 2019-07-23
Mdm9150 Firmware HIGH 7.0
CVE-2019-2260

A race condition occurs while processing perf-event which can lead to a use after free condition in Snapdragon Auto, Snapdragon Compute, Snapdragon C…

Patch available
Fix from $1,950 2019-07-22
Mdm9607 Firmware HIGH 7.8
CVE-2019-2264

Null pointer dereference occurs for channel context while opening glink channel in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Mobile, Snapd…

Patch available
Fix from $1,950 2019-07-22
Zelio Soft 2 HIGH 7.8
CVE-2019-6822

A Use After Free: CWE-416 vulnerability exists in Zelio Soft 2, V5.2 and earlier, which could cause remote code execution when opening a specially cr…

Fix: after 5.2
Fix from $1,950 2019-07-15
PHP CRITICAL 9.8
CVE-2019-13224

A use-after-free in onig_new_deluxe() in regext.c in Oniguruma 6.9.2 allows attackers to potentially cause information disclosure, denial of service,…

Fix: 7.1.32 / 7.2.23+
Fix from $2,300 2019-07-10
Android CRITICAL 9.8
CVE-2019-2111

In loop of DnsTlsSocket.cpp, there is a possible heap memory corruption due to a use after free. This could lead to remote code execution in the netd…

Mitigation only
Fix from $2,300 2019-07-08
Android HIGH 7.8
CVE-2019-2112

In several functions of alarm.cc, there is possible memory corruption due to a use after free. This could lead to local code execution with no additi…

Mitigation only
Fix from $1,950 2019-07-08
Xpdfreader HIGH 7.8
CVE-2019-13289

In Xpdf 4.01.01, there is a use-after-free vulnerability in the function JBIG2Stream::close() located at JBIG2Stream.cc. It can, for example, be trig…

No fix yet
Fix from $1,950 2019-07-04
Linux Kernel HIGH 7.0
CVE-2019-13233

In arch/x86/lib/insn-eval.c in the Linux kernel before 5.1.9, there is a use-after-free for access to an LDT entry because of a race condition betwee…

Fix: 5.1.9+
Fix from $1,950 2019-07-04
Irssi HIGH 8.1
CVE-2019-13045

Irssi before 1.0.8, 1.1.x before 1.1.3, and 1.2.x before 1.2.1, when SASL is enabled, has a use after free when sending SASL login to the server.

Fix: 1.0.8 / 1.1.3+
Fix from $1,950 2019-06-29
Chrome HIGH 8.8
CVE-2019-5809

Use after free in file chooser in Google Chrome prior to 74.0.3729.108 allowed a remote attacker who had compromised the renderer process to perform …

Fix: 74.0.3729.108+
Fix from $1,950 2019-06-27
Chrome HIGH 8.8
CVE-2019-5813

Use after free in V8 in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 74.0.3729.108+
Fix from $1,950 2019-06-27
Chrome HIGH 8.8
CVE-2019-5828

Object lifecycle issue in ServiceWorker in Google Chrome prior to 75.0.3770.80 allowed a remote attacker to potentially perform out of bounds memory …

Fix: 75.0.3770.80+
Fix from $1,950 2019-06-27
Chrome MEDIUM 6.5
CVE-2018-6155

Incorrect handling of frames in the VP8 parser in Google Chrome prior to 68.0.3440.75 allowed a remote attacker to potentially exploit heap corruptio…

Fix: 68.0.3440.75+
Fix from $1,600 2019-06-27
Chrome MEDIUM 5.7
CVE-2018-6171

Use after free in Bluetooth in Google Chrome prior to 68.0.3440.75 allowed an attacker who convinced a user to install a malicious extension to obtai…

Fix: 68.0.3440.75+
Fix from $1,600 2019-06-27
Chrome MEDIUM 6.5
CVE-2019-5786 KEVEPSS 62%

Object lifetime issue in Blink in Google Chrome prior to 72.0.3626.121 allowed a remote attacker to potentially perform out of bounds memory access v…

Fix: 72.0.3626.121+
Fix from $1,600 2019-06-27
Chrome MEDIUM 6.5
CVE-2019-5805

Use-after-free in PDFium in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF f…

Fix: 74.0.3729.108+
Fix from $1,600 2019-06-27
Chrome HIGH 8.8
CVE-2019-5808

Use after free in Blink in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 74.0.3729.108+
Fix from $1,950 2019-06-27
Chrome HIGH 8.8
CVE-2018-6118

A double-eviction in the Incognito mode cache that lead to a user-after-free in cache in Google Chrome prior to 66.0.3359.139 allowed a remote attack…

Fix: 66.0.3359.139+
Fix from $1,950 2019-06-27
Chrome HIGH 8.8
CVE-2018-17479

Incorrect object lifetime calculations in GPU code in Google Chrome prior to 70.0.3538.110 allowed a remote attacker to potentially exploit heap corr…

Fix: 70.0.3538.110+
Fix from $1,950 2019-06-27
Automationworx Software Suite HIGH 8.8
CVE-2019-12871

An issue was discovered in PHOENIX CONTACT PC Worx through 1.86, PC Worx Express through 1.86, and Config+ through 1.86. A manipulated PC Worx or Con…

Fix: after 1.86
Fix from $1,950 2019-06-24
Android HIGH 7.8
CVE-2019-2024

In em28xx_unregister_dvb of em28xx-dvb.c, there is a possible use after free issue. This could lead to local escalation of privilege with no addition…

Mitigation only
Fix from $1,950 2019-06-19
Android HIGH 7.8
CVE-2019-2025

In binder_thread_read of binder.c, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in th…

Mitigation only
Fix from $1,950 2019-06-19
Android CRITICAL 9.8
CVE-2019-2006

In serviceDied of HalDeathHandlerHidl.cpp, there is a possible memory corruption due to a use after free. This could lead to local escalation of priv…

Mitigation only
Fix from $2,300 2019-06-19
Rut950 Firmware MEDIUM 6.5
CVE-2018-19878

An issue was discovered on Teltonika RTU950 R_31.04.89 devices. The application allows a user to login without limitation. For every successful login…

Mitigation only
Fix from $1,600 2019-06-19
Linux Kernel HIGH 7.8
CVE-2019-3896

A double-free can happen in idr_remove_all() in lib/idr.c in the Linux kernel 2.6 branch. An unprivileged local attacker can use this flaw for a priv…

Fix: after 2.6.39.4
Fix from $1,950 2019-06-19
Foxit Pdf Sdk Activex HIGH 7.8
CVE-2018-19444

A use after free in the TextBox field Validate action in IReader_ContentProvider can occur for specially crafted PDF files in Foxit Reader SDK (Activ…

Fix: after 5.5.0
Fix from $1,950 2019-06-17
Mdm9150 Firmware HIGH 7.8
CVE-2018-13919

Use-after-free vulnerability will occur if reset of the routing table encounters an invalid rule id while processing command to reset in Snapdragon A…

Mitigation only
Fix from $1,950 2019-06-14
Mdm9206 Firmware HIGH 7.8
CVE-2018-11819

Use after issue in WLAN function due to multiple ACS scan requests at a time in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, …

Patch available
Fix from $1,950 2019-06-14
Mdm9150 Firmware HIGH 7.8
CVE-2018-11939

Use after issue in WLAN function due to multiple ACS scan requests at a time in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, …

Patch available
Fix from $1,950 2019-06-14