Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Debian Linux HIGH 7.5
CVE-2017-12374

The ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denia…

Fix: after 0.99.2
Fix from $1,950 2018-01-26
Debian Linux MEDIUM 5.5
CVE-2018-5747

In Long Range Zip (aka lrzip) 0.631, there is a use-after-free in the ucompthread function (stream.c). Remote attackers could leverage this vulnerabi…

No fix yet
Fix from $1,600 2018-01-17
Libdwarf MEDIUM 6.5
CVE-2014-9482

Use-after-free vulnerability in dwarfdump in libdwarf 20130126 through 20140805 might allow remote attackers to cause a denial of service (program cr…

Fix: after 2014-08-05
Fix from $1,600 2018-01-16
Linux Kernel HIGH 8.1
CVE-2017-15126

A use-after-free flaw was found in fs/userfaultfd.c in the Linux kernel before 4.13.6. The issue is related to the handling of fork failure when deal…

Fix: 4.13.6+
Fix from $1,950 2018-01-14
Android CRITICAL 9.8
CVE-2017-13178

In the initDecoder function of SoftAVCDec, there is a possible out-of-bounds write to mCodecCtx due to a use after free when buffer allocation fails.…

Patch available
Fix from $2,300 2018-01-12
Android CRITICAL 9.8
CVE-2017-13179

In the ihevcd_allocate_static_bufs and ihevcd_create functions of SoftHEVC, there is a possible out-of-bounds write due to a use after free. Both ps_…

Patch available
Fix from $2,300 2018-01-12
Android HIGH 7.8
CVE-2017-13180

In the onQueueFilled function of SoftAVCDec, there is a possible out-of-bounds write due to a use after free if a bad header causes the decoder to ge…

Patch available
Fix from $1,950 2018-01-12
Android HIGH 7.8
CVE-2017-13184

In the enableVSyncInjections function of SurfaceFlinger, there is a possible use after free of mVSyncInjector. This could lead to a local elevation o…

Patch available
Fix from $1,950 2018-01-12
Qemu MEDIUM 5.5
CVE-2014-3471

Use-after-free vulnerability in hw/pci/pcie.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (QEMU instance cr…

Fix: after 2.1.2
Fix from $1,600 2018-01-12
Android HIGH 7.8
CVE-2017-0869

NVIDIA driver contains an integer overflow vulnerability which could cause a use after free and possibly lead to an elevation of privilege enabling c…

Patch available
Fix from $1,950 2018-01-12
Linux Kernel HIGH 7.8
CVE-2018-5344

In the Linux kernel through 4.14.13, drivers/block/loop.c mishandles lo_release serialization, which allows attackers to cause a denial of service (_…

Fix: after 4.14.13
Fix from $1,950 2018-01-12
Webaccess MEDIUM 6.5
CVE-2017-16732

A use-after-free issue was discovered in Advantech WebAccess versions prior to 8.3. WebAccess allows an unauthenticated attacker to specify an arbitr…

Fix: 8.3+
Fix from $1,600 2018-01-12
Fusion HIGH 7.0
CVE-2017-4949

VMware Workstation and Fusion contain a use-after-free vulnerability in VMware NAT service when IPv6 mode is enabled. This issue may allow a guest to…

Fix: 8.5.10 / 10.1.1+
Fix from $1,950 2018-01-11
Junos CRITICAL 9.8
CVE-2018-0001EPSS 6%

A remote, unauthenticated attacker may be able to execute code by exploiting a use-after-free defect found in older versions of PHP through injection…

Patch available
Fix from $2,300 2018-01-10
Android HIGH 7.8
CVE-2017-15849

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a LayerStack can be destroyed in betw…

Patch available
Fix from $1,950 2018-01-10
Linux Kernel CRITICAL 9.8
CVE-2017-18017EPSS 53%

The tcpmss_mangle_packet function in net/netfilter/xt_TCPMSS.c in the Linux kernel before 4.11, and 4.9.x before 4.9.36, allows remote attackers to c…

Fix: 3.2.99 / 3.10.108+
Fix from $2,300 2018-01-03
Debian Linux CRITICAL 9.8
CVE-2017-1000421

Gifsicle gifview 1.89 and older is vulnerable to a use-after-free in the read_gif function resulting potential code execution

Fix: after 1.89
Fix from $2,300 2018-01-02
Linux Kernel MEDIUM 5.5
CVE-2017-17975

Use-after-free in the usbtv_probe function in drivers/media/usb/usbtv/usbtv-core.c in the Linux kernel through 4.14.10 allows attackers to cause a de…

Fix: after 4.14.10
Fix from $1,600 2017-12-30
Libtiff HIGH 8.8
CVE-2017-17973

In LibTIFF 4.0.8, there is a heap-based use-after-free in the t2p_writeproc function in tiff2pdf.c. NOTE: there is a third-party report of inability …

No fix yet
Fix from $1,950 2017-12-29
Ubuntu Linux MEDIUM 5.5
CVE-2017-17813

In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in the pp_list_one_macro function in asm/preproc.c that will cause a remote denial of …

No fix yet
Fix from $1,600 2017-12-21
Ubuntu Linux MEDIUM 5.5
CVE-2017-17814

In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in do_directive in asm/preproc.c that will cause a remote denial of service attack.

No fix yet
Fix from $1,600 2017-12-21
Ubuntu Linux MEDIUM 5.5
CVE-2017-17816

In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in pp_getline in asm/preproc.c that will cause a remote denial of service attack.

No fix yet
Fix from $1,600 2017-12-21
Ubuntu Linux MEDIUM 5.5
CVE-2017-17817

In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in pp_verror in asm/preproc.c that will cause a remote denial of service attack.

No fix yet
Fix from $1,600 2017-12-21
Ubuntu Linux MEDIUM 5.5
CVE-2017-17820

In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in pp_list_one_macro in asm/preproc.c that will lead to a remote denial of service att…

No fix yet
Fix from $1,600 2017-12-21
Foxit Reader HIGH 8.8
CVE-2017-16585

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 8.3.2.25013. User interaction is req…

Patch available
Fix from $1,950 2017-12-20
Foxit Reader HIGH 8.8
CVE-2017-16586

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 8.3.2.25013. User interaction is req…

Patch available
Fix from $1,950 2017-12-20
Foxit Reader HIGH 8.8
CVE-2017-16587

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 8.3.2.25013. User interaction is req…

Patch available
Fix from $1,950 2017-12-20
Foxit Reader HIGH 8.8
CVE-2017-14831

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 8.3.1.21155. User interaction is req…

Patch available
Fix from $1,950 2017-12-20
Foxit Reader HIGH 8.8
CVE-2017-14832

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 8.3.1.21155. User interaction is req…

Patch available
Fix from $1,950 2017-12-20
Foxit Reader HIGH 8.8
CVE-2017-14833

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 8.3.1.21155. User interaction is req…

Patch available
Fix from $1,950 2017-12-20