Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Chrome HIGH 8.8
CVE-2025-5068

Use after free in Blink in Google Chrome prior to 137.0.7151.68 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 137.0.7151.68+
Fix from $1,950 2025-06-03
Exynos 2200 Firmware MEDIUM 6.5
CVE-2025-23104

An issue was discovered in Samsung Mobile Processor Exynos 2200. A Use-After-Free in the mobile processor leads to privilege escalation.

Mitigation only
Fix from $1,600 2025-06-02
Revit HIGH 7.8
CVE-2025-5036

A maliciously crafted RFA file, when linked or imported into Autodesk Revit, can force a Use-After-Free vulnerability. A malicious actor can leverage…

Fix: 2024.3.3 / 2025.4.2+
Fix from $1,950 2025-06-02
5th Gen Gpu Architecture Kernel Driver HIGH 7.8
CVE-2025-0073

Use After Free vulnerability in Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged u…

Mitigation only
Fix from $1,950 2025-06-02
5th Gen Gpu Architecture Kernel Driver HIGH 7.8
CVE-2025-0819

Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Dri…

Mitigation only
Fix from $1,950 2025-06-02
Yandex Browser CRITICAL 9.8
CVE-2023-26226

A use after free memory corruption issue exists in Yandex Browser for Desktop prior to version 24.4.0.682

Fix: 24.4.0.682+
Fix from $2,300 2025-05-30
Jhead HIGH 7.8
CVE-2025-44906

jhead v3.08 was discovered to contain a heap-use-after-free via the ProcessFile function at jhead.c.

No fix yet
Fix from $1,950 2025-05-30
Chrome MEDIUM 5.4
CVE-2025-5283

Use after free in libvpx in Google Chrome prior to 137.0.7151.55 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 137.0.7151.55+
Fix from $1,600 2025-05-27
Chrome HIGH 8.8
CVE-2025-5063

Use after free in Compositing in Google Chrome prior to 137.0.7151.55 allowed a remote attacker to potentially exploit heap corruption via a crafted …

Fix: 137.0.7151.55+
Fix from $1,950 2025-05-27
Unclassified HIGH 7.3
CVE-2025-48798

A flaw was found in GIMP when processing XCF image files. If a user opens one of these image files that has been specially crafted by an attacker, GI…

Mitigation only
Fix from $1,950 2025-05-27
Process Sync CRITICAL 9.8
CVE-2025-48752

In the process-sync crate 0.2.2 for Rust, the drop function lacks a check for whether the pthread_mutex is unlocked.

No fix yet
Fix from $2,300 2025-05-24
Printershare HIGH 8.0
CVE-2025-5100

A double-free condition occurs during the cleanup of temporary image files, which can be exploited to achieve memory corruption and potentially arbit…

Fix: after 12.15.01
Fix from $1,950 2025-05-23
Linux Kernel HIGH 7.8
CVE-2025-37952

In the Linux kernel, the following vulnerability has been resolved: ksmbd: Fix UAF in __close_file_table_ids A use-after-free is possible if one th…

Fix: 6.6.91 / 6.12.29+
Fix from $1,950 2025-05-20
Linux Kernel HIGH 7.8
CVE-2025-37957

In the Linux kernel, the following vulnerability has been resolved: KVM: SVM: Forcibly leave SMM mode on SHUTDOWN interception Previously, commit e…

Fix: 5.16 / 6.1+
Fix from $1,950 2025-05-20
Linux Kernel HIGH 7.8
CVE-2025-37946

In the Linux kernel, the following vulnerability has been resolved: s390/pci: Fix duplicate pci_dev_put() in disable_slot() when PF has child VFs W…

Fix: 6.12.29 / 6.14.7+
Fix from $1,950 2025-05-20
Linux Kernel HIGH 7.8
CVE-2025-37924EPSS 12%

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in kerberos authentication Setting sess->user = NULL …

Fix: 6.1.138 / 6.6.90+
Fix from $1,950 2025-05-20
Linux Kernel HIGH 7.8
CVE-2025-37926

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in ksmbd_session_rpc_open A UAF issue can occur due t…

Fix: 6.12.28 / 6.14.6+
Fix from $1,950 2025-05-20
Linux Kernel HIGH 7.8
CVE-2025-37916

In the Linux kernel, the following vulnerability has been resolved: pds_core: remove write-after-free of client_id A use-after-free error popped up…

Fix: 6.6.90 / 6.12.28+
Fix from $1,950 2025-05-20
Linux Kernel HIGH 7.8
CVE-2025-37899

In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free in session logoff The sess->user object can currently…

Fix: 6.12.28 / 6.14.6+
Fix from $1,950 2025-05-20
Linux Kernel HIGH 7.8
CVE-2025-37903

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix slab-use-after-free in hdcp The HDCP code in amdgpu_dm_hdc…

Fix: 6.1.138 / 6.6.90+
Fix from $1,950 2025-05-20
Unclassified HIGH 7.5
CVE-2025-1706

Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger use-after-free kernel exceptions.

Mitigation only
Fix from $1,950 2025-05-17
Linux Kernel HIGH 7.8
CVE-2025-37890

In the Linux kernel, the following vulnerability has been resolved: net_sched: hfsc: Fix a UAF vulnerability in class with netem as child qdisc As …

Fix: 5.4.294 / 5.10.238+
Fix from $1,950 2025-05-16
Unclassified MEDIUM 5.9
CVE-2025-4516

There is an issue in CPython when using `bytes.decode("unicode_escape", error="ignore|replace")`. If you are not using the "unicode_escape" encoding …

Patch available
Fix from $1,600 2025-05-15
Substance 3d Stager HIGH 7.8
CVE-2025-43571

Substance3D - Stager versions 3.1.1 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the c…

Fix: 3.1.2+
Fix from $1,950 2025-05-13
Substance 3d Stager HIGH 7.8
CVE-2025-43568

Substance3D - Stager versions 3.1.1 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the c…

Fix: 3.1.2+
Fix from $1,950 2025-05-13
Substance 3d Stager HIGH 7.8
CVE-2025-43570

Substance3D - Stager versions 3.1.1 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the c…

Fix: 3.1.2+
Fix from $1,950 2025-05-13
Substance 3d Stager HIGH 7.8
CVE-2025-43549

Substance3D - Stager versions 3.1.1 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the c…

Fix: 3.1.2+
Fix from $1,950 2025-05-13
Proset\/wireless Wifi HIGH 8.0
CVE-2025-20046

Use after free for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow an unauthenticated user to potentially ena…

Fix: 23.100.0+
Fix from $1,950 2025-05-13
Proset\/wireless Wifi MEDIUM 6.1
CVE-2025-20062

Use after free for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow an unauthenticated user to potentially ena…

Fix: 23.100.0+
Fix from $1,600 2025-05-13
Proset\/wireless Wifi HIGH 7.4
CVE-2025-20006

Use after free for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.100 may allow an unauthenticated user to potentially ena…

Fix: 23.100.0+
Fix from $1,950 2025-05-13