Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
HIGH 7.8 CVE-2024-50261 In the Linux kernel, the following vulnerability has been resolved: macsec: Fix use-after-free while sending the offloading packet KASAN reports th… Linux Kernel 6.1.116 / 6.6.60+ Fix from $1,9502024-11-09 HIGH 7.8 CVE-2024-50226 In the Linux kernel, the following vulnerability has been resolved: cxl/port: Fix use-after-free, permit out-of-order decoder shutdown In support o… Linux Kernel 6.6.60 / 6.11.7+ Fix from $1,9502024-11-09 HIGH 7.8 CVE-2024-50217 In the Linux kernel, the following vulnerability has been resolved: btrfs: fix use-after-free of block device file in __btrfs_free_extra_devids() M… Linux Kernel 6.11.7+ Fix from $1,9502024-11-09 HIGH 8.4 CVE-2024-27530 wasm3 139076a contains a Use-After-Free in ForEachModule. Wasm3 No fix yet Fix from $1,9502024-11-08 HIGH 7.8 CVE-2024-50186 In the Linux kernel, the following vulnerability has been resolved: net: explicitly clear the sk pointer, when pf->create fails We have recently no… Linux Kernel 5.15.168 / 6.1.113+ Fix from $1,9502024-11-08 MEDIUM 5.5 CVE-2024-50149 In the Linux kernel, the following vulnerability has been resolved: drm/xe: Don't free job in TDR Freeing job in TDR is not safe as TDR can pass th… Linux Kernel 6.11.6+ Fix from $1,6002024-11-07 HIGH 7.8 CVE-2024-50150 In the Linux kernel, the following vulnerability has been resolved: usb: typec: altmode should keep reference to parent The altmode device release … Linux Kernel 4.19.323 / 5.4.285+ Fix from $1,9502024-11-07 HIGH 7.0 CVE-2024-50154 In the Linux kernel, the following vulnerability has been resolved: tcp/dccp: Don't use timer_pending() in reqsk_queue_unlink(). Martin KaFai Lau r… Linux Kernel 4.2 / 5.15.170+ Fix from $1,9502024-11-07 HIGH 8.8 CVE-2024-10827 Use after free in Serial in Google Chrome prior to 130.0.6723.116 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML… Chrome 130.0.6723.116+ Fix from $1,9502024-11-06 HIGH 8.8 CVE-2024-10826 Use after free in Family Experiences in Google Chrome on Android prior to 130.0.6723.116 allowed a remote attacker to potentially exploit heap corrup… Chrome 130.0.6723.116+ Fix from $1,9502024-11-06 HIGH 7.8 CVE-2024-50121 In the Linux kernel, the following vulnerability has been resolved: nfsd: cancel nfsd_shrinker_work using sync mode in nfs4_state_shutdown_net In t… Linux Kernel 5.15 / 6.1+ Fix from $1,9502024-11-05 HIGH 7.8 CVE-2024-50124 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: Fix UAF on iso_sock_timeout conn->sk maybe have been unlinked/f… Linux Kernel 6.1.115 / 6.6.59+ Fix from $1,9502024-11-05 HIGH 7.8 CVE-2024-50125 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: SCO: Fix UAF on sco_sock_timeout conn->sk maybe have been unlinked/f… Linux Kernel 6.1.115 / 6.6.59+ Fix from $1,9502024-11-05 HIGH 7.8 CVE-2024-50126 In the Linux kernel, the following vulnerability has been resolved: net: sched: use RCU read-side critical section in taprio_dump() Fix possible us… Linux Kernel 6.6.59 / 6.11.6+ Fix from $1,9502024-11-05 HIGH 7.8 CVE-2024-50127 In the Linux kernel, the following vulnerability has been resolved: net: sched: fix use-after-free in taprio_change() In 'taprio_change()', 'admin'… Linux Kernel 5.15.170 / 6.1.115+ Fix from $1,9502024-11-05 HIGH 7.8 CVE-2024-50130 In the Linux kernel, the following vulnerability has been resolved: netfilter: bpf: must hold reference on net namespace BUG: KASAN: slab-use-after… Linux Kernel 6.6.59 / 6.11.6+ Fix from $1,9502024-11-05 HIGH 7.0 CVE-2024-50106 In the Linux kernel, the following vulnerability has been resolved: nfsd: fix race between laundromat and free_stateid There is a race between laun… Linux Kernel 6.11.6+ Fix from $1,9502024-11-05 HIGH 7.8 CVE-2024-50114 In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Unregister redistributor for failed vCPU creation Alex reports that… Linux Kernel 6.11.6+ Fix from $1,9502024-11-05 HIGH 7.8 CVE-2024-38424 Memory corruption during GNSS HAL process initialization. Snapdragon W5\+ Gen 1 Wearable Platform Firmware Patch available Fix from $1,9502024-11-04 HIGH 7.8 CVE-2024-38415 Memory corruption while handling session errors from firmware. Wsa8845h Firmware Patch available Fix from $1,9502024-11-04 HIGH 7.8 CVE-2024-38419 Memory corruption while invoking IOCTL calls from the use-space for HGSL memory node. Wsa8845h Firmware Patch available Fix from $1,9502024-11-04 HIGH 7.8 CVE-2024-38421 Memory corruption while processing GPU commands. Wsa8845h Firmware Patch available Fix from $1,9502024-11-04 HIGH 7.8 CVE-2024-33033 Memory corruption while processing IOCTL calls to unmap the buffers. Wsa8845h Firmware Patch available Fix from $1,9502024-11-04 MEDIUM 6.5 CVE-2024-33068 Transient DOS while parsing fragments of MBSSID IE from beacon frame. Wsa8845h Firmware Patch available Fix from $1,6002024-11-04 MEDIUM 6.7 CVE-2024-33029 Memory corruption while handling the PDR in driver for getting the remote heap maps. Snapdragon Auto 5g Modem Rf Gen 2 Firmware Patch available Fix from $1,6002024-11-04 HIGH 7.8 CVE-2024-9826 A maliciously crafted 3DM file when parsed in atf_api.dll through Autodesk AutoCAD can force a Use-After-Free vulnerability. A malicious actor can le… Autocad 2025.1.1+ Fix from $1,9502024-10-29 HIGH 7.8 CVE-2024-8595 A maliciously crafted MODEL file when parsed in libodxdll.dll through Autodesk AutoCAD can force a Use-After-Free vulnerability. A malicious actor ca… Autocad 2025.1.1+ Fix from $1,9502024-10-29 HIGH 7.8 CVE-2024-8590 A maliciously crafted 3DM file when parsed in atf_api.dll through Autodesk AutoCAD can force a Use-After-Free vulnerability. A malicious actor can l… Autocad 2025.1.1+ Fix from $1,9502024-10-29 HIGH 8.8 CVE-2024-10488 Use after free in WebRTC in Google Chrome prior to 130.0.6723.92 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML … Chrome 130.0.6723.92+ Fix from $1,9502024-10-29 HIGH 7.5 CVE-2024-10459 An attacker could have caused a use-after-free when accessibility was enabled, leading to a potentially exploitable crash. This vulnerability affects… Firefox 115.17 / 128.4.0+ Fix from $1,9502024-10-29