Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
HIGH 7.0 CVE-2024-47747 In the Linux kernel, the following vulnerability has been resolved: net: seeq: Fix use after free vulnerability in ether3 Driver Due to Race Conditi… Linux Kernel 5.10.227 / 5.15.168+ Fix from $1,9502024-10-21 HIGH 7.8 CVE-2024-47748 In the Linux kernel, the following vulnerability has been resolved: vhost_vdpa: assign irq bypass producer token correctly We used to call irq_bypa… Linux Kernel 5.10.227 / 5.15.168+ Fix from $1,9502024-10-21 HIGH 7.8 CVE-2024-47730 In the Linux kernel, the following vulnerability has been resolved: crypto: hisilicon/qm - inject error before stopping queue The master ooo cannot… Debian Linux 5.10.235 / 5.15.174+ Fix from $1,9502024-10-21 MEDIUM 5.5 CVE-2024-47732 In the Linux kernel, the following vulnerability has been resolved: crypto: iaa - Fix potential use after free bug The free_device_compression_mode… Linux Kernel 6.10.13 / 6.11.2+ Fix from $1,6002024-10-21 HIGH 7.8 CVE-2024-47718 In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: always wait for both firmware loading attempts In 'rtw_wait_firmwa… Linux Kernel 5.10.227 / 5.15.168+ Fix from $1,9502024-10-21 MEDIUM 5.5 CVE-2024-47706 In the Linux kernel, the following vulnerability has been resolved: block, bfq: fix possible UAF for bfqq->bic with merge chain 1) initial state, t… Linux Kernel 5.10.227 / 5.15.168+ Fix from $1,6002024-10-21 HIGH 7.8 CVE-2024-47711 In the Linux kernel, the following vulnerability has been resolved: af_unix: Don't return OOB skb in manage_oob(). syzbot reported use-after-free i… Linux Kernel 6.10 / 6.11.2+ Fix from $1,9502024-10-21 HIGH 7.8 CVE-2024-47696 In the Linux kernel, the following vulnerability has been resolved: RDMA/iwcm: Fix WARNING:at_kernel/workqueue.c:#check_flush_dependency In the com… Linux Kernel 5.4 / 5.10+ Fix from $1,9502024-10-21 HIGH 7.8 CVE-2024-47701 In the Linux kernel, the following vulnerability has been resolved: ext4: avoid OOB when system.data xattr changes underneath the filesystem When l… Linux Kernel 5.10.227 / 5.15.168+ Fix from $1,9502024-10-21 HIGH 7.8 CVE-2024-47691 In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid use-after-free in f2fs_stop_gc_thread() syzbot reports a f2f… Linux Kernel 6.6.54 / 6.10.13+ Fix from $1,9502024-10-21 HIGH 7.8 CVE-2024-47675 In the Linux kernel, the following vulnerability has been resolved: bpf: Fix use-after-free in bpf_uprobe_multi_link_attach() If bpf_link_prime() f… Linux Kernel 6.6.54 / 6.10.13+ Fix from $1,9502024-10-21 HIGH 7.8 CVE-2024-47676 In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb.c: fix UAF of vma in hugetlb fault pathway Syzbot reports a UAF in h… Linux Kernel 6.10.13 / 6.11.2+ Fix from $1,9502024-10-21 MEDIUM 5.3 CVE-2024-49023 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Edge Chromium 130.0.2849.46+ Fix from $1,6002024-10-18 MEDIUM 5.9 CVE-2024-3187 This issue tracks two CWE-416 Use After Free (UAF) and one CWE-415 Double Free vulnerabilities in Goahead versions <= 6.0.0. These are caused by JST … Mitigation only Fix from $1,6002024-10-17 HIGH 8.8 CVE-2024-9954 Use after free in AI in Google Chrome prior to 130.0.6723.58 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page… Chrome 130.0.6723.58+ Fix from $1,9502024-10-15 HIGH 8.8 CVE-2024-9955 Use after free in WebAuthentication in Google Chrome prior to 130.0.6723.58 allowed a remote attacker to potentially exploit heap corruption via a cr… Chrome 130.0.6723.58+ Fix from $1,9502024-10-15 HIGH 8.8 CVE-2024-9957 Use after free in UI in Google Chrome on iOS prior to 130.0.6723.58 allowed a remote attacker who convinced a user to engage in specific UI gestures … Chrome 130.0.6723.58+ Fix from $1,9502024-10-15 HIGH 8.8 CVE-2024-9959 Use after free in DevTools in Google Chrome prior to 130.0.6723.58 allowed a remote attacker who had compromised the renderer process to potentially … Chrome 130.0.6723.58+ Fix from $1,9502024-10-15 HIGH 7.5 CVE-2024-9960 Use after free in Dawn in Google Chrome prior to 130.0.6723.58 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa… Chrome 130.0.6723.58+ Fix from $1,9502024-10-15 HIGH 8.8 CVE-2024-9961 Use after free in ParcelTracking in Google Chrome on iOS prior to 130.0.6723.58 allowed a remote attacker who convinced a user to engage in specific … Chrome 130.0.6723.58+ Fix from $1,9502024-10-15 MEDIUM 5.3 CVE-2024-9979 A flaw was found in PyO3. This vulnerability causes a use-after-free issue, potentially leading to memory corruption or crashes via unsound borrowing… Patch available Fix from $1,6002024-10-15 HIGH 7.8 CVE-2024-43701 Software installed and run as a non-privileged user may conduct GPU system calls to read and write freed physical memory from the GPU. Mitigation only Fix from $1,9502024-10-14 HIGH 7.5 CVE-2024-8376 In Eclipse Mosquitto up to version 2.0.18a, an attacker can achieve memory leaking, segmentation fault or heap-use-after-free by sending specific seq… Mosquitto 2.0.19+ Fix from $1,9502024-10-11 MEDIUM 5.5 CVE-2024-47666 In the Linux kernel, the following vulnerability has been resolved: scsi: pm80xx: Set phy->enable_completion only when we wait for it pm8001_phy_co… Linux Kernel 6.6.51 / 6.10.10+ Fix from $1,6002024-10-09 HIGH 7.8 CVE-2024-45138 Substance3D - Stager versions 3.0.3 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the c… Substance 3d Stager 3.0.4+ Fix from $1,9502024-10-09 CRITICAL 9.8 CVE-2024-9680 KEVEPSS 23% An attacker was able to achieve code execution in the content process by exploiting a use-after-free in Animation timelines. We have had reports of t… Firefox 115.16.0 / 115.16.1+ Fix from $2,3002024-10-09 HIGH 7.8 CVE-2024-47418 Animate versions 23.0.7, 24.0.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the conte… Animate 23.0.8 / 24.0.5+ Fix from $1,9502024-10-09 HIGH 7.8 CVE-2024-47412 Animate versions 23.0.7, 24.0.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the conte… Animate 23.0.8 / 24.0.5+ Fix from $1,9502024-10-09 HIGH 7.8 CVE-2024-47413 Animate versions 23.0.7, 24.0.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the conte… Animate 23.0.8 / 24.0.5+ Fix from $1,9502024-10-09 HIGH 7.8 CVE-2024-47414 Animate versions 23.0.7, 24.0.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the conte… Animate 23.0.8 / 24.0.5+ Fix from $1,9502024-10-09