Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
HIGH 8.8 CVE-2023-3730 Use after free in Tab Groups in Google Chrome prior to 115.0.5790.98 allowed a remote attacker who convinced a user to engage in specific UI interact… Chrome 115.0.5790.98+ Fix from $1,9502023-08-01 HIGH 7.8 CVE-2023-4004 A use-after-free flaw was found in the Linux kernel's netfilter in the way a user triggers the nft_pipapo_remove function with the element, without a… Linux Kernel 5.10.188 / 5.15.123+ Fix from $1,9502023-07-31 HIGH 8.8 CVE-2022-4916 Use after free in Media in Google Chrome prior to 103.0.5060.53 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (C… Chrome 103.0.5060.53+ Fix from $1,9502023-07-29 HIGH 8.8 CVE-2022-4918 Use after free in UI in Google Chrome prior to 102.0.5005.61 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Chro… Chrome 102.0.5005.61+ Fix from $1,9502023-07-29 HIGH 8.8 CVE-2022-4919 Use after free in Base Internals in Google Chrome prior to 101.0.4951.41 allowed a remote attacker to perform arbitrary read/write via a crafted HTML… Chrome 101.0.4951.41+ Fix from $1,9502023-07-29 HIGH 8.8 CVE-2022-4921 Use after free in Accessibility in Google Chrome prior to 99.0.4844.51 allowed a remote attacker who convinced a user to engage in specific UI gestur… Chrome 99.0.4844.51+ Fix from $1,9502023-07-29 CRITICAL 9.6 CVE-2022-4924 Use after free in WebRTC in Google Chrome prior to 97.0.4692.71 allowed a remote attacker who had compromised the renderer process to potentially per… Chrome 97.0.4692.71+ Fix from $2,3002023-07-29 HIGH 8.8 CVE-2021-4317 Use after free in ANGLE in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Ch… Chrome 96.0.4664.93+ Fix from $1,9502023-07-29 HIGH 8.8 CVE-2021-4319 Use after free in Blink in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Ch… Chrome 93.0.4577.82+ Fix from $1,9502023-07-29 HIGH 8.8 CVE-2021-4320 Use after free in Blink in Google Chrome prior to 92.0.4515.107 allowed a remote attacker who had compromised the renderer process to perform arbitra… Chrome 92.0.4515.107+ Fix from $1,9502023-07-29 HIGH 8.8 CVE-2021-4322 Use after free in DevTools in Google Chrome prior to 91.0.4472.77 allowed an attacker who convinced a user to install a malicious extension to execut… Chrome 91.0.4472.77+ Fix from $1,9502023-07-29 CRITICAL 9.8 CVE-2023-38598 A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 9.6, macOS Big Sur 11.7.9, iOS 15.7.8 and iPadOS… Ipados 9.6 / 11.7.9+ Fix from $2,3002023-07-28 HIGH 7.8 CVE-2023-35993 A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.6.8, iOS 15.7.8 and iPadOS 15.7.8, iOS… Ipados 9.6 / 11.7.9+ Fix from $1,9502023-07-27 HIGH 7.8 CVE-2023-32381 A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.6.8, iOS 16.6 and iPadOS 16.6, tvOS 16… Ipados 9.6 / 11.7.9+ Fix from $1,9502023-07-27 HIGH 7.8 CVE-2023-32433 A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.6.8, iOS 15.7.8 and iPadOS 15.7.8, iOS… Ipados 9.6 / 11.7.9+ Fix from $1,9502023-07-27 CRITICAL 9.8 CVE-2023-38669 Use after free in paddle.diagonal in PaddlePaddle before 2.5.0. This resulted in a potentially exploitable condition. Paddlepaddle 2.5.0+ Fix from $2,3002023-07-26 MEDIUM 6.5 CVE-2023-35942 Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to versions 1.27.0, 1.26.4, 1.25.9, 1.24.10, and 1.23.12… Envoy 1.23.12 / 1.24.10+ Fix from $1,6002023-07-25 HIGH 7.5 CVE-2023-35943 Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to versions 1.27.0, 1.26.4, 1.25.9, 1.24.10, and 1.23.12… Envoy 1.23.12 / 1.24.10+ Fix from $1,9502023-07-25 MEDIUM 5.5 CVE-2023-39129 GNU gdb (GDB) 13.0.50.20220805-git was discovered to contain a heap use after free via the function add_pe_exported_sym() at /gdb/coff-pe-read.c. Gdb Mitigation only Fix from $1,6002023-07-25 HIGH 7.8 CVE-2023-3812 An out-of-bounds memory access flaw was found in the Linux kernel’s TUN/TAP device driver functionality in how a user generates a malicious (too big)… Linux Kernel 4.19.265 / 5.4.224+ Fix from $1,9502023-07-24 MEDIUM 6.5 CVE-2023-3019 A DMA reentrancy issue leading to a use-after-free error was found in the e1000e NIC emulation code in QEMU. This issue could allow a privileged gues… Enterprise Linux 8.2.0+ Fix from $1,6002023-07-24 HIGH 7.1 CVE-2023-3567 A use-after-free flaw was found in vcs_read in drivers/tty/vt/vc_screen.c in vc_screen in the Linux Kernel. This issue may allow an attacker with loc… Linux Kernel 6.2.0+ Fix from $1,9502023-07-24 HIGH 7.8 CVE-2023-3609 A use-after-free vulnerability in the Linux kernel's net/sched: cls_u32 component can be exploited to achieve local privilege escalation. If tcf_c… Linux Kernel 6.4+ Fix from $1,9502023-07-21 HIGH 7.8 CVE-2023-3610 A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. Flaw in … Linux Kernel 5.10.188 / 5.15.119+ Fix from $1,9502023-07-21 HIGH 7.8 CVE-2023-3776 A use-after-free vulnerability in the Linux kernel's net/sched: cls_fw component can be exploited to achieve local privilege escalation. If tcf_chan… Linux Kernel 4.14.322 / 4.19.291+ Fix from $1,9502023-07-21 HIGH 7.8 CVE-2022-28736 There's a use-after-free vulnerability in grub_cmd_chainloader() function; The chainloader command is used to boot up operating systems that doesn't … Grub2 2.06-3+ Fix from $1,9502023-07-20 HIGH 8.8 CVE-2023-27379 A use-after-free vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 12.1.2.15332. By prematurely deleting objects … Pdf Reader No fix yet Fix from $1,9502023-07-19 HIGH 8.8 CVE-2023-28744 A use-after-free vulnerability exists in the JavaScript engine of Foxit Software's PDF Reader, version 12.1.1.15289. A specially crafted PDF document… Pdf Reader No fix yet Fix from $1,9502023-07-19 HIGH 8.8 CVE-2023-33866 A use-after-free vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 12.1.2.15332. By prematurely deleting objects … Pdf Reader No fix yet Fix from $1,9502023-07-19 HIGH 8.8 CVE-2023-33876 A use-after-free vulnerability exists in the way Foxit Reader 12.1.2.15332 handles destroying annotations. Specially crafted Javascript code inside a… Pdf Reader No fix yet Fix from $1,9502023-07-19