Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
MEDIUM 5.5 CVE-2021-45262 An invalid free vulnerability exists in gpac 1.1.0 via the gf_sg_command_del function, which causes a segmentation fault and application crash. Gpac No fix yet Fix from $1,6002021-12-22 MEDIUM 5.5 CVE-2021-45263 An invalid free vulnerability exists in gpac 1.1.0 via the gf_svg_delete_attribute_value function, which causes a segmentation fault and application … Gpac No fix yet Fix from $1,6002021-12-22 MEDIUM 5.5 CVE-2021-45291 The gf_dump_setup function in GPAC 1.0.1 allows malicoius users to cause a denial of service (Invalid memory address dereference) via a crafted file … Gpac No fix yet Fix from $1,6002021-12-21 MEDIUM 6.7 CVE-2021-0893 In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution priv… Android Mitigation only Fix from $1,6002021-12-17 MEDIUM 6.7 CVE-2021-0898 In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution priv… Android Mitigation only Fix from $1,6002021-12-17 MEDIUM 6.7 CVE-2021-0899 In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution priv… Android Mitigation only Fix from $1,6002021-12-17 MEDIUM 6.7 CVE-2021-39638 In periodic_io_work_func of lwis_periodic_io.c, there is a possible out of bounds write due to a use after free. This could lead to local escalation … Android Patch available Fix from $1,6002021-12-15 MEDIUM 6.7 CVE-2021-39656 In __configfs_open_file of file.c, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in th… Android Patch available Fix from $1,6002021-12-15 HIGH 7.8 CVE-2021-1028 In setClientStateLocked of SurfaceFlinger.cpp, there is a possible out of bounds write due to a use after free. This could lead to local escalation o… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.8 CVE-2021-1029 In setClientStateLocked of SurfaceFlinger.cpp, there is a possible out of bounds write due to a use after free. This could lead to local escalation o… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.8 CVE-2021-1048 KEV In ep_loop_check_proc of eventpoll.c, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privi… Android Patch available Fix from $1,9502021-12-15 MEDIUM 6.4 CVE-2021-0920 KEV In unix_scm_to_skb of af_unix.c, there is a possible use after free bug due to a race condition. This could lead to local escalation of privilege wit… Linux Kernel after 5.13 Fix from $1,6002021-12-15 HIGH 7.8 CVE-2021-0929 In ion_dma_buf_end_cpu_access and related functions of ion.c, there is a possible way to corrupt memory due to a use after free. This could lead to l… Android Mitigation only Fix from $1,9502021-12-15 HIGH 7.8 CVE-2021-44433 A vulnerability has been identified in JT Utilities (All versions < V13.1.1.0), JTTK (All versions < V11.1.1.0). JTTK library in affected products co… Jt Open Toolkit 11.1.1.0 / 13.1.1.0+ Fix from $1,9502021-12-14 HIGH 7.8 CVE-2021-44447 A vulnerability has been identified in JT Utilities (All versions < V13.0.3.0), JTTK (All versions < V11.0.3.0). JTTK library in affected products co… Jt Open Toolkit 11.0.3.0 / 13.0.3.0+ Fix from $1,9502021-12-14 HIGH 7.8 CVE-2021-44014 A vulnerability has been identified in JT Open (All versions < V11.1.1.0), JT Utilities (All versions < V13.1.1.0), Solid Edge (All versions < V2023)… Jt Open Toolkit 11.1.1.0 / 13.1.1.0+ Fix from $1,9502021-12-14 HIGH 8.8 CVE-2021-43535 A use-after-free could have occured when an HTTP2 session object was released on a different thread, leading to memory corruption and a potentially e… Firefox 91.3.0 / 93.0+ Fix from $1,9502021-12-08 HIGH 8.8 CVE-2021-43539 Failure to correctly record the location of live pointers across wasm instance calls resulted in a GC occurring within the call not tracing those liv… Firefox 91.4.0 / 95.0+ Fix from $1,9502021-12-08 HIGH 8.8 CVE-2021-38504 When interacting with an HTML input element's file picker dialog with webkitdirectory set, a use-after-free could have resulted, leading to memory co… Firefox 91.3.0 / 94.0+ Fix from $1,9502021-12-08 CRITICAL 9.8 CVE-2021-37045 There is an UAF vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause the device to restart unexpectedly and the… Harmonyos 2.0+ Fix from $2,3002021-12-08 HIGH 7.8 CVE-2021-4069 vim is vulnerable to Use After Free Fedora 8.2.3741+ Fix from $1,9502021-12-06 HIGH 7.8 CVE-2021-44047 A use-after-free vulnerability exists when reading a DWF/DWFX file using Open Design Alliance Drawings SDK before 2022.11. The specific issue exists … Drawings Sdk 2022.11+ Fix from $1,9502021-12-05 HIGH 8.1 CVE-2021-43790 Lucet is a native WebAssembly compiler and runtime. There is a bug in the main branch of `lucet-runtime` affecting all versions published to crates.i… Lucet after 0.6.1 Fix from $1,9502021-11-30 HIGH 8.8 CVE-2021-37997 Use after free in Sign-In in Google Chrome prior to 95.0.4638.69 allowed a remote attacker who convinced a user to sign into Chrome to potentially ex… Chrome 95.0.4638.69+ Fix from $1,9502021-11-23 HIGH 8.8 CVE-2021-37998 Use after free in Garbage Collection in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially exploit heap corruption via a cr… Chrome 95.0.4638.69+ Fix from $1,9502021-11-23 CRITICAL 9.6 CVE-2021-38002 Use after free in Web Transport in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially perform a sandbox escape via a crafte… Chrome 95.0.4638.69+ Fix from $2,3002021-11-23 HIGH 7.8 CVE-2021-43582 A Use-After-Free Remote Vulnerability exists when reading a DWG file using Open Design Alliance Drawings SDK before 2022.11. The specific issue exist… Drawings Sdk 2022.11+ Fix from $1,9502021-11-22 HIGH 8.8 CVE-2021-21900 A code execution vulnerability exists in the dxfRW::processLType() functionality of LibreCad libdxfrw 2.2.0-rc2-19-ge02f3580. A specially-crafted .dx… Debian Linux No fix yet Fix from $1,9502021-11-19 HIGH 7.8 CVE-2021-3962EPSS 6% A flaw was found in ImageMagick where it did not properly sanitize certain input before using it to invoke convert processes. This flaw allows an att… Imagemagick Patch available Fix from $1,9502021-11-19 HIGH 7.8 CVE-2021-3974 vim is vulnerable to Use After Free Fedora 8.2.3612+ Fix from $1,9502021-11-19