Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
HIGH 7.5 CVE-2019-1010170 Jsish 2.4.77 2.0477 is affected by: Use After Free. The impact is: denial of service. The component is: function Jsi_ObjFree (jsiObj.c:230). The atta… Jsish Patch available Fix from $1,9502019-07-23 HIGH 7.0 CVE-2019-2260 A race condition occurs while processing perf-event which can lead to a use after free condition in Snapdragon Auto, Snapdragon Compute, Snapdragon C… Mdm9150 Firmware Patch available Fix from $1,9502019-07-22 HIGH 7.8 CVE-2019-2264 Null pointer dereference occurs for channel context while opening glink channel in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Mobile, Snapd… Mdm9607 Firmware Patch available Fix from $1,9502019-07-22 HIGH 7.8 CVE-2019-6822 A Use After Free: CWE-416 vulnerability exists in Zelio Soft 2, V5.2 and earlier, which could cause remote code execution when opening a specially cr… Zelio Soft 2 after 5.2 Fix from $1,9502019-07-15 CRITICAL 9.8 CVE-2019-13224 A use-after-free in onig_new_deluxe() in regext.c in Oniguruma 6.9.2 allows attackers to potentially cause information disclosure, denial of service,… PHP 7.1.32 / 7.2.23+ Fix from $2,3002019-07-10 CRITICAL 9.8 CVE-2019-2111 In loop of DnsTlsSocket.cpp, there is a possible heap memory corruption due to a use after free. This could lead to remote code execution in the netd… Android Mitigation only Fix from $2,3002019-07-08 HIGH 7.8 CVE-2019-2112 In several functions of alarm.cc, there is possible memory corruption due to a use after free. This could lead to local code execution with no additi… Android Mitigation only Fix from $1,9502019-07-08 HIGH 7.8 CVE-2019-13289 In Xpdf 4.01.01, there is a use-after-free vulnerability in the function JBIG2Stream::close() located at JBIG2Stream.cc. It can, for example, be trig… Xpdfreader No fix yet Fix from $1,9502019-07-04 HIGH 7.0 CVE-2019-13233 In arch/x86/lib/insn-eval.c in the Linux kernel before 5.1.9, there is a use-after-free for access to an LDT entry because of a race condition betwee… Linux Kernel 5.1.9+ Fix from $1,9502019-07-04 HIGH 8.1 CVE-2019-13045 Irssi before 1.0.8, 1.1.x before 1.1.3, and 1.2.x before 1.2.1, when SASL is enabled, has a use after free when sending SASL login to the server. Irssi 1.0.8 / 1.1.3+ Fix from $1,9502019-06-29 HIGH 8.8 CVE-2019-5809 Use after free in file chooser in Google Chrome prior to 74.0.3729.108 allowed a remote attacker who had compromised the renderer process to perform … Chrome 74.0.3729.108+ Fix from $1,9502019-06-27 HIGH 8.8 CVE-2019-5813 Use after free in V8 in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Chrome 74.0.3729.108+ Fix from $1,9502019-06-27 HIGH 8.8 CVE-2019-5828 Object lifecycle issue in ServiceWorker in Google Chrome prior to 75.0.3770.80 allowed a remote attacker to potentially perform out of bounds memory … Chrome 75.0.3770.80+ Fix from $1,9502019-06-27 MEDIUM 6.5 CVE-2018-6155 Incorrect handling of frames in the VP8 parser in Google Chrome prior to 68.0.3440.75 allowed a remote attacker to potentially exploit heap corruptio… Chrome 68.0.3440.75+ Fix from $1,6002019-06-27 MEDIUM 5.7 CVE-2018-6171 Use after free in Bluetooth in Google Chrome prior to 68.0.3440.75 allowed an attacker who convinced a user to install a malicious extension to obtai… Chrome 68.0.3440.75+ Fix from $1,6002019-06-27 MEDIUM 6.5 CVE-2019-5786 KEVEPSS 62% Object lifetime issue in Blink in Google Chrome prior to 72.0.3626.121 allowed a remote attacker to potentially perform out of bounds memory access v… Chrome 72.0.3626.121+ Fix from $1,6002019-06-27 MEDIUM 6.5 CVE-2019-5805 Use-after-free in PDFium in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF f… Chrome 74.0.3729.108+ Fix from $1,6002019-06-27 HIGH 8.8 CVE-2019-5808 Use after free in Blink in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p… Chrome 74.0.3729.108+ Fix from $1,9502019-06-27 HIGH 8.8 CVE-2018-6118 A double-eviction in the Incognito mode cache that lead to a user-after-free in cache in Google Chrome prior to 66.0.3359.139 allowed a remote attack… Chrome 66.0.3359.139+ Fix from $1,9502019-06-27 HIGH 8.8 CVE-2018-17479 Incorrect object lifetime calculations in GPU code in Google Chrome prior to 70.0.3538.110 allowed a remote attacker to potentially exploit heap corr… Chrome 70.0.3538.110+ Fix from $1,9502019-06-27 HIGH 8.8 CVE-2019-12871 An issue was discovered in PHOENIX CONTACT PC Worx through 1.86, PC Worx Express through 1.86, and Config+ through 1.86. A manipulated PC Worx or Con… Automationworx Software Suite after 1.86 Fix from $1,9502019-06-24 HIGH 7.8 CVE-2019-2024 In em28xx_unregister_dvb of em28xx-dvb.c, there is a possible use after free issue. This could lead to local escalation of privilege with no addition… Android Mitigation only Fix from $1,9502019-06-19 HIGH 7.8 CVE-2019-2025 In binder_thread_read of binder.c, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in th… Android Mitigation only Fix from $1,9502019-06-19 CRITICAL 9.8 CVE-2019-2006 In serviceDied of HalDeathHandlerHidl.cpp, there is a possible memory corruption due to a use after free. This could lead to local escalation of priv… Android Mitigation only Fix from $2,3002019-06-19 MEDIUM 6.5 CVE-2018-19878 An issue was discovered on Teltonika RTU950 R_31.04.89 devices. The application allows a user to login without limitation. For every successful login… Rut950 Firmware Mitigation only Fix from $1,6002019-06-19 HIGH 7.8 CVE-2019-3896 A double-free can happen in idr_remove_all() in lib/idr.c in the Linux kernel 2.6 branch. An unprivileged local attacker can use this flaw for a priv… Linux Kernel after 2.6.39.4 Fix from $1,9502019-06-19 HIGH 7.8 CVE-2018-19444 A use after free in the TextBox field Validate action in IReader_ContentProvider can occur for specially crafted PDF files in Foxit Reader SDK (Activ… Foxit Pdf Sdk Activex after 5.5.0 Fix from $1,9502019-06-17 HIGH 7.8 CVE-2018-13919 Use-after-free vulnerability will occur if reset of the routing table encounters an invalid rule id while processing command to reset in Snapdragon A… Mdm9150 Firmware Mitigation only Fix from $1,9502019-06-14 HIGH 7.8 CVE-2018-11819 Use after issue in WLAN function due to multiple ACS scan requests at a time in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, … Mdm9206 Firmware Patch available Fix from $1,9502019-06-14 HIGH 7.8 CVE-2018-11939 Use after issue in WLAN function due to multiple ACS scan requests at a time in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, … Mdm9150 Firmware Patch available Fix from $1,9502019-06-14