Vulnerability index

Browse CVEs

40 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Double FreeCWE-415 × clear
Debian Linux HIGH 7.8
CVE-2024-50055

In the Linux kernel, the following vulnerability has been resolved: driver core: bus: Fix double free in driver API bus_register() For bus_register…

Fix: 5.4.291 / 5.10.231+
Fix from $1,950 2024-10-21
Debian Linux HIGH 7.8
CVE-2024-49989

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: fix double free issue during amdgpu module unload Flexible end…

Fix: 5.15.181 / 6.1.129+
Fix from $1,950 2024-10-21
Debian Linux HIGH 7.8
CVE-2024-49882

In the Linux kernel, the following vulnerability has been resolved: ext4: fix double brelse() the buffer of the extents path In ext4_ext_try_to_mer…

Fix: 4.19.323 / 5.4.285+
Fix from $1,950 2024-10-21
Debian Linux HIGH 7.8
CVE-2024-41073

In the Linux kernel, the following vulnerability has been resolved: nvme: avoid double free special payload If a discard request needs to be retrie…

Fix: 5.10.237 / 5.15.164+
Fix from $1,950 2024-07-29
Debian Linux MEDIUM 6.5
CVE-2023-29469

An issue was discovered in libxml2 before 2.10.4. When hashing empty dict strings in a crafted XML document, xmlDictComputeFastKey in dict.c can prod…

Fix: 2.10.4+
Fix from $1,600 2023-04-24
Debian Linux MEDIUM 6.5
CVE-2022-2519

There is a double free or corruption in rotateImage() at tiffcrop.c:8839 found in libtiff 4.4.0rc1

Patch available
Fix from $1,600 2022-08-31
Debian Linux HIGH 7.5
CVE-2022-31291

An issue in dlt_config_file_parser.c of dlt-daemon v2.18.8 allows attackers to cause a double free via crafted TCP packets.

Patch available
Fix from $1,950 2022-06-16
Debian Linux MEDIUM 5.5
CVE-2021-37529

A double-free vulnerability exists in fig2dev through 3.28a is affected by: via the free_stream function in readpics.c, which could cause a denial of…

Fix: after 3.2.8a
Fix from $1,600 2022-01-12
Debian Linux CRITICAL 9.8
CVE-2021-44732

Mbed TLS before 3.0.1 has a double free in certain out-of-memory conditions, as demonstrated by an mbedtls_ssl_set_session() failure.

Fix: 2.16.12 / 2.28.0+
Fix from $2,300 2021-12-20
Debian Linux HIGH 7.5
CVE-2020-36225

A flaw was discovered in OpenLDAP before 2.4.57 leading to a double free and slapd crash in the saslAuthzTo processing, resulting in denial of servic…

Fix: 2.4.57 / 11.4+
Fix from $1,950 2021-01-26
Debian Linux HIGH 7.5
CVE-2020-36223

A flaw was discovered in OpenLDAP before 2.4.57 leading to a slapd crash in the Values Return Filter control handling, resulting in denial of service…

Fix: 2.4.57 / 10.14.6+
Fix from $1,950 2021-01-26
Debian Linux HIGH 8.6
CVE-2020-27153

In BlueZ before 5.55, a double free was found in the gatttool disconnect_cb() routine from shared/att.c. A remote attacker could potentially cause a …

Fix: 5.55+
Fix from $1,950 2020-10-15
Debian Linux MEDIUM 6.5
CVE-2020-11017

In FreeRDP less than or equal to 2.0.0, by providing manipulated input a malicious client can create a double free condition and crash the server. Th…

Fix: 2.1.0+
Fix from $1,600 2020-05-29
Debian Linux CRITICAL 9.8
CVE-2020-6072

An exploitable code execution vulnerability exists in the label-parsing functionality of Videolabs libmicrodns 0.1.0. When parsing compressed labels …

No fix yet
Fix from $2,300 2020-03-24
Debian Linux MEDIUM 5.5
CVE-2020-8003

A double-free vulnerability in vrend_renderer.c in virglrenderer through 0.8.1 allows attackers to cause a denial of service by triggering texture al…

Fix: after 0.8.1
Fix from $1,600 2020-01-27
Debian Linux CRITICAL 9.8
CVE-2019-19725

sysstat through 12.2.0 has a double free in check_file_actlst in sa_common.c.

Fix: after 12.2.0
Fix from $2,300 2019-12-11
Debian Linux CRITICAL 9.8
CVE-2019-17545

GDAL through 3.0.1 has a poolDestroy double free in OGRExpatRealloc in ogr/ogr_expat.cpp when the 10MB threshold is exceeded.

Fix: after 3.0.1
Fix from $2,300 2019-10-14
Debian Linux HIGH 7.8
CVE-2019-1999

In binder_alloc_free_page of binder_alloc.c, there is a possible double free due to improper locking. This could lead to local escalation of privileg…

No fix yet
Fix from $1,950 2019-02-28
Debian Linux CRITICAL 9.8
CVE-2019-6978

The GD Graphics Library (aka LibGD) 2.2.5 has a double free in the gdImage*Ptr() functions in gd_gif_out.c, gd_jpeg.c, and gd_wbmp.c. NOTE: PHP is un…

Patch available
Fix from $2,300 2019-01-28
Debian Linux HIGH 8.8
CVE-2018-15518

QXmlStream in Qt 5.x before 5.11.3 has a double-free or corruption during parsing of a specially crafted illegal XML document.

Fix: 5.11.3+
Fix from $1,950 2018-12-26
Debian Linux HIGH 8.8
CVE-2018-1000877

libarchive version commit 416694915449219d505531b1096384f3237dd6cc onwards (release v3.1.0 onwards) contains a CWE-415: Double Free vulnerability in …

Fix: 3.4.0+
Fix from $1,950 2018-12-20
Debian Linux HIGH 7.8
CVE-2018-18718

An issue was discovered in gThumb through 3.6.2. There is a double-free vulnerability in the add_themes_from_dir method in dlg-contact-sheet.c becaus…

Fix: after 3.6.2
Fix from $1,950 2018-10-29
Debian Linux CRITICAL 9.8
CVE-2018-16402

libelf/elf_end.c in elfutils 0.173 allows remote attackers to cause a denial of service (double free and application crash) or possibly have unspecif…

No fix yet
Fix from $2,300 2018-09-03
Debian Linux HIGH 7.8
CVE-2018-10902

It was found that the raw midi kernel driver does not protect against concurrent access which leads to a double realloc (double free) in snd_rawmidi_…

Patch available
Fix from $1,950 2018-08-21
Debian Linux HIGH 8.8
CVE-2017-14449

A double-Free vulnerability exists in the XCF image rendering functionality of SDL2_image-2.0.2. A specially crafted XCF image can cause a Double-Fre…

Mitigation only
Fix from $1,950 2018-04-24
Debian Linux MEDIUM 6.5
CVE-2018-8099

Incorrect returning of an error code in the index.c:read_entry() function leads to a double free in libgit2 before v0.26.2, which allows an attacker …

Fix: 0.26.2+
Fix from $1,600 2018-03-14
Debian Linux CRITICAL 9.8
CVE-2018-5379EPSS 38%

The Quagga BGP daemon (bgpd) prior to version 1.2.3 can double-free memory when processing certain forms of UPDATE message, containing cluster-list a…

Fix: after 1.2.2
Fix from $2,300 2018-02-19
Debian Linux HIGH 7.5
CVE-2015-5177EPSS 6%

Double free vulnerability in the SLPDKnownDAAdd function in slpd/slpd_knownda.c in OpenSLP 1.2.1 allows remote attackers to cause a denial of service…

Patch available
Fix from $1,950 2017-10-22
Debian Linux MEDIUM 6.5
CVE-2015-1239

Double free vulnerability in the j2k_read_ppm_v3 function in OpenJPEG before r2997, as used in PDFium in Google Chrome, allows remote attackers to ca…

Fix: 2.1.1+
Fix from $1,600 2017-10-18
Debian Linux HIGH 7.5
CVE-2017-6362EPSS 5%

Double free vulnerability in the gdImagePngPtr function in libgd2 before 2.2.5 allows remote attackers to cause a denial of service via vectors relat…

Patch available
Fix from $1,950 2017-09-07