Vulnerability index

Browse CVEs

1,820 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Chrome HIGH 8.8
CVE-2023-5855

Use after free in Reading Mode in Google Chrome prior to 119.0.6045.105 allowed a remote attacker who convinced a user to engage in specific UI gestu…

Fix: 119.0.6045.105+
Fix from $1,950 2023-11-01
Chrome HIGH 8.8
CVE-2023-5856

Use after free in Side Panel in Google Chrome prior to 119.0.6045.105 allowed a remote attacker who convinced a user to engage in specific UI gesture…

Fix: 119.0.6045.105+
Fix from $1,950 2023-11-01
Android HIGH 8.8
CVE-2023-21392

In Bluetooth, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege when connecting to …

Fix: 14.0+
Fix from $1,950 2023-10-30
Android HIGH 7.8
CVE-2023-21381

In Media Resource Manager, there is a possible local arbitrary code execution due to use after free. This could lead to local escalation of privilege…

Fix: 14.0+
Fix from $1,950 2023-10-30
Android MEDIUM 6.5
CVE-2023-21395

In Bluetooth, there is a possible out of bounds read due to a use after free. This could lead to remote information disclosure over Bluetooth with no…

Fix: 14.0+
Fix from $1,600 2023-10-30
Android HIGH 8.8
CVE-2023-21361

In Bluetooth, there is a possibility of code-execution due to a use after free. This could lead to paired device escalation of privilege in the privi…

Mitigation only
Fix from $1,950 2023-10-30
Android HIGH 7.8
CVE-2023-21355

In libaudioclient, there is a possible out of bounds write due to a use after free. This could lead to local escalation of privilege with no addition…

Mitigation only
Fix from $1,950 2023-10-30
Android HIGH 7.8
CVE-2023-40140

In android_view_InputDevice_create of android_view_InputDevice.cpp, there is a possible way to execute arbitrary code due to a use after free. This c…

Patch available
Fix from $1,950 2023-10-27
Android HIGH 7.0
CVE-2023-40131

In GpuService of GpuService.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no…

Patch available
Fix from $1,950 2023-10-27
Chrome HIGH 8.8
CVE-2023-5472

Use after free in Profiles in Google Chrome prior to 118.0.5993.117 allowed a remote attacker to potentially exploit heap corruption via a crafted HT…

Fix: 118.0.5993.117+
Fix from $1,950 2023-10-25
Chrome HIGH 8.8
CVE-2023-5218

Use after free in Site Isolation in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to potentially exploit heap corruption via a craft…

Fix: 118.0.5993.70+
Fix from $1,950 2023-10-11
Chrome HIGH 8.8
CVE-2023-5476

Use after free in Blink History in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to potentially exploit heap corruption via a crafte…

Fix: 118.0.5993.70+
Fix from $1,950 2023-10-11
Chrome MEDIUM 6.3
CVE-2023-5473

Use after free in Cast in Google Chrome prior to 118.0.5993.70 allowed a remote attacker who had compromised the renderer process to potentially expl…

Fix: 118.0.5993.70+
Fix from $1,600 2023-10-11
Android MEDIUM 6.7
CVE-2023-35660

In lwis_transaction_client_cleanup of lwis_transaction.c, there is a possible way to corrupt memory due to a use after free. This could lead to local…

Mitigation only
Fix from $1,600 2023-10-11
Android HIGH 7.5
CVE-2023-40632

In jpg driver, there is a possible use after free due to a logic error. This could lead to remote information disclosure no additional execution priv…

Mitigation only
Fix from $1,950 2023-10-08
Chrome HIGH 8.8
CVE-2023-5186

Use after free in Passwords in Google Chrome prior to 117.0.5938.132 allowed a remote attacker who convinced a user to engage in specific UI interact…

Fix: 117.0.5938.132+
Fix from $1,950 2023-09-28
Chrome HIGH 8.8
CVE-2023-5187

Use after free in Extensions in Google Chrome prior to 117.0.5938.132 allowed an attacker who convinced a user to install a malicious extension to po…

Fix: 117.0.5938.132+
Fix from $1,950 2023-09-28
Android HIGH 7.8
CVE-2023-35687

In MtpPropertyValue of MtpProperty.h, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege…

Patch available
Fix from $1,950 2023-09-11
Android HIGH 8.8
CVE-2023-35658

In gatt_process_prep_write_rsp of gatt_cl.cc, there is a possible privilege escalation due to a use after free. This could lead to remote (proximal/a…

Patch available
Fix from $1,950 2023-09-11
Android HIGH 7.8
CVE-2023-35666

In bta_av_rc_msg of bta_av_act.cc, there is a possible use after free due to a logic error in the code. This could lead to local escalation of privil…

Patch available
Fix from $1,950 2023-09-11
Chrome HIGH 8.8
CVE-2023-4763

Use after free in Networks in Google Chrome prior to 116.0.5845.179 allowed a remote attacker to potentially exploit heap corruption via a crafted HT…

Fix: 116.0.5845.179+
Fix from $1,950 2023-09-05
Android MEDIUM 6.4
CVE-2023-20834

In pda, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges…

Mitigation only
Fix from $1,600 2023-09-04
Chrome HIGH 8.8
CVE-2023-4572

Use after free in MediaStream in Google Chrome prior to 116.0.5845.140 allowed a remote attacker to potentially exploit heap corruption via a crafted…

Fix: 116.0.5845.140+
Fix from $1,950 2023-08-29
Chrome HIGH 8.8
CVE-2023-4429

Use after free in Loader in Google Chrome prior to 116.0.5845.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 116.0.5845.110+
Fix from $1,950 2023-08-23
Chrome HIGH 8.8
CVE-2023-4430EPSS 9%

Use after free in Vulkan in Google Chrome prior to 116.0.5845.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 116.0.5845.110+
Fix from $1,950 2023-08-23
Chrome HIGH 8.8
CVE-2023-4366

Use after free in Extensions in Google Chrome prior to 116.0.5845.96 allowed an attacker who convinced a user to install a malicious extension to pot…

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15
Chrome HIGH 8.8
CVE-2023-4356

Use after free in Audio in Google Chrome prior to 116.0.5845.96 allowed a remote attacker who has convinced a user to engage in specific UI interacti…

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15
Chrome HIGH 8.8
CVE-2023-4358

Use after free in DNS in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15
Chrome HIGH 8.8
CVE-2023-4351

Use after free in Network in Google Chrome prior to 116.0.5845.96 allowed a remote attacker who has elicited a browser shutdown to potentially exploi…

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15
Chrome HIGH 8.8
CVE-2023-2312

Use after free in Offline in Google Chrome on Android prior to 116.0.5845.96 allowed a remote attacker who had compromised the renderer process to po…

Fix: 116.0.5845.96+
Fix from $1,950 2023-08-15