Vulnerability index

Browse CVEs

1,820 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Chrome HIGH 8.8
CVE-2023-1216

Use after free in DevTools in Google Chrome prior to 111.0.5563.64 allowed a remote attacker who had convienced the user to engage in direct UI inter…

Fix: 111.0.5563.64+
Fix from $1,950 2023-03-07
Chrome HIGH 8.8
CVE-2023-1218

Use after free in WebRTC in Google Chrome prior to 111.0.5563.64 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 111.0.5563.64+
Fix from $1,950 2023-03-07
Android HIGH 7.8
CVE-2023-20933

In several functions of MediaCodec.cpp, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of pri…

Patch available
Fix from $1,950 2023-02-28
Android HIGH 7.8
CVE-2023-20937

In several functions of the Android Linux kernel, there is a possible way to corrupt memory due to a use after free. This could lead to local escalat…

Patch available
Fix from $1,950 2023-02-28
Android HIGH 7.8
CVE-2023-20938

In binder_transaction_buffer_release of binder.c, there is a possible use after free due to improper input validation. This could lead to local escal…

Patch available
Fix from $1,950 2023-02-28
Chrome HIGH 8.8
CVE-2023-0927

Use after free in Web Payments API in Google Chrome on Android prior to 110.0.5481.177 allowed a remote attacker who had compromised the renderer pro…

Fix: 110.0.5481.177+
Fix from $1,950 2023-02-22
Chrome HIGH 8.8
CVE-2023-0928

Use after free in SwiftShader in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap corruption via a crafted…

Fix: 110.0.5481.177+
Fix from $1,950 2023-02-22
Chrome HIGH 8.8
CVE-2023-0929

Use after free in Vulkan in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 110.0.5481.177+
Fix from $1,950 2023-02-22
Chrome HIGH 8.8
CVE-2023-0931

Use after free in Video in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 110.0.5481.177+
Fix from $1,950 2023-02-22
Chrome HIGH 8.8
CVE-2023-0932

Use after free in WebRTC in Google Chrome on Windows prior to 110.0.5481.177 allowed a remote attacker who convinced the user to engage in specific U…

Fix: 110.0.5481.177+
Fix from $1,950 2023-02-22
Chrome HIGH 8.8
CVE-2023-0941

Use after free in Prompts in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 110.0.5481.177+
Fix from $1,950 2023-02-22
Android MEDIUM 5.5
CVE-2022-47371

In bt driver, there is a thread competition leads to early release of resources to be accessed. This could lead to local denial of service in kernel.

Mitigation only
Fix from $1,600 2023-02-12
Chrome HIGH 8.8
CVE-2023-0699

Use after free in GPU in Google Chrome prior to 110.0.5481.77 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 110.0.5481.77+
Fix from $1,950 2023-02-07
Android MEDIUM 6.4
CVE-2023-20608

In display drm, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution pr…

Mitigation only
Fix from $1,600 2023-02-06
Chrome HIGH 8.8
CVE-2023-0471

Use after free in WebTransport in Google Chrome prior to 109.0.5414.119 allowed a remote attacker to potentially exploit heap corruption via a crafte…

Fix: 109.0.5414.119+
Fix from $1,950 2023-01-30
Chrome HIGH 8.8
CVE-2023-0472

Use after free in WebRTC in Google Chrome prior to 109.0.5414.119 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 109.0.5414.119+
Fix from $1,950 2023-01-30
Chrome HIGH 8.8
CVE-2023-0474

Use after free in GuestView in Google Chrome prior to 109.0.5414.119 allowed an attacker who convinced a user to install a malicious extension to pot…

Fix: 109.0.5414.119+
Fix from $1,950 2023-01-30
Android HIGH 7.8
CVE-2023-20920

In queue of UsbRequest.java, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with…

Mitigation only
Fix from $1,950 2023-01-26
Android HIGH 7.8
CVE-2023-20925

In setUclampMinLocked of PowerSessionManager.cpp, there is a possible way to corrupt memory due to a use after free. This could lead to local escalat…

Mitigation only
Fix from $1,950 2023-01-26
Android HIGH 7.8
CVE-2023-20928

In binder_vma_close of binder.c, there is a possible use after free due to improper locking. This could lead to local escalation of privilege with no…

No fix yet
Fix from $1,950 2023-01-26
Chrome HIGH 8.8
CVE-2023-0134

Use after free in Cart in Google Chrome prior to 109.0.5414.74 allowed an attacker who convinced a user to install a malicious extension to potential…

Fix: 109.0.5414.74+
Fix from $1,950 2023-01-10
Chrome HIGH 8.8
CVE-2023-0135

Use after free in Cart in Google Chrome prior to 109.0.5414.74 allowed an attacker who convinced a user to install a malicious extension to potential…

Fix: 109.0.5414.74+
Fix from $1,950 2023-01-10
Chrome HIGH 8.8
CVE-2023-0128

Use after free in Overview Mode in Google Chrome on Chrome OS prior to 109.0.5414.74 allowed a remote attacker who convinced a user to engage in spec…

Fix: 109.0.5414.74+
Fix from $1,950 2023-01-10
Chrome HIGH 8.8
CVE-2022-2742

Use after free in Exosphere in Google Chrome on Chrome OS and Lacros prior to 104.0.5112.79 allowed a remote attacker who convinced a user to engage …

Fix: 104.0.5112.79+
Fix from $1,950 2023-01-02
Chrome HIGH 7.5
CVE-2022-3842EPSS 18%

Use after free in Passwords in Google Chrome prior to 105.0.5195.125 allowed a remote attacker who had compromised the renderer process to potentiall…

Fix: 105.0.5195.125+
Fix from $1,950 2023-01-02
Chrome HIGH 7.4
CVE-2019-13768

Use after free in FileAPI in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML…

Fix: 72.0.3626.81+
Fix from $1,950 2023-01-02
Chrome MEDIUM 6.1
CVE-2022-3863

Use after free in Browser History in Google Chrome prior to 100.0.4896.75 allowed a remote attacker to potentially exploit heap corruption via a craf…

Fix: 100.0.4896.75+
Fix from $1,600 2023-01-02
Android MEDIUM 6.7
CVE-2022-42520

In ServiceInterface::HandleRequest of serviceinterface.cpp, there is a possible use after free. This could lead to local escalation of privilege with…

Mitigation only
Fix from $1,600 2022-12-16
Android MEDIUM 6.7
CVE-2022-20581

In the Pixel camera driver, there is a possible use after free due to a logic error in the code. This could lead to local escalation of privilege wit…

Mitigation only
Fix from $1,600 2022-12-16
Android HIGH 7.8
CVE-2022-20561

In TBD of aud_hal_tunnel.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no a…

Mitigation only
Fix from $1,950 2022-12-16