Vulnerability index

Browse CVEs

1,820 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Chrome HIGH 8.8
CVE-2022-3887

Use after free in Web Workers in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially exploit heap corruption via a crafted…

Fix: 107.0.5304.106+
Fix from $1,950 2022-11-09
Chrome HIGH 8.8
CVE-2022-3888

Use after free in WebCodecs in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially exploit heap corruption via a crafted H…

Fix: 107.0.5304.106+
Fix from $1,950 2022-11-09
Chrome HIGH 8.8
CVE-2022-3885

Use after free in V8 in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 107.0.5304.106+
Fix from $1,950 2022-11-09
Android MEDIUM 6.5
CVE-2022-20447

In PAN_WriteBuf of pan_api.cc, there is a possible out of bounds read due to a use after free. This could lead to remote information disclosure over …

Mitigation only
Fix from $1,600 2022-11-08
Android MEDIUM 6.7
CVE-2022-32607

In aee, there is a possible use after free due to a missing bounds check. This could lead to local escalation of privilege with System execution priv…

Mitigation only
Fix from $1,600 2022-11-08
Chrome HIGH 8.8
CVE-2022-3658

Use after free in Feedback service on Chrome OS in Google Chrome on Chrome OS prior to 107.0.5304.62 allowed an attacker who convinced a user to inst…

Fix: 107.0.5304.62+
Fix from $1,950 2022-11-01
Chrome HIGH 8.8
CVE-2022-3659

Use after free in Accessibility in Google Chrome on Chrome OS prior to 107.0.5304.62 allowed a remote attacker who convinced a user to engage in spec…

Fix: 107.0.5304.62+
Fix from $1,950 2022-11-01
Chrome HIGH 8.8
CVE-2022-3654EPSS 24%

Use after free in Layout in Google Chrome prior to 107.0.5304.62 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 107.0.5304.62+
Fix from $1,950 2022-11-01
Chrome HIGH 8.8
CVE-2022-3657

Use after free in Extensions in Google Chrome prior to 107.0.5304.62 allowed an attacker who convinced a user to install a malicious extension to pot…

Fix: 107.0.5304.62+
Fix from $1,950 2022-11-01
Chrome MEDIUM 6.5
CVE-2022-3309

Use after free in assistant in Google Chrome on ChromeOS prior to 106.0.5249.62 allowed a remote attacker who convinced a user to engage in specific …

Fix: 106.0.5249.62+
Fix from $1,600 2022-11-01
Chrome MEDIUM 6.5
CVE-2022-3311

Use after free in import in Google Chrome prior to 106.0.5249.62 allowed a remote attacker who had compromised a WebUI process to potentially perform…

Fix: 106.0.5249.62+
Fix from $1,600 2022-11-01
Chrome MEDIUM 6.5
CVE-2022-3314

Use after free in logging in Google Chrome prior to 106.0.5249.62 allowed a remote attacker who had compromised a WebUI process to potentially perfor…

Fix: 106.0.5249.62+
Fix from $1,600 2022-11-01
Chrome HIGH 8.8
CVE-2022-3305

Use after free in survey in Google Chrome on ChromeOS prior to 106.0.5249.62 allowed a remote attacker to potentially exploit heap corruption via a c…

Fix: 106.0.5249.62+
Fix from $1,950 2022-11-01
Chrome HIGH 8.8
CVE-2022-3306

Use after free in survey in Google Chrome on ChromeOS prior to 106.0.5249.62 allowed a remote attacker to potentially exploit heap corruption via a c…

Fix: 106.0.5249.62+
Fix from $1,950 2022-11-01
Chrome HIGH 8.8
CVE-2022-3304

Use after free in CSS in Google Chrome prior to 106.0.5249.62 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 106.0.5249.62+
Fix from $1,950 2022-11-01
Chrome HIGH 8.8
CVE-2022-3370

Use after free in Custom Elements in Google Chrome prior to 106.0.5249.91 allowed a remote attacker to potentially exploit heap corruption via a craf…

Fix: 106.0.5249.91+
Fix from $1,950 2022-11-01
Android MEDIUM 6.7
CVE-2022-20409

In io_identity_cow of io_uring.c, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege…

Patch available
Fix from $1,600 2022-10-11
Android HIGH 7.0
CVE-2021-0696

In dllist_remove_node of TBD, there is a possible use after free bug due to a race condition. This could lead to local escalation of privilege with n…

Mitigation only
Fix from $1,950 2022-10-11
Android HIGH 7.8
CVE-2022-39853

A use after free vulnerability in perf-mgr driver prior to SMR Oct-2022 Release 1 allows attacker to cause memory access fault.

Mitigation only
Fix from $1,950 2022-10-07
Android MEDIUM 5.3
CVE-2022-39847

Use after free vulnerability in set_nft_pid and signal_handler function of NFC driver prior to SMR Oct-2022 Release 1 allows attackers to perform mal…

Mitigation only
Fix from $1,600 2022-10-07
Chrome HIGH 8.8
CVE-2022-3055

Use after free in Passwords in Google Chrome prior to 105.0.5195.52 allowed a remote attacker who convinced a user to engage in specific UI interacti…

Fix: 105.0.5195.52+
Fix from $1,950 2022-09-26
Chrome HIGH 8.8
CVE-2022-3058

Use after free in Sign-In Flow in Google Chrome prior to 105.0.5195.52 allowed a remote attacker who convinced a user to engage in specific UI intera…

Fix: 105.0.5195.52+
Fix from $1,950 2022-09-26
Chrome HIGH 8.8
CVE-2022-3196

Use after free in PDF in Google Chrome prior to 105.0.5195.125 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF fil…

Fix: 105.0.5195.125+
Fix from $1,950 2022-09-26
Chrome HIGH 8.8
CVE-2022-3197

Use after free in PDF in Google Chrome prior to 105.0.5195.125 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF fil…

Fix: 105.0.5195.125+
Fix from $1,950 2022-09-26
Chrome HIGH 8.8
CVE-2022-3198

Use after free in PDF in Google Chrome prior to 105.0.5195.125 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF fil…

Fix: 105.0.5195.125+
Fix from $1,950 2022-09-26
Chrome HIGH 8.8
CVE-2022-3199

Use after free in Frames in Google Chrome prior to 105.0.5195.125 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 105.0.5195.125+
Fix from $1,950 2022-09-26
Chrome HIGH 8.8
CVE-2022-3041

Use after free in WebSQL in Google Chrome prior to 105.0.5195.52 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 105.0.5195.52+
Fix from $1,950 2022-09-26
Chrome HIGH 8.8
CVE-2022-3046

Use after free in Browser Tag in Google Chrome prior to 105.0.5195.52 allowed an attacker who convinced a user to install a malicious extension to po…

Fix: 105.0.5195.52+
Fix from $1,950 2022-09-26
Chrome HIGH 8.8
CVE-2022-2855

Use after free in ANGLE in Google Chrome prior to 104.0.5112.101 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 104.0.5112.101+
Fix from $1,950 2022-09-26
Chrome HIGH 8.8
CVE-2022-2858

Use after free in Sign-In Flow in Google Chrome prior to 104.0.5112.101 allowed a remote attacker to potentially exploit heap corruption via specific…

Fix: 104.0.5112.101+
Fix from $1,950 2022-09-26