Vulnerability index

Browse CVEs

1,820 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Android MEDIUM 6.7
CVE-2021-39656

In __configfs_open_file of file.c, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in th…

Patch available
Fix from $1,600 2021-12-15
Android HIGH 7.8
CVE-2021-1028

In setClientStateLocked of SurfaceFlinger.cpp, there is a possible out of bounds write due to a use after free. This could lead to local escalation o…

Mitigation only
Fix from $1,950 2021-12-15
Android HIGH 7.8
CVE-2021-1029

In setClientStateLocked of SurfaceFlinger.cpp, there is a possible out of bounds write due to a use after free. This could lead to local escalation o…

Mitigation only
Fix from $1,950 2021-12-15
Android HIGH 7.8
CVE-2021-1048 KEV

In ep_loop_check_proc of eventpoll.c, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privi…

Patch available
Fix from $1,950 2021-12-15
Android HIGH 7.8
CVE-2021-0929

In ion_dma_buf_end_cpu_access and related functions of ion.c, there is a possible way to corrupt memory due to a use after free. This could lead to l…

Mitigation only
Fix from $1,950 2021-12-15
Chrome CRITICAL 9.6
CVE-2021-38002

Use after free in Web Transport in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially perform a sandbox escape via a crafte…

Fix: 95.0.4638.69+
Fix from $2,300 2021-11-23
Chrome HIGH 8.8
CVE-2021-37997

Use after free in Sign-In in Google Chrome prior to 95.0.4638.69 allowed a remote attacker who convinced a user to sign into Chrome to potentially ex…

Fix: 95.0.4638.69+
Fix from $1,950 2021-11-23
Chrome HIGH 8.8
CVE-2021-37998

Use after free in Garbage Collection in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially exploit heap corruption via a cr…

Fix: 95.0.4638.69+
Fix from $1,950 2021-11-23
Android MEDIUM 6.7
CVE-2021-0669

In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution priv…

Mitigation only
Fix from $1,600 2021-11-18
Android MEDIUM 6.7
CVE-2021-0670

In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution priv…

Mitigation only
Fix from $1,600 2021-11-18
Android MEDIUM 6.7
CVE-2021-0629

In mdlactl driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execut…

Mitigation only
Fix from $1,600 2021-11-18
Android MEDIUM 6.7
CVE-2021-0656

In edma driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution…

Mitigation only
Fix from $1,600 2021-11-18
Android MEDIUM 6.7
CVE-2021-0664

In ccu, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution privile…

Mitigation only
Fix from $1,600 2021-11-18
Android MEDIUM 6.7
CVE-2021-0667

In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with System execution priv…

Mitigation only
Fix from $1,600 2021-11-18
Tensorflow HIGH 7.8
CVE-2021-41220

TensorFlow is an open source platform for machine learning. In affected versions the async implementation of `CollectiveReduceV2` suffers from a memo…

Fix: 2.6.1+
Fix from $1,950 2021-11-05
Chrome CRITICAL 9.6
CVE-2020-6492

Use after free in ANGLE in Google Chrome prior to 83.0.4103.97 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML p…

Fix: 83.0.4103.97+
Fix from $2,300 2021-11-02
Chrome HIGH 8.8
CVE-2021-37982

Use after free in Incognito in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome HIGH 8.8
CVE-2021-37983

Use after free in Dev Tools in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome HIGH 8.8
CVE-2021-37985

Use after free in V8 in Google Chrome prior to 95.0.4638.54 allowed a remote attacker who had convinced a user to allow for connection to debugger to…

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome HIGH 8.8
CVE-2021-37987

Use after free in Network APIs in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a crafted …

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome HIGH 8.8
CVE-2021-37988

Use after free in Profiles in Google Chrome prior to 95.0.4638.54 allowed a remote attacker who convinced a user to engage in specific gestures to po…

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome HIGH 8.8
CVE-2021-37993

Use after free in PDF Accessibility in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a cra…

Fix: 95.0.4638.54+
Fix from $1,950 2021-11-02
Chrome HIGH 8.8
CVE-2021-37977

Use after free in Garbage Collection in Google Chrome prior to 94.0.4606.81 allowed a remote attacker to potentially exploit heap corruption via a cr…

Fix: 94.0.4606.81+
Fix from $1,950 2021-11-02
Android HIGH 7.8
CVE-2021-0936

In acc_read of f_accessory.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no…

Mitigation only
Fix from $1,950 2021-10-25
Android MEDIUM 6.7
CVE-2021-0935

In ip6_xmit of ip6_output.c, there is a possible out of bounds write due to a use after free. This could lead to local escalation of privilege with S…

Mitigation only
Fix from $1,600 2021-10-25
Android MEDIUM 6.7
CVE-2021-0941

In bpf_skb_change_head of filter.c, there is a possible out of bounds read due to a use after free. This could lead to local escalation of privilege …

Mitigation only
Fix from $1,600 2021-10-25
Android MEDIUM 6.8
CVE-2021-0703

In SecondStageMain of init.cpp, there is a possible use after free due to incorrect shared_ptr usage. This could lead to local escalation of privileg…

Patch available
Fix from $1,600 2021-10-22
Android HIGH 7.8
CVE-2021-0483

In multiple methods of AAudioService, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege wi…

Patch available
Fix from $1,950 2021-10-22
Chrome CRITICAL 9.6
CVE-2021-37973 KEVEPSS 12%

Use after free in Portals in Google Chrome prior to 94.0.4606.61 allowed a remote attacker who had compromised the renderer process to potentially pe…

Fix: 94.0.4606.61+
Fix from $2,300 2021-10-08
Chrome HIGH 8.8
CVE-2021-37970

Use after free in File System API in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to potentially exploit heap corruption via a craft…

Fix: 94.0.4606.54+
Fix from $1,950 2021-10-08