Vulnerability index

Browse CVEs

1,820 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Chrome HIGH 8.8
CVE-2020-6551EPSS 29%

Use after free in WebXR in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 84.0.4147.125+
Fix from $1,950 2020-09-21
Chrome HIGH 8.8
CVE-2020-6552

Use after free in Blink in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 84.0.4147.125+
Fix from $1,950 2020-09-21
Chrome HIGH 8.8
CVE-2020-6553

Use after free in offline mode in Google Chrome on iOS prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap corruption via a …

Fix: 84.0.4147.125+
Fix from $1,950 2020-09-21
Chrome HIGH 8.8
CVE-2020-6559

Use after free in presentation API in Google Chrome prior to 85.0.4183.83 allowed a remote attacker to potentially exploit heap corruption via a craf…

Fix: 85.0.4183.83+
Fix from $1,950 2020-09-21
Chrome HIGH 8.6
CVE-2020-6554

Use after free in extensions in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially perform a sandbox escape via a crafted …

Fix: 84.0.4147.125+
Fix from $1,950 2020-09-21
Chrome HIGH 8.8
CVE-2020-6532

Use after free in SCTP in Google Chrome prior to 84.0.4147.105 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 84.0.4147.105+
Fix from $1,950 2020-09-21
Chrome HIGH 8.8
CVE-2020-6539

Use after free in CSS in Google Chrome prior to 84.0.4147.105 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 84.0.4147.105+
Fix from $1,950 2020-09-21
Chrome HIGH 8.8
CVE-2020-6541EPSS 23%

Use after free in WebUSB in Google Chrome prior to 84.0.4147.105 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 84.0.4147.105+
Fix from $1,950 2020-09-21
Chrome HIGH 8.8
CVE-2020-6542

Use after free in ANGLE in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 84.0.4147.125+
Fix from $1,950 2020-09-21
Chrome HIGH 8.8
CVE-2020-6543

Use after free in task scheduling in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap corruption via a craf…

Fix: 84.0.4147.125+
Fix from $1,950 2020-09-21
Chrome HIGH 8.8
CVE-2020-6544

Use after free in media in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 84.0.4147.125+
Fix from $1,950 2020-09-21
Chrome HIGH 8.8
CVE-2020-6545

Use after free in audio in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 84.0.4147.125+
Fix from $1,950 2020-09-21
Android MEDIUM 6.4
CVE-2020-0268

In NFC, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges…

Mitigation only
Fix from $1,600 2020-09-18
Android HIGH 7.8
CVE-2020-0357

In SurfaceFlinger, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in the graphics serve…

Mitigation only
Fix from $1,950 2020-09-17
Android MEDIUM 6.4
CVE-2020-0358

In SurfaceFlinger, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution…

Mitigation only
Fix from $1,600 2020-09-17
Android MEDIUM 6.7
CVE-2020-0330

In iorap, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege and code execution with Sys…

Mitigation only
Fix from $1,600 2020-09-17
Android HIGH 8.8
CVE-2020-0303

In the Media extractor, there is a possible use after free due to improper locking. This could lead to remote code execution in the media extractor w…

Mitigation only
Fix from $1,950 2020-09-17
Android HIGH 7.8
CVE-2020-0433

In blk_mq_queue_tag_busy_iter of blk-mq-tag.c, there is a possible use after free due to improper locking. This could lead to local escalation of pri…

Patch available
Fix from $1,950 2020-09-17
Android HIGH 7.8
CVE-2020-0434

In Pixel's use of the Catpipe library, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege …

Mitigation only
Fix from $1,950 2020-09-17
Android MEDIUM 6.7
CVE-2020-0429

In l2tp_session_delete and related functions of l2tp_core.c, there is possible memory corruption due to a use after free. This could lead to local es…

Patch available
Fix from $1,600 2020-09-17
Android MEDIUM 6.4
CVE-2020-0428

In CamX code, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution priv…

Mitigation only
Fix from $1,600 2020-09-17
Android CRITICAL 9.8
CVE-2020-0252

There is a possible memory corruption due to a use after free.Product: AndroidVersions: Android SoCAndroid ID: A-152236803

Mitigation only
Fix from $2,300 2020-08-11
Android CRITICAL 9.8
CVE-2020-0253

There is a possible memory corruption due to a use after free.Product: AndroidVersions: Android SoCAndroid ID: A-152647365

No fix yet
Fix from $2,300 2020-08-11
Android HIGH 7.8
CVE-2020-0242

In reset of NuPlayerDriver.cpp, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in the m…

Mitigation only
Fix from $1,950 2020-08-11
Android HIGH 7.8
CVE-2020-0243

In clearPropValue of MediaAnalyticsItem.cpp, there is a possible use-after-free due to improper locking. This could lead to local escalation of privi…

Mitigation only
Fix from $1,950 2020-08-11
Chrome CRITICAL 9.6
CVE-2020-6509

Use after free in extensions in Google Chrome prior to 83.0.4103.116 allowed an attacker who convinced a user to install a malicious extension to pot…

Fix: 83.0.4103.116+
Fix from $2,300 2020-07-22
Chrome HIGH 8.8
CVE-2020-6515

Use after free in tab strip in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 84.0.4147.89+
Fix from $1,950 2020-07-22
Chrome HIGH 8.8
CVE-2020-6518

Use after free in developer tools in Google Chrome prior to 84.0.4147.89 allowed a remote attacker who had convinced the user to use developer tools …

Fix: 84.0.4147.89+
Fix from $1,950 2020-07-22
Chrome CRITICAL 9.6
CVE-2020-6505

Use after free in speech in Google Chrome prior to 83.0.4103.106 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML…

Fix: 83.0.4103.106+
Fix from $2,300 2020-07-22
Android MEDIUM 6.4
CVE-2020-0305

In cdev_get of char_dev.c, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System e…

Patch available
Fix from $1,600 2020-07-17