Vulnerability index

Browse CVEs

1,820 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Android HIGH 7.8
CVE-2020-10838

An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. PROCA allows a use-after-free and arbitrary code execution. The S…

Mitigation only
Fix from $1,950 2020-03-24
Chrome HIGH 8.8
CVE-2020-6424

Use after free in media in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 80.0.3987.149+
Fix from $1,950 2020-03-23
Chrome HIGH 8.8
CVE-2020-6449

Use after free in audio in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 80.0.3987.149+
Fix from $1,950 2020-03-23
Chrome HIGH 8.8
CVE-2020-6384

Use after free in WebAudio in Google Chrome prior to 80.0.3987.116 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM…

Fix: 80.0.3987.116+
Fix from $1,950 2020-02-27
Chrome HIGH 8.8
CVE-2020-6386

Use after free in speech in Google Chrome prior to 80.0.3987.116 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 80.0.3987.116+
Fix from $1,950 2020-02-27
Android HIGH 7.0
CVE-2020-0030

In binder_thread_release of binder.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilege wi…

Patch available
Fix from $1,950 2020-02-13
Android HIGH 7.8
CVE-2020-0026

In Parcel::continueWrite of Parcel.cpp, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege…

Patch available
Fix from $1,950 2020-02-13
Chrome HIGH 8.8
CVE-2020-6406

Use after free in audio in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pa…

Fix: 80.0.3987.87+
Fix from $1,950 2020-02-11
Chrome HIGH 8.8
CVE-2020-6378

Use after free in speech in Google Chrome prior to 79.0.3945.130 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML …

Fix: 79.0.3945.130+
Fix from $1,950 2020-02-11
Chrome HIGH 8.8
CVE-2020-6379

Use after free in V8 in Google Chrome prior to 79.0.3945.130 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 79.0.3945.130+
Fix from $1,950 2020-02-11
Chrome HIGH 8.8
CVE-2020-6377

Use after free in audio in Google Chrome prior to 79.0.3945.117 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 79.0.3945.117+
Fix from $1,950 2020-01-10
Chrome HIGH 8.8
CVE-2019-13767EPSS 16%

Use after free in media picker in Google Chrome prior to 79.0.3945.88 allowed a remote attacker who had compromised the renderer process to potential…

Fix: 79.0.3945.88+
Fix from $1,950 2020-01-10
Android HIGH 8.8
CVE-2020-0002

In ih264d_init_decoder of ih264d_api.c, there is a possible out of bounds write due to a use after free. This could lead to remote code execution wit…

Patch available
Fix from $1,950 2020-01-08
Chrome MEDIUM 6.5
CVE-2019-13765

Use-after-free in content delivery manager in Google Chrome prior to 78.0.3904.70 allowed a remote attacker to potentially exploit heap corruption vi…

Fix: 78.0.3904.70+
Fix from $1,600 2020-01-03
Chrome MEDIUM 6.5
CVE-2019-13766

Use-after-free in accessibility in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to potentially exploit heap corruption via a crafted…

Fix: 77.0.3865.75+
Fix from $1,600 2020-01-03
Chrome HIGH 8.8
CVE-2019-13729

Use-after-free in WebSockets in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HT…

Fix: 79.0.3945.79+
Fix from $1,950 2019-12-10
Chrome HIGH 8.8
CVE-2019-13732

Use-after-free in WebAudio in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 79.0.3945.79+
Fix from $1,950 2019-12-10
Chrome HIGH 8.8
CVE-2019-13725

Use-after-free in Bluetooth in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to execute arbitrary code via a crafted HTML page.

Fix: 79.0.3945.79+
Fix from $1,950 2019-12-10
Android HIGH 7.5
CVE-2019-2230

In nfcManager_routeAid and nfcManager_unrouteAid of NativeNfcManager.cpp, there is possible memory reuse due to a use after free. This could lead to …

Patch available
Fix from $1,950 2019-12-06
Android HIGH 7.8
CVE-2019-2217

In setCpuVulkanInUse of GpuStats.cpp, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege w…

Mitigation only
Fix from $1,950 2019-12-06
Chrome MEDIUM 6.5
CVE-2019-5826

Use after free in IndexedDB in Google Chrome prior to 73.0.3683.86 allowed a remote attacker who had compromised the renderer process to potentially …

Fix: 73.0.3683.86+
Fix from $1,600 2019-11-25
Chrome HIGH 8.8
CVE-2019-5876

Use after free in media in Google Chrome on Android prior to 77.0.3865.75 allowed a remote attacker to potentially exploit heap corruption via a craf…

Fix: 77.0.3865.75+
Fix from $1,950 2019-11-25
Chrome HIGH 8.8
CVE-2019-5878

Use after free in V8 in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 77.0.3865.75+
Fix from $1,950 2019-11-25
Chrome MEDIUM 6.5
CVE-2019-5872

Use after free in Mojo in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 77.0.3865.75+
Fix from $1,600 2019-11-25
Chrome CRITICAL 9.6
CVE-2019-5870

Use after free in media in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML p…

Fix: 77.0.3865.75+
Fix from $2,300 2019-11-25
Chrome MEDIUM 6.5
CVE-2019-5869

Use after free in Blink in Google Chrome prior to 76.0.3809.132 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 76.0.3809.132+
Fix from $1,600 2019-11-25
Chrome MEDIUM 5.5
CVE-2019-5860

Use after free in PDFium in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF fi…

Fix: 76.0.3809.87+
Fix from $1,600 2019-11-25
Chrome MEDIUM 5.5
CVE-2019-5868

Use after free in PDFium in Google Chrome prior to 76.0.3809.100 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF f…

Fix: 76.0.3809.100+
Fix from $1,600 2019-11-25
Chrome CRITICAL 9.6
CVE-2019-5850

Use after free in offline mode in Google Chrome prior to 76.0.3809.87 allowed a remote attacker who had compromised the renderer process to potential…

Fix: 76.0.3809.87+
Fix from $2,300 2019-11-25
Chrome HIGH 8.8
CVE-2019-5851

Use after free in WebAudio in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML…

Fix: 76.0.3809.87+
Fix from $1,950 2019-11-25