Vulnerability index

Browse CVEs

1,622 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Linux Kernel HIGH 7.8
CVE-2021-3760

A flaw was found in the Linux kernel. A use-after-free vulnerability in the NFC stack can lead to a threat to confidentiality, integrity, and system …

Fix: 4.4.290 / 4.9.288+
Fix from $1,950 2022-02-16
Linux Kernel HIGH 7.1
CVE-2021-3752

A use-after-free flaw was found in the Linux kernel’s Bluetooth subsystem in the way user calls connect to the socket and disconnect simultaneously d…

Fix: 4.4.293 / 4.9.291+
Fix from $1,950 2022-02-16
Linux Kernel HIGH 8.8
CVE-2021-4154

A use-after-free flaw was found in cgroup1_parse_param in kernel/cgroup/cgroup-v1.c in the Linux kernel's cgroup v1 parser. A local attacker with a u…

Fix: 5.4.134 / 5.10.52+
Fix from $1,950 2022-02-04
Linux Kernel MEDIUM 5.5
CVE-2022-0487

A use-after-free vulnerability was found in rtsx_usb_ms_drv_remove in drivers/memstick/host/rtsx_usb_ms.c in memstick in the Linux kernel. In this fl…

Fix: after 5.13.19
Fix from $1,600 2022-02-04
Linux Kernel HIGH 7.8
CVE-2022-24122

kernel/ucount.c in the Linux kernel 5.14 through 5.16.4, when unprivileged user namespaces are enabled, allows a use-after-free and privilege escalat…

Fix: 5.15.19 / 5.16.5+
Fix from $1,950 2022-01-29
Linux Kernel HIGH 7.0
CVE-2021-4083

A read-after-free memory flaw was found in the Linux kernel's garbage collection for Unix domain socket file handlers in the way users call close() a…

Fix: 4.4.294 / 4.9.292+
Fix from $1,950 2022-01-18
Linux Kernel MEDIUM 6.4
CVE-2021-0920 KEV

In unix_scm_to_skb of af_unix.c, there is a possible use after free bug due to a race condition. This could lead to local escalation of privilege wit…

Fix: after 5.13
Fix from $1,600 2021-12-15
Linux Kernel HIGH 7.8
CVE-2021-43057

An issue was discovered in the Linux kernel before 5.14.8. A use-after-free in selinux_ptrace_traceme (aka the SELinux handler for PTRACE_TRACEME) co…

Fix: 5.14.8+
Fix from $1,950 2021-10-28
Linux Kernel MEDIUM 6.8
CVE-2021-38204

drivers/usb/host/max3421-hcd.c in the Linux kernel before 5.13.6 allows physically proximate attackers to cause a denial of service (use-after-free a…

Fix: 5.13.6+
Fix from $1,600 2021-08-08
Linux Kernel HIGH 7.4
CVE-2021-29657

arch/x86/kvm/svm/nested.c in the Linux kernel before 5.11.12 has a use-after-free in which an AMD KVM guest can bypass access control on host OS MSRs…

Fix: 5.10.28 / 5.11.12+
Fix from $1,950 2021-07-22
Linux Kernel MEDIUM 6.4
CVE-2021-37159

hso_free_net_device in drivers/net/usb/hso.c in the Linux kernel through 5.13.4 calls unregister_netdev without checking for the NETREG_REGISTERED st…

Fix: after 5.13.4
Fix from $1,600 2021-07-21
Acrn HIGH 7.5
CVE-2021-36144

The polling timer handler in ACRN before 2.5 has a use-after-free for a freed virtio device, related to devicemodel/hw/pci/virtio/*.c.

Fix: 2.5+
Fix from $1,950 2021-07-02
Acrn HIGH 7.5
CVE-2021-36145

The Device Model in ACRN through 2.5 has a devicemodel/core/mem.c use-after-free for a freed rb_entry.

Fix: after 2.5
Fix from $1,950 2021-07-02
Linux Kernel HIGH 7.8
CVE-2021-28691

Guest triggered use-after-free in Linux xen-netback A malicious or buggy network PV frontend can force Linux netback to disable the interface and ter…

Fix: 5.12.2+
Fix from $1,950 2021-06-29
Linux Kernel HIGH 7.8
CVE-2020-36387

An issue was discovered in the Linux kernel before 5.8.2. fs/io_uring.c has a use-after-free related to io_async_task_func and ctx reference holding,…

Fix: 5.7.16 / 5.8.2+
Fix from $1,950 2021-06-07
Linux Kernel HIGH 7.8
CVE-2018-25015

An issue was discovered in the Linux kernel before 4.14.16. There is a use-after-free in net/sctp/socket.c for a held lock after a peel off, aka CID-…

Fix: 4.14.16+
Fix from $1,950 2021-06-07
Linux Kernel HIGH 7.8
CVE-2019-25045

An issue was discovered in the Linux kernel before 5.0.19. The XFRM subsystem has a use-after-free, related to an xfrm_state_fini panic, aka CID-dbb2…

Fix: 5.0.19+
Fix from $1,950 2021-06-07
Linux Kernel HIGH 7.8
CVE-2020-36385

An issue was discovered in the Linux kernel before 5.10. drivers/infiniband/core/ucma.c has a use-after-free because the ctx is reached via the ctx_l…

Fix: 5.10+
Fix from $1,950 2021-06-07
Linux Kernel MEDIUM 6.7
CVE-2021-20292

There is a flaw reported in the Linux kernel in versions before 5.9 in drivers/gpu/drm/nouveau/nouveau_sgdma.c in nouveau_sgdma_create_ttm in Nouveau…

Fix: 4.9.298 / 4.14.263+
Fix from $1,600 2021-05-28
Linux Kernel HIGH 7.8
CVE-2020-25669

A vulnerability was found in the Linux Kernel where the function sunkbd_reinit having been scheduled by sunkbd_interrupt before sunkbd being freed. T…

Fix: 4.4.245 / 4.9.245+
Fix from $1,950 2021-05-26
Linux Kernel HIGH 7.8
CVE-2020-25670

A vulnerability was found in Linux Kernel where refcount leak in llcp_sock_bind() causing use-after-free which might lead to privilege escalations.

Fix: 4.4.267 / 4.9.267+
Fix from $1,950 2021-05-26
Linux Kernel HIGH 7.8
CVE-2020-25671

A vulnerability was found in Linux Kernel, where a refcount leak in llcp_sock_connect() causing use-after-free which might lead to privilege escalati…

Fix: 4.4.267 / 4.9.267+
Fix from $1,950 2021-05-26
Linux Kernel HIGH 7.8
CVE-2021-3483

A flaw was found in the Nosy driver in the Linux kernel. This issue allows a device to be inserted twice into a doubly-linked list, leading to a use-…

Fix: 5.12+
Fix from $1,950 2021-05-17
Linux Kernel HIGH 7.8
CVE-2021-33033

The Linux kernel before 5.11.14 has a use-after-free in cipso_v4_genopt in net/ipv4/cipso_ipv4.c because the CIPSO and CALIPSO refcounting for the DO…

Fix: 4.9.298 / 4.14.226+
Fix from $1,950 2021-05-14
Linux Kernel HIGH 7.8
CVE-2021-33034

In the Linux kernel before 5.12.4, net/bluetooth/hci_event.c has a use-after-free when destroying an hci_chan, aka CID-5c4c8c954409. This leads to wr…

Fix: 4.4.269 / 4.9.269+
Fix from $1,950 2021-05-14
Linux Kernel HIGH 7.8
CVE-2019-25044

The block subsystem in the Linux kernel before 5.2 has a use-after-free that can lead to arbitrary code execution in the kernel context and privilege…

Patch available
Fix from $1,950 2021-05-14
Linux Kernel HIGH 7.8
CVE-2021-23134

Use After Free vulnerability in nfc sockets in the Linux Kernel before 5.12.4 allows local attackers to elevate their privileges. In typical configur…

Fix: 4.4.269 / 4.9.269+
Fix from $1,950 2021-05-12
Linux Kernel HIGH 7.8
CVE-2021-32606

In the Linux kernel 5.11 through 5.12.2, isotp_setsockopt in net/can/isotp.c allows privilege escalation to root by leveraging a use-after-free. (Thi…

Fix: 5.12.9+
Fix from $1,950 2021-05-11
Linux Kernel HIGH 7.8
CVE-2020-36313

An issue was discovered in the Linux kernel before 5.7. The KVM subsystem allows out-of-range access to memslots after a deletion, aka CID-0774a964ef…

Fix: 5.7+
Fix from $1,950 2021-04-07
Linux Kernel HIGH 7.8
CVE-2021-29266

An issue was discovered in the Linux kernel before 5.11.9. drivers/vhost/vdpa.c has a use-after-free because v->config_ctx has an invalid value upon …

Fix: 5.10.26 / 5.11.9+
Fix from $1,950 2021-03-26