Vulnerability index

Browse CVEs

1,622 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Linux Kernel HIGH 7.8
CVE-2021-20226

A use-after-free flaw was found in the io_uring in Linux kernel, where a local attacker with a user privilege could cause a denial of service problem…

Fix: 5.8.18 / 5.9.3+
Fix from $1,950 2021-02-23
Linux Kernel HIGH 7.0
CVE-2021-3348

nbd_add_socket in drivers/block/nbd.c in the Linux kernel through 5.10.12 has an ndb_queue_rq use-after-free that could be triggered by local attacke…

Fix: after 5.10.12
Fix from $1,950 2021-02-01
Linux Kernel HIGH 7.8
CVE-2021-3347

An issue was discovered in the Linux kernel through 5.10.11. PI futexes have a kernel stack use-after-free during fault handling, allowing local user…

Fix: after 5.10.11
Fix from $1,950 2021-01-29
Linux Kernel HIGH 7.8
CVE-2020-16119

Use-after-free vulnerability in the Linux kernel exploitable by a local attacker due to reuse of a DCCP socket with an attached dccps_hc_tx_ccid obje…

Patch available
Fix from $1,950 2021-01-14
Linux Kernel HIGH 8.8
CVE-2020-29569

An issue was discovered in the Linux kernel through 5.10.1, as used with Xen through 4.14.x. The Linux kernel PV block backend expects the kernel thr…

Fix: 4.2 / 4.4.254+
Fix from $1,950 2020-12-15
Linux Kernel HIGH 7.8
CVE-2020-27786

A flaw was found in the Linux kernel’s implementation of MIDI, where an attacker with a local account and the permissions to issue ioctl commands to …

Fix: 4.4.224 / 4.9.224+
Fix from $1,950 2020-12-11
Linux Kernel HIGH 7.8
CVE-2020-29661

A locking issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_jobctrl.c allows a use-after-free attack agai…

Fix: 4.4.248 / 4.9.248+
Fix from $1,950 2020-12-09
Linux Kernel HIGH 7.8
CVE-2020-14351

A flaw was found in the Linux kernel. A use-after-free memory flaw was found in the perf subsystem allowing a local attacker with permission to monit…

Fix: 5.8.17+
Fix from $1,950 2020-12-03
Linux Kernel HIGH 7.8
CVE-2020-14381

A flaw was found in the Linux kernel’s futex implementation. This flaw allows a local attacker to corrupt system memory or escalate their privileges …

Fix: 5.6+
Fix from $1,950 2020-12-03
Linux Kernel MEDIUM 5.3
CVE-2019-20934

An issue was discovered in the Linux kernel before 5.2.6. On NUMA systems, the Linux fair scheduler has a use-after-free in show_numa_stats() because…

Fix: 4.19.64+
Fix from $1,600 2020-11-28
Linux Kernel MEDIUM 6.7
CVE-2020-15436

Use-after-free vulnerability in fs/block_dev.c in the Linux kernel before 5.8 allows local users to gain privileges or cause a denial of service by l…

Fix: 4.4.229 / 4.9.229+
Fix from $1,600 2020-11-23
Linux Kernel HIGH 7.8
CVE-2020-25220

The Linux kernel 4.9.x before 4.9.233, 4.14.x before 4.14.194, and 4.19.x before 4.19.140 has a use-after-free because skcd->no_refcnt was not consid…

Fix: 4.9.233 / 4.14.194+
Fix from $1,950 2020-09-10
Linux Kernel MEDIUM 5.5
CVE-2020-10720

A flaw was found in the Linux kernel's implementation of GRO in versions before 5.2. This flaw allows an attacker with local access to crash the syst…

Fix: 5.2+
Fix from $1,600 2020-09-03
Linux Kernel MEDIUM 6.4
CVE-2020-10690

There is a use-after-free in kernel versions before 5.5 due to a race condition between the release of ptp_clock and cdev while resource deallocation…

Fix: 5.5+
Fix from $1,600 2020-05-08
Linux Kernel HIGH 7.8
CVE-2020-12657

An issue was discovered in the Linux kernel before 5.6.5. There is a use-after-free in block/bfq-iosched.c related to bfq_idle_slice_timer_body.

Fix: 5.6.5+
Fix from $1,950 2020-05-05
Linux Kernel MEDIUM 6.7
CVE-2020-12464

usb_sg_cancel in drivers/usb/core/message.c in the Linux kernel before 5.6.8 has a use-after-free because a transfer occurs without a reference, aka …

Fix: 3.16.85 / 4.4.221+
Fix from $1,600 2020-04-29
Linux Kernel HIGH 7.1
CVE-2020-8648

There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the n_tty_receive_buf_common function in drivers/tty/n_tty.c.

Fix: after 5.5.2
Fix from $1,950 2020-02-06
Linux Kernel MEDIUM 6.1
CVE-2020-8647

There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the vc_do_resize function in drivers/tty/vt/vt.c.

Fix: after 5.5.2
Fix from $1,600 2020-02-06
Linux Kernel MEDIUM 5.9
CVE-2020-8649

There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the vgacon_invert_region function in drivers/video/console/vgacon.c.

Fix: after 5.5.2
Fix from $1,600 2020-02-06
Linux Kernel HIGH 7.1
CVE-2020-8428

fs/namei.c in the Linux kernel before 5.5 has a may_create_in_sticky use-after-free, which allows local users to cause a denial of service (OOPS) or …

Fix: 5.5+
Fix from $1,950 2020-01-29
Linux Kernel HIGH 7.8
CVE-2020-7053

In the Linux kernel 4.14 longterm through 4.14.165 and 4.19 longterm through 4.19.96 (and 5.x before 5.2), there is a use-after-free (write) in the i…

Fix: after 5.2
Fix from $1,950 2020-01-14
Linux Kernel MEDIUM 5.5
CVE-2019-19813

In the Linux kernel 5.0.21, mounting a crafted btrfs filesystem image, performing some operations, and then making a syncfs system call can lead to a…

No fix yet
Fix from $1,600 2019-12-17
Linux Kernel HIGH 7.8
CVE-2019-19807

In the Linux kernel before 5.3.11, sound/core/timer.c has a use-after-free caused by erroneous code refactoring, aka CID-e7af6307a8a5. This is relate…

Fix: 4.9.201 / 4.14.154+
Fix from $1,950 2019-12-15
Linux Kernel HIGH 8.2
CVE-2019-19770

In the Linux kernel 4.19.83, there is a use-after-free (read) in the debugfs_remove function in fs/debugfs/inode.c (which is used to remove a file or…

Fix: after 4.19.83
Fix from $1,950 2019-12-12
Linux Kernel HIGH 7.5
CVE-2019-19768

In the Linux kernel 5.4.0-rc2, there is a use-after-free (read) in the __blk_add_trace function in kernel/trace/blktrace.c (which is used to fill out…

Mitigation only
Fix from $1,950 2019-12-12
Linux Kernel MEDIUM 6.7
CVE-2019-19769

In the Linux kernel 5.3.10, there is a use-after-free (read) in the perf_trace_lock_acquire function (related to include/trace/events/lock.h).

Fix: after 5.3.10
Fix from $1,600 2019-12-12
Linux Kernel MEDIUM 5.5
CVE-2019-19767

The Linux kernel before 5.4.2 mishandles ext4_expand_extra_isize, as demonstrated by use-after-free errors in __ext4_expand_extra_isize and ext4_xatt…

Fix: 5.4.2+
Fix from $1,600 2019-12-12
Linux Kernel HIGH 7.8
CVE-2019-19448

In the Linux kernel 5.0.21 and 5.3.11, mounting a crafted btrfs filesystem image, performing some operations, and then making a syncfs system call ca…

Fix: 4.4.233 / 4.9.233+
Fix from $1,950 2019-12-08
Linux Kernel HIGH 7.8
CVE-2019-19447

In the Linux kernel 5.0.21, mounting a crafted ext4 filesystem image, performing some operations, and unmounting can lead to a use-after-free in ext4…

Fix: 3.16.82 / 4.4.208+
Fix from $1,950 2019-12-08
Linux Kernel HIGH 7.8
CVE-2019-19543

In the Linux kernel before 5.1.6, there is a use-after-free in serial_ir_init_module() in drivers/media/rc/serial_ir.c.

Fix: 5.1.6+
Fix from $1,950 2019-12-03