Vulnerability index

Browse CVEs

72 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Enterprise Linux MEDIUM 5.5
CVE-2020-14373

A use after free was found in igc_reloc_struct_ptr() of psi/igc.c of ghostscript-9.25. A local attacker could supply a specially crafted PDF file to …

Patch available
Fix from $1,600 2020-09-03
Enterprise Linux Atomic Host MEDIUM 6.4
CVE-2020-15706

GRUB2 contains a race condition in grub_script_function_create() leading to a use-after-free vulnerability which can be triggered by redefining a fun…

Fix: after 2.04
Fix from $1,600 2020-07-29
Storage MEDIUM 6.5
CVE-2020-10730

A NULL pointer dereference, or possible use-after-free flaw was found in Samba AD LDAP server in versions before 4.10.17, before 4.11.11 and before 4…

Fix: 4.10.17 / 4.11.11+
Fix from $1,600 2020-07-07
Ceph Storage HIGH 7.8
CVE-2020-1712

A heap use-after-free vulnerability was found in systemd before version v245-rc1, where asynchronous Polkit queries are performed while handling dbus…

Fix: after 244
Fix from $1,950 2020-03-31
Enterprise Linux Desktop HIGH 8.8
CVE-2019-7845EPSS 6%

Adobe Flash Player versions 32.0.0.192 and earlier, 32.0.0.192 and earlier, and 32.0.0.192 and earlier have an use after free vulnerability. Successf…

Fix: after 32.0.0.192
Fix from $1,950 2019-06-12
Enterprise Linux Desktop HIGH 8.8
CVE-2019-7837EPSS 10%

Adobe Flash Player versions 32.0.0.171 and earlier, 32.0.0.171 and earlier, and 32.0.0.171 and earlier have a use after free vulnerability. Successfu…

Fix: after 32.0.0.171
Fix from $1,950 2019-05-22
Enterprise Linux Desktop HIGH 7.8
CVE-2018-15982 KEVEPSS 82%

Flash Player versions 31.0.0.153 and earlier, and 31.0.0.108 and earlier have a use after free vulnerability. Successful exploitation could lead to a…

Fix: after 31.0.0.153
Fix from $1,950 2019-01-18
Enterprise Linux Desktop HIGH 7.5
CVE-2017-3145EPSS 28%

BIND was improperly sequencing cleanup operations on upstream recursion fetch contexts, leading in some cases to a use-after-free error that can trig…

Fix: after 9.11.2
Fix from $1,950 2019-01-16
Enterprise Linux Desktop CRITICAL 9.8
CVE-2018-12378

A use-after-free vulnerability can occur when an IndexedDB index is deleted while still in use by JavaScript code that is providing payload values to…

Mitigation only
Fix from $2,300 2018-10-18
Enterprise Linux Desktop CRITICAL 9.8
CVE-2018-12377

A use-after-free vulnerability can occur when refresh driver timers are refreshed in some circumstances during shutdown when the timer is deleted whi…

Mitigation only
Fix from $2,300 2018-10-18
Enterprise Linux Desktop HIGH 8.8
CVE-2018-12363

A use-after-free vulnerability can occur when script uses mutation events to move DOM nodes between documents, resulting in the old document that hel…

Mitigation only
Fix from $1,950 2018-10-18
Enterprise Linux Desktop HIGH 8.8
CVE-2018-12360

A use-after-free vulnerability can occur when deleting an input element during a mutation event handler triggered by focusing that element. This resu…

Mitigation only
Fix from $1,950 2018-10-18
Openshift Container Platform HIGH 7.8
CVE-2018-16540

In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files to the builtin PDF14 converter could use a use-after-free in co…

Patch available
Fix from $1,950 2018-09-05
Enterprise Linux Desktop HIGH 8.8
CVE-2017-15412

Use after free in libxml2 before 2.9.5, as used in Google Chrome prior to 63.0.3239.84 and other products, allowed a remote attacker to potentially e…

Fix: 2.9.5 / 63.0.3239.84+
Fix from $1,950 2018-08-28
Enterprise Linux Desktop CRITICAL 9.8
CVE-2017-7818

A use-after-free vulnerability can occur when manipulating arrays of Accessible Rich Internet Applications (ARIA) elements within containers through …

Fix: 52.4.0 / 56.0+
Fix from $2,300 2018-06-11
Enterprise Linux Desktop CRITICAL 9.8
CVE-2017-7819

A use-after-free vulnerability can occur in design mode when image objects are resized if objects referenced during the resizing have been freed from…

Fix: 52.4.0 / 56.0+
Fix from $2,300 2018-06-11
Enterprise Linux Desktop CRITICAL 9.8
CVE-2017-5434

A use-after-free vulnerability occurs when redirecting focus handling which results in a potentially exploitable crash. This vulnerability affects Th…

Fix: 45.9.0 / 52.1.0+
Fix from $2,300 2018-06-11
Enterprise Linux Desktop MEDIUM 5.5
CVE-2016-9591

JasPer before version 2.0.12 is vulnerable to a use-after-free in the way it decodes certain JPEG 2000 image files resulting in a crash on the applic…

Fix: 2.0.12+
Fix from $1,600 2018-03-09
Enterprise Linux Desktop CRITICAL 9.8
CVE-2018-4877EPSS 8%

A use-after-free vulnerability was discovered in Adobe Flash Player before 28.0.0.161. This vulnerability occurs due to a dangling pointer in the Pri…

Fix: 28.0.0.161+
Fix from $2,300 2018-02-06
Enterprise Linux Desktop HIGH 7.8
CVE-2018-4878 KEVEPSS 90%

A use-after-free vulnerability was discovered in Adobe Flash Player before 28.0.0.161. This vulnerability occurs due to a dangling pointer in the Pri…

Fix: 28.0.0.161+
Fix from $1,950 2018-02-06
Enterprise Linux Desktop CRITICAL 9.8
CVE-2017-11215EPSS 6%

An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability is an instance of a use after free vulnerability in…

Fix: after 27.0.0.183
Fix from $2,300 2017-12-09
Enterprise Linux Desktop CRITICAL 9.8
CVE-2017-11225EPSS 6%

An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability is an instance of a use after free vulnerability in…

Fix: after 27.0.0.183
Fix from $2,300 2017-12-09
Enterprise Linux HIGH 7.5
CVE-2017-9953

There is an invalid free in Image::printIFDStructure that leads to a Segmentation fault in Exiv2 0.26. A crafted input will lead to a remote denial o…

No fix yet
Fix from $1,950 2017-06-26
Enterprise Linux HIGH 8.8
CVE-2017-3071EPSS 6%

Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable use after free vulnerability when masking display objects. Successful exploita…

Fix: after 25.0.0.163
Fix from $1,950 2017-05-09
Enterprise Linux HIGH 8.8
CVE-2017-3073

Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable use after free vulnerability when handling multiple mask properties of display…

Fix: after 25.0.0.163
Fix from $1,950 2017-05-09
Enterprise Linux Desktop HIGH 8.8
CVE-2016-7864EPSS 7%

Adobe Flash Player versions 23.0.0.205 and earlier, 11.2.202.643 and earlier have an exploitable use-after-free vulnerability. Successful exploitatio…

Fix: after 23.0.0.205
Fix from $1,950 2016-11-08
Enterprise Linux Desktop HIGH 8.8
CVE-2016-7863EPSS 7%

Adobe Flash Player versions 23.0.0.205 and earlier, 11.2.202.643 and earlier have an exploitable use-after-free vulnerability. Successful exploitatio…

Fix: after 23.0.0.205
Fix from $1,950 2016-11-08
Enterprise Linux Desktop HIGH 8.8
CVE-2016-7862EPSS 7%

Adobe Flash Player versions 23.0.0.205 and earlier, 11.2.202.643 and earlier have an exploitable use-after-free vulnerability. Successful exploitatio…

Fix: after 23.0.0.205
Fix from $1,950 2016-11-08
Enterprise Linux Desktop HIGH 8.8
CVE-2016-7859EPSS 7%

Adobe Flash Player versions 23.0.0.205 and earlier, 11.2.202.643 and earlier have an exploitable use-after-free vulnerability. Successful exploitatio…

Fix: after 23.0.0.205
Fix from $1,950 2016-11-08
Enterprise Linux Desktop HIGH 8.8
CVE-2016-7858EPSS 7%

Adobe Flash Player versions 23.0.0.205 and earlier, 11.2.202.643 and earlier have an exploitable use-after-free vulnerability. Successful exploitatio…

Fix: after 23.0.0.205
Fix from $1,950 2016-11-08