Vulnerabilities > Double Free

DATE CVE VULNERABILITY TITLE RISK
2020-11-19 CVE-2020-15710 Double Free vulnerability in Pulseaudio Project Pulseaudio
Potential double free in Bluez 5 module of PulseAudio could allow a local attacker to leak memory or crash the program.
local
low complexity
pulseaudio-project CWE-415
6.1
2020-11-11 CVE-2020-17019 Double Free vulnerability in Microsoft Office 2010
Microsoft Excel Remote Code Execution Vulnerability
local
low complexity
microsoft CWE-415
7.8
2020-11-11 CVE-2020-16970 Double Free vulnerability in Microsoft Azure Sphere
Azure Sphere Unsigned Code Execution Vulnerability
local
high complexity
microsoft CWE-415
8.1
2020-10-21 CVE-2020-9747 Double Free vulnerability in Adobe Animate 15.2.1.95/20.5
Adobe Animate version 20.5 (and earlier) is affected by a double free vulnerability when parsing a crafted .fla file, which could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-415
7.8
2020-10-15 CVE-2020-27153 Double Free vulnerability in multiple products
In BlueZ before 5.55, a double free was found in the gatttool disconnect_cb() routine from shared/att.c.
network
low complexity
bluez debian opensuse CWE-415
8.6
2020-10-06 CVE-2020-25637 Double Free vulnerability in multiple products
A double free memory issue was found to occur in the libvirt API, in versions before 6.8.0, responsible for requesting information about network interfaces of a running QEMU domain.
local
low complexity
redhat opensuse CWE-415
6.7
2020-10-02 CVE-2020-5988 Double Free vulnerability in Nvidia Virtual GPU Manager
NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which allocated memory can be freed twice, which may lead to information disclosure or denial of service.
local
low complexity
nvidia CWE-415
7.1
2020-10-02 CVE-2020-24698 Double Free vulnerability in Powerdns Authoritative
An issue was discovered in PowerDNS Authoritative through 4.3.0 when --enable-experimental-gss-tsig is used.
network
low complexity
powerdns CWE-415
critical
9.8
2020-09-29 CVE-2020-25773 Double Free vulnerability in Trendmicro Apex ONE 2019/Saas
A vulnerability in the Trend Micro Apex One ServerMigrationTool component could allow an attacker to execute arbitrary code on affected products.
local
low complexity
trendmicro CWE-415
7.8
2020-09-17 CVE-2020-0392 Double Free vulnerability in Google Android 10.0/9.0
In getLayerDebugInfo of SurfaceFlinger.cpp, there is a possible code execution due to a double free.
local
low complexity
google CWE-415
7.8