Vulnerabilities > Double Free

DATE CVE VULNERABILITY TITLE RISK
2020-06-09 CVE-2020-9844 Double Free vulnerability in Apple Iphone OS
A double free issue was addressed with improved memory management.
network
low complexity
apple CWE-415
7.5
2020-06-05 CVE-2020-9859 Double Free vulnerability in Apple products
A memory consumption issue was addressed with improved memory handling.
local
low complexity
apple CWE-415
7.8
2020-06-02 CVE-2020-3610 Double Free vulnerability in Qualcomm products
Possibility of double free of the drawobj that is added to the drawqueue array of the context during IOCTL commands as there is no refcount taken for this object in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8053, APQ8096AU, APQ8098, MSM8909W, MSM8917, MSM8953, MSM8996AU, Nicobar, QCS405, QCS605, QM215, Rennell, SA415M, Saipan, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR2130
local
low complexity
qualcomm CWE-415
7.8
2020-05-29 CVE-2020-11017 Double Free vulnerability in multiple products
In FreeRDP less than or equal to 2.0.0, by providing manipulated input a malicious client can create a double free condition and crash the server.
network
low complexity
freerdp opensuse debian CWE-415
6.5
2020-05-07 CVE-2020-11044 Double Free vulnerability in multiple products
In FreeRDP greater than 1.2 and before 2.0.0, a double free in update_read_cache_bitmap_v3_order crashes the client application if corrupted data from a manipulated server is parsed.
network
high complexity
freerdp canonical debian CWE-415
2.2
2020-05-06 CVE-2020-3179 Double Free vulnerability in Cisco products
A vulnerability in the generic routing encapsulation (GRE) tunnel decapsulation feature of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
network
low complexity
cisco CWE-415
7.5
2020-04-29 CVE-2019-20792 Double Free vulnerability in Opensc Project Opensc
OpenSC before 0.20.0 has a double free in coolkey_free_private_data because coolkey_add_object in libopensc/card-coolkey.c lacks a uniqueness check.
low complexity
opensc-project CWE-415
6.8
2020-04-17 CVE-2020-0081 Double Free vulnerability in multiple products
In finalize of AssetManager.java, there is possible memory corruption due to a double free.
local
low complexity
google fedoraproject CWE-415
7.8
2020-04-08 CVE-2018-21086 Double Free vulnerability in Google Android
An issue was discovered on Samsung mobile devices with L(5.x), M(6.0), and N(7.x) software.
network
high complexity
google CWE-415
8.1
2020-03-25 CVE-2019-20633 Double Free vulnerability in GNU Patch
GNU patch through 2.7.6 contains a free(p_line[p_end]) Double Free vulnerability in the function another_hunk in pch.c that can cause a denial of service via a crafted patch file.
local
low complexity
gnu CWE-415
5.5