Vulnerabilities > Double Free

DATE CVE VULNERABILITY TITLE RISK
2018-01-10 CVE-2017-9705 Double Free vulnerability in Google Android
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, concurrent rx notifications and read() operations in the G-Link PKT driver can result in a double free condition due to missing locking resulting in list_del() and list_add() overlapping and corrupting the next and previous pointers.
local
low complexity
google CWE-415
7.8
2017-12-22 CVE-2017-15316 Double Free vulnerability in Huawei Mate 9 Firmware and Mate 9 PRO Firmware
The GPU driver of Mate 9 Huawei smart phones with software before MHA-AL00B 8.0.0.334(C00) and Mate 9 Pro Huawei smart phones with software before LON-AL00B 8.0.0.334(C00) has a memory double free vulnerability.
local
low complexity
huawei CWE-415
7.8
2017-11-22 CVE-2017-8141 Double Free vulnerability in Huawei P10 Plus Firmware
The Touch Panel (TP) driver in P10 Plus smart phones with software versions earlier than VKY-AL00C00B153 has a memory double free vulnerability.
local
low complexity
huawei CWE-415
7.8
2017-11-22 CVE-2017-8140 Double Free vulnerability in Huawei P9 Plus Firmware Eval09C636B388/Vieal10
The soundtrigger driver in P9 Plus smart phones with software versions earlier than VIE-AL10BC00B353 has a memory double free vulnerability.
local
low complexity
huawei CWE-415
7.8
2017-11-22 CVE-2017-6166 Double Free vulnerability in F5 products
In BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Link Controller, PEM, and WebSafe software 12.0.0 to 12.1.1, in some cases the Traffic Management Microkernel (TMM) may crash when processing fragmented packets.
network
high complexity
f5 CWE-415
5.9
2017-11-17 CVE-2017-1000232 Double Free vulnerability in Nlnetlabs Ldns 1.7.0
A double-free vulnerability in str2host.c in ldns 1.7.0 have unspecified impact and attack vectors.
network
low complexity
nlnetlabs CWE-415
critical
9.8
2017-11-17 CVE-2017-1000231 Double Free vulnerability in Nlnetlabs Ldns 1.7.0
A double-free vulnerability in parse.c in ldns 1.7.0 have unspecified impact and attack vectors.
network
low complexity
nlnetlabs CWE-415
critical
9.8
2017-11-16 CVE-2017-11032 Double Free vulnerability in Google Android
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a double free can occur when kmalloc fails to allocate memory for pointers resp/req in the service-locator driver function service_locator_send_msg().
local
low complexity
google CWE-415
7.8
2017-11-14 CVE-2017-16820 Double Free vulnerability in Collectd
The csnmp_read_table function in snmp.c in the SNMP plugin in collectd before 5.6.3 is susceptible to a double free in a certain error case, which could lead to a crash (or potentially have other impact).
network
low complexity
collectd CWE-415
critical
9.8
2017-10-24 CVE-2017-15186 Double Free vulnerability in Ffmpeg
Double free vulnerability in FFmpeg 3.3.4 and earlier allows remote attackers to cause a denial of service via a crafted AVI file.
network
low complexity
ffmpeg CWE-415
6.5