Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2023-04-19 CVE-2023-30612 Use After Free vulnerability in Cloudhypervisor Cloud Hypervisor 30.0/31.1
Cloud hypervisor is a Virtual Machine Monitor for Cloud workloads.
network
low complexity
cloudhypervisor CWE-416
4.9
2023-04-19 CVE-2023-2135 Use After Free vulnerability in multiple products
Use after free in DevTools in Google Chrome prior to 112.0.5615.137 allowed a remote attacker who convinced a user to enable specific preconditions to potentially exploit heap corruption via a crafted HTML page.
network
high complexity
google debian fedoraproject CWE-416
7.5
2023-04-16 CVE-2023-30772 Use After Free vulnerability in Linux Kernel
The Linux kernel before 6.2.9 has a race condition and resultant use-after-free in drivers/power/supply/da9150-charger.c if a physically proximate attacker unplugs a device.
high complexity
linux CWE-416
6.4
2023-04-14 CVE-2023-29132 Use After Free vulnerability in Irssi
Irssi 1.3.x and 1.4.x before 1.4.4 has a use-after-free because of use of a stale special collector reference.
network
low complexity
irssi CWE-416
5.3
2023-04-13 CVE-2022-33298 Use After Free vulnerability in Qualcomm products
Memory corruption due to use after free in Modem while modem initialization.
local
low complexity
qualcomm CWE-416
7.8
2023-04-12 CVE-2023-1990 Use After Free vulnerability in Linux Kernel
A use-after-free flaw was found in ndlc_remove in drivers/nfc/st-nci/ndlc.c in the Linux Kernel.
local
high complexity
linux CWE-416
4.7
2023-04-12 CVE-2023-1872 Use After Free vulnerability in multiple products
A use-after-free vulnerability in the Linux Kernel io_uring system can be exploited to achieve local privilege escalation. The io_file_get_fixed function lacks the presence of ctx->uring_lock which can lead to a Use-After-Free vulnerability due a race condition with fixed files getting unregistered. We recommend upgrading past commit da24142b1ef9fd5d36b76e36bab328a5b27523e8.
local
high complexity
linux debian CWE-416
7.0
2023-04-12 CVE-2023-1829 Use After Free vulnerability in Linux Kernel
A use-after-free vulnerability in the Linux Kernel traffic control index filter (tcindex) can be exploited to achieve local privilege escalation. The tcindex_delete function which does not properly deactivate filters in case of a perfect hashes while deleting the underlying structure which can later lead to double freeing the structure. A local attacker user can use this vulnerability to elevate its privileges to root. We recommend upgrading past commit 8c710f75256bb3cf05ac7b1672c82b92c43f3d28.
local
low complexity
linux CWE-416
7.8
2023-04-11 CVE-2023-1989 Use After Free vulnerability in multiple products
A use-after-free flaw was found in btsdio_remove in drivers\bluetooth\btsdio.c in the Linux Kernel.
local
high complexity
linux netapp debian CWE-416
7.0
2023-04-10 CVE-2023-26495 Use After Free vulnerability in Opendesign Drawings SDK
An issue was discovered in Open Design Alliance Drawings SDK before 2024.1.
local
low complexity
opendesign CWE-416
7.8