Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2022-04-15 CVE-2021-44497 Use After Free vulnerability in Fisglobal Gt.M
An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base).
network
low complexity
fisglobal CWE-416
5.0
2022-04-15 CVE-2022-28042 Use After Free vulnerability in multiple products
stb_image.h v2.27 was discovered to contain an heap-based use-after-free via the function stbi__jpeg_huff_decode.
network
low complexity
nothings fedoraproject debian CWE-416
8.8
2022-04-14 CVE-2022-27007 Use After Free vulnerability in F5 NJS 0.7.2
nginx njs 0.7.2 is affected suffers from Use-after-free in njs_function_frame_alloc() when it try to invoke from a restored frame saved with njs_function_frame_save().
network
low complexity
f5 CWE-416
7.5
2022-04-14 CVE-2022-27447 Use After Free vulnerability in multiple products
MariaDB Server v10.9 and below was discovered to contain a use-after-free via the component Binary_string::free_buffer() at /sql/sql_string.h.
network
low complexity
mariadb debian CWE-416
7.5
2022-04-14 CVE-2022-27455 Use After Free vulnerability in Mariadb
MariaDB Server v10.6.3 and below was discovered to contain an use-after-free in the component my_wildcmp_8bit_impl at /strings/ctype-simple.c.
network
low complexity
mariadb CWE-416
5.0
2022-04-14 CVE-2022-27456 Use After Free vulnerability in multiple products
MariaDB Server v10.6.3 and below was discovered to contain an use-after-free in the component VDec::VDec at /sql/sql_type.cc.
network
low complexity
mariadb debian CWE-416
7.5
2022-04-14 CVE-2022-27457 Use After Free vulnerability in Mariadb
MariaDB Server v10.6.3 and below was discovered to contain an use-after-free in the component my_mb_wc_latin1 at /strings/ctype-latin1.c.
network
low complexity
mariadb CWE-416
5.0
2022-04-13 CVE-2022-1280 Use After Free vulnerability in multiple products
A use-after-free vulnerability was found in drm_lease_held in drivers/gpu/drm/drm_lease.c in the Linux kernel due to a race problem.
3.3
2022-04-12 CVE-2022-27376 Use After Free vulnerability in multiple products
MariaDB Server v10.6.5 and below was discovered to contain an use-after-free in the component Item_args::walk_arg, which is exploited via specially crafted SQL statements.
network
low complexity
mariadb debian CWE-416
7.5
2022-04-12 CVE-2022-27377 Use After Free vulnerability in multiple products
MariaDB Server v10.6.3 and below was discovered to contain an use-after-free in the component Item_func_in::cleanup(), which is exploited via specially crafted SQL statements.
network
low complexity
mariadb debian CWE-416
7.5