Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2022-11-21 CVE-2022-45146 Use After Free vulnerability in Bouncycastle Fips Java API 1.0.1/1.0.2/1.0.2.3
An issue was discovered in the FIPS Java API of Bouncy Castle BC-FJA before 1.0.2.4.
local
low complexity
bouncycastle CWE-416
5.5
2022-11-18 CVE-2022-45474 Use After Free vulnerability in Drachtio Drachtio-Server 0.8.18
drachtio-server 0.8.18 has a request-handler.cpp event_cb use-after-free for any request.
network
low complexity
drachtio CWE-416
critical
9.8
2022-11-15 CVE-2022-25743 Use After Free vulnerability in Qualcomm products
Memory corruption in graphics due to use-after-free while importing graphics buffer in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
local
low complexity
qualcomm CWE-416
7.8
2022-11-09 CVE-2022-44547 Use After Free vulnerability in Huawei Emui and Harmonyos
The Display Service module has a UAF vulnerability.
network
low complexity
huawei CWE-416
7.5
2022-11-09 CVE-2022-44550 Use After Free vulnerability in Huawei Emui and Harmonyos
The graphics display module has a UAF vulnerability when traversing graphic layers.
network
low complexity
huawei CWE-416
7.5
2022-11-09 CVE-2022-3445 Use After Free vulnerability in Google Chrome
Use after free in Skia in Google Chrome prior to 106.0.5249.119 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-416
8.8
2022-11-09 CVE-2022-3448 Use After Free vulnerability in Google Chrome
Use after free in Permissions API in Google Chrome prior to 106.0.5249.119 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-416
8.8
2022-11-09 CVE-2022-3449 Use After Free vulnerability in Google Chrome
Use after free in Safe Browsing in Google Chrome prior to 106.0.5249.119 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted Chrome Extension.
network
low complexity
google CWE-416
8.8
2022-11-09 CVE-2022-3450 Use After Free vulnerability in Google Chrome
Use after free in Peer Connection in Google Chrome prior to 106.0.5249.119 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-416
8.8
2022-11-09 CVE-2022-3885 Use After Free vulnerability in multiple products
Use after free in V8 in Google Chrome prior to 107.0.5304.106 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian CWE-416
8.8