Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2021-11-12 CVE-2021-30266 Use After Free vulnerability in Qualcomm products
Possible use after free due to improper memory validation when initializing new interface via Interface add command in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
local
low complexity
qualcomm CWE-416
4.6
2021-11-08 CVE-2021-42074 Use After Free vulnerability in Barrier Project Barrier
An issue was discovered in Barrier before 2.3.4.
network
low complexity
barrier-project CWE-416
5.0
2021-11-07 CVE-2021-43412 Use After Free vulnerability in GNU Hurd
An issue was discovered in GNU Hurd before 0.9 20210404-9.
local
low complexity
gnu CWE-416
7.8
2021-11-05 CVE-2021-41220 Use After Free vulnerability in Google Tensorflow 2.6.0/2.7.0
TensorFlow is an open source platform for machine learning.
local
low complexity
google CWE-416
4.6
2021-11-04 CVE-2021-43400 Use After Free vulnerability in multiple products
An issue was discovered in gatt-database.c in BlueZ 5.61.
network
low complexity
bluez debian CWE-416
critical
9.1
2021-11-03 CVE-2021-38496 Use After Free vulnerability in multiple products
During operations on MessageTasks, a task may have been removed while it was still scheduled, resulting in memory corruption and a potentially exploitable crash.
6.8
2021-11-03 CVE-2021-38498 Use After Free vulnerability in Mozilla Firefox
During process shutdown, a document could have caused a use-after-free of a languages service object, leading to memory corruption and a potentially exploitable crash.
network
low complexity
mozilla CWE-416
5.0
2021-11-03 CVE-2020-27820 Use After Free vulnerability in multiple products
A vulnerability was found in Linux kernel, where a use-after-frees in nouveau's postclose() handler could happen if removing device (that is not common to remove video card physically without power-off, but same happens if "unbind" the driver).
local
high complexity
linux fedoraproject oracle CWE-416
4.7
2021-11-02 CVE-2020-6492 Use After Free vulnerability in Google Chrome
Use after free in ANGLE in Google Chrome prior to 83.0.4103.97 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
network
google CWE-416
6.8
2021-11-02 CVE-2021-37982 Use After Free vulnerability in multiple products
Use after free in Incognito in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
6.8