Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2021-07-07 CVE-2021-21775 Use After Free vulnerability in multiple products
A use-after-free vulnerability exists in the way certain events are processed for ImageLoader objects of Webkit WebKitGTK 2.30.4.
network
low complexity
webkitgtk fedoraproject debian CWE-416
8.0
2021-07-02 CVE-2021-36144 Use After Free vulnerability in Linux Acrn
The polling timer handler in ACRN before 2.5 has a use-after-free for a freed virtio device, related to devicemodel/hw/pci/virtio/*.c.
network
low complexity
linux CWE-416
5.0
2021-07-02 CVE-2021-36145 Use After Free vulnerability in Linux Acrn
The Device Model in ACRN through 2.5 has a devicemodel/core/mem.c use-after-free for a freed rb_entry.
network
low complexity
linux CWE-416
5.0
2021-07-02 CVE-2021-30554 Use After Free vulnerability in multiple products
Use after free in WebGL in Google Chrome prior to 91.0.4472.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject CWE-416
8.8
2021-07-02 CVE-2021-30555 Use After Free vulnerability in Google Chrome
Use after free in Sharing in Google Chrome prior to 91.0.4472.114 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page and user gesture.
network
low complexity
google CWE-416
8.8
2021-07-02 CVE-2021-30556 Use After Free vulnerability in multiple products
Use after free in WebAudio in Google Chrome prior to 91.0.4472.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject CWE-416
8.8
2021-07-02 CVE-2021-30557 Use After Free vulnerability in multiple products
Use after free in TabGroups in Google Chrome prior to 91.0.4472.114 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject CWE-416
8.8
2021-07-01 CVE-2020-36405 Use After Free vulnerability in Keystone-Engine Keystone Engine 0.9.2
Keystone Engine 0.9.2 has a use-after-free in llvm_ks::X86Operand::getToken.
6.8
2021-07-01 CVE-2021-36081 Use After Free vulnerability in Tesseract OCR Project Tesseract OCR 5.0.0
Tesseract OCR 5.0.0-alpha-20201231 has a one_ell_conflict use-after-free during a strpbrk call.
6.8
2021-07-01 CVE-2021-36084 Use After Free vulnerability in multiple products
The CIL compiler in SELinux 3.2 has a use-after-free in __cil_verify_classperms (called from __cil_verify_classpermission and __cil_pre_verify_helper).
local
low complexity
selinux-project fedoraproject CWE-416
3.3