Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2021-03-11 CVE-2020-1900 Use After Free vulnerability in Facebook Hhvm
When unserializing an object with dynamic properties HHVM needs to pre-reserve the full size of the dynamic property array before inserting anything into it.
network
low complexity
facebook CWE-416
7.5
2021-03-10 CVE-2021-21772 Use After Free vulnerability in multiple products
A use-after-free vulnerability exists in the NMR::COpcPackageReader::releaseZIP() functionality of 3MF Consortium lib3mf 2.0.0.
network
high complexity
3mf fedoraproject debian CWE-416
8.1
2021-03-10 CVE-2021-0399 Use After Free vulnerability in Google Android
In qtaguid_untag of xt_qtaguid.c, there is a possible memory corruption due to a use after free.
local
low complexity
google CWE-416
4.6
2021-03-10 CVE-2021-0395 Use After Free vulnerability in Google Android 11.0
In StopServicesAndLogViolations of reboot.cpp, there is possible memory corruption due to a use after free.
local
low complexity
google CWE-416
4.6
2021-03-09 CVE-2021-21188 Use After Free vulnerability in multiple products
Use after free in Blink in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject debian CWE-416
8.8
2021-03-09 CVE-2021-21180 Use After Free vulnerability in multiple products
Use after free in tab search in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject debian CWE-416
8.8
2021-03-09 CVE-2021-21179 Use After Free vulnerability in multiple products
Use after free in Network Internals in Google Chrome on Linux prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject debian CWE-416
8.8
2021-03-09 CVE-2021-21167 Use After Free vulnerability in multiple products
Use after free in bookmarks in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject debian CWE-416
8.8
2021-03-09 CVE-2021-21162 Use After Free vulnerability in multiple products
Use after free in WebRTC in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject debian CWE-416
8.8
2021-03-09 CVE-2021-21159 Use After Free vulnerability in multiple products
Heap buffer overflow in TabStrip in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject debian CWE-416
8.8