Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2021-02-11 CVE-2021-21028 Use After Free vulnerability in Adobe products
Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by a Use After Free vulnerability.
network
low complexity
adobe CWE-416
8.8
2021-02-11 CVE-2021-21021 Use After Free vulnerability in Adobe products
Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by a Use After Free vulnerability.
network
low complexity
adobe CWE-416
8.8
2021-02-10 CVE-2020-13548 Use After Free vulnerability in Foxitsoftware Foxit Reader 10.1.0.37527
In Foxit Reader 10.1.0.37527, a specially crafted PDF document can trigger reuse of previously free memory which can lead to arbitrary code execution.
6.8
2021-02-10 CVE-2021-0335 Use After Free vulnerability in Google Android 11.0
In process of C2SoftHevcDec.cpp, there is a possible out of bounds write due to a use after free.
network
google CWE-416
4.3
2021-02-10 CVE-2021-0332 Use After Free vulnerability in Google Android 10.0/11.0
In bootFinished of SurfaceFlinger.cpp, there is a possible memory corruption due to a use after free.
local
low complexity
google CWE-416
7.2
2021-02-10 CVE-2021-0330 Use After Free vulnerability in Google Android 10.0/11.0/9.0
In add_user_ce and remove_user_ce of storaged.cpp, there is a possible use-after-free due to improper locking.
local
low complexity
google CWE-416
7.2
2021-02-09 CVE-2019-17582 Use After Free vulnerability in Libzip 1.2.0
A use-after-free in the _zip_dirent_read function of zip_dirent.c in libzip 1.2.0 allows attackers to have an unspecified impact by attempting to unzip a malformed ZIP archive.
network
low complexity
libzip CWE-416
7.5
2021-02-09 CVE-2021-21146 Use After Free vulnerability in multiple products
Use after free in Navigation in Google Chrome prior to 88.0.4324.146 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google fedoraproject CWE-416
critical
9.6
2021-02-09 CVE-2021-21145 Use After Free vulnerability in multiple products
Use after free in Fonts in Google Chrome prior to 88.0.4324.146 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject CWE-416
8.8
2021-02-09 CVE-2021-21142 Use After Free vulnerability in multiple products
Use after free in Payments in Google Chrome on Mac prior to 88.0.4324.146 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google fedoraproject CWE-416
critical
9.6