Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2021-02-03 CVE-2021-0365 Use After Free vulnerability in Google Android 10.0/11.0
In display driver, there is a possible memory corruption due to a use after free.
local
low complexity
google CWE-416
4.6
2021-02-01 CVE-2021-3348 Use After Free vulnerability in multiple products
nbd_add_socket in drivers/block/nbd.c in the Linux kernel through 5.10.12 has an ndb_queue_rq use-after-free that could be triggered by local attackers (with access to the nbd device) via an I/O request at a certain point during device setup, aka CID-b98e762e3d71.
4.4
2021-01-29 CVE-2021-3347 Use After Free vulnerability in multiple products
An issue was discovered in the Linux kernel through 5.10.11.
local
low complexity
linux debian fedoraproject CWE-416
7.8
2021-01-26 CVE-2020-36205 Use After Free vulnerability in XCB Project XCB 20201210
An issue was discovered in the xcb crate through 2020-12-10 for Rust.
local
low complexity
xcb-project CWE-416
2.1
2021-01-26 CVE-2020-27280 Use After Free vulnerability in Deltaww Ispsoft 3.0.5/3.0.6/3.12
A use after free issue has been identified in the way ISPSoft(v3.12 and prior) processes project files, allowing an attacker to craft a special project file that may allow arbitrary code execution.
network
deltaww CWE-416
6.8
2021-01-21 CVE-2020-11151 Use After Free vulnerability in Qualcomm products
Race condition occurs while calling user space ioctl from two different threads can results to use after free issue in video in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
6.9
2021-01-21 CVE-2020-11148 Use After Free vulnerability in Qualcomm products
Use after free issue in HIDL while using callback to post event in Rx thread when internal mutex is not acquired and meantime close is triggered and callback instance is deleted in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
local
low complexity
qualcomm CWE-416
7.2
2021-01-14 CVE-2020-6572 Use After Free vulnerability in Google Chrome
Use after free in Media in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to execute arbitrary code via a crafted HTML page.
network
low complexity
google CWE-416
8.8
2021-01-14 CVE-2020-16045 Use After Free vulnerability in Google Chrome
Use after Free in Payments in Google Chrome on Android prior to 87.0.4280.66 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
network
google CWE-416
6.8
2021-01-14 CVE-2020-16119 Use After Free vulnerability in multiple products
Use-after-free vulnerability in the Linux kernel exploitable by a local attacker due to reuse of a DCCP socket with an attached dccps_hc_tx_ccid object as a listener after being released.
local
low complexity
linux canonical debian CWE-416
7.8