Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2021-01-11 CVE-2021-0318 Use After Free vulnerability in Google Android
In appendEventsToCacheLocked of SensorEventConnection.cpp, there is a possible out of bounds write due to a use-after-free.
local
low complexity
google CWE-416
7.2
2021-01-11 CVE-2021-0310 Use After Free vulnerability in Google Android 11.0
In LazyServiceRegistrar of LazyServiceRegistrar.cpp, there is a possible memory corruption due to a use after free.
local
low complexity
google CWE-416
7.2
2021-01-11 CVE-2021-0303 Use After Free vulnerability in Google Android 11.0
In dispatchGraphTerminationMessage() of packages/services/Car/computepipe/runner/graph/StreamSetObserver.cpp, there is a possible use after free due to a race condition.
local
google CWE-416
6.9
2021-01-11 CVE-2021-0342 Use After Free vulnerability in Google Android
In tun_get_user of tun.c, there is possible memory corruption due to a use after free.
local
low complexity
google CWE-416
4.6
2021-01-08 CVE-2021-21115 Use After Free vulnerability in multiple products
User after free in safe browsing in Google Chrome prior to 87.0.4280.141 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google fedoraproject debian CWE-416
critical
9.6
2021-01-08 CVE-2021-21114 Use After Free vulnerability in multiple products
Use after free in audio in Google Chrome prior to 87.0.4280.141 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject debian CWE-416
8.8
2021-01-08 CVE-2021-21112 Use After Free vulnerability in multiple products
Use after free in Blink in Google Chrome prior to 87.0.4280.141 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject debian CWE-416
8.8
2021-01-08 CVE-2021-21110 Use After Free vulnerability in multiple products
Use after free in safe browsing in Google Chrome prior to 87.0.4280.141 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google fedoraproject debian CWE-416
critical
9.6
2021-01-08 CVE-2021-21109 Use After Free vulnerability in multiple products
Use after free in payments in Google Chrome prior to 87.0.4280.141 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google fedoraproject debian CWE-416
critical
9.6
2021-01-08 CVE-2021-21108 Use After Free vulnerability in multiple products
Use after free in media in Google Chrome prior to 87.0.4280.141 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google fedoraproject debian CWE-416
critical
9.6