Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2021-01-08 CVE-2021-21107 Use After Free vulnerability in multiple products
Use after free in drag and drop in Google Chrome on Linux prior to 87.0.4280.141 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google fedoraproject debian CWE-416
critical
9.6
2021-01-08 CVE-2021-21106 Use After Free vulnerability in multiple products
Use after free in autofill in Google Chrome prior to 87.0.4280.141 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google fedoraproject debian CWE-416
critical
9.6
2021-01-08 CVE-2020-16039 Use After Free vulnerability in Google Chrome
Use after free in extensions in Google Chrome prior to 87.0.4280.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
google CWE-416
critical
9.3
2021-01-08 CVE-2020-16038 Use After Free vulnerability in Google Chrome
Use after free in media in Google Chrome on OS X prior to 87.0.4280.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
google CWE-416
critical
9.3
2021-01-08 CVE-2020-16037 Use After Free vulnerability in Google Chrome
Use after free in clipboard in Google Chrome prior to 87.0.4280.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
google CWE-416
critical
9.3
2021-01-08 CVE-2020-16026 Use After Free vulnerability in Google Chrome
Use after free in WebRTC in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
google CWE-416
6.8
2021-01-08 CVE-2020-16023 Use After Free vulnerability in Google Chrome
Use after free in WebCodecs in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
google CWE-416
6.8
2021-01-08 CVE-2020-16018 Use After Free vulnerability in Google Chrome
Use after free in payments in Google Chrome prior to 87.0.4280.66 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
network
google CWE-416
6.8
2021-01-08 CVE-2020-16017 Use After Free vulnerability in Google Chrome
Use after free in site isolation in Google Chrome prior to 86.0.4240.198 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
network
google CWE-416
6.8
2021-01-07 CVE-2020-27835 Use After Free vulnerability in Linux Infiniband Hfi1 Driver 5.10
A use after free in the Linux kernel infiniband hfi1 driver in versions prior to 5.10-rc6 was found in the way user calls Ioctl after open dev file and fork.
local
low complexity
linux CWE-416
4.9