Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2020-11-12 CVE-2020-11175 Use After Free vulnerability in Qualcomm products
u'Use after free issue in Bluetooth transport driver when a method in the object is accessed after the object has been deleted due to improper timer handling.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8009W, MSM8909W, QCS605, QM215, SA6155, SA6155P, SA8155, SA8155P, SDA640, SDA670, SDA855, SDM1000, SDM640, SDM670, SDM710, SDM845, SDX50M, SDX55, SDX55M, SM6125, SM6350, SM7225, SM7250, SM7250P, SM8150, SM8150P, SM8250, SXR1120, SXR1130, SXR2130, SXR2130P
local
low complexity
qualcomm CWE-416
7.8
2020-11-10 CVE-2020-0449 Use After Free vulnerability in Google Android
In btm_sec_disconnected of btm_sec.cc, there is a possible memory corruption due to a use after free.
network
low complexity
google CWE-416
8.8
2020-11-05 CVE-2020-24430 Use After Free vulnerability in Adobe products
Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are affected by a use-after-free vulnerability when handling malicious JavaScript.
local
low complexity
adobe CWE-416
7.8
2020-11-03 CVE-2020-1909 Use After Free vulnerability in Whatsapp and Whatsapp Business
A use-after-free in a logging library in WhatsApp for iOS prior to v2.20.111 and WhatsApp Business for iOS prior to v2.20.111 could have resulted in memory corruption, crashes and potentially code execution.
network
low complexity
whatsapp CWE-416
critical
9.8
2020-11-03 CVE-2020-16004 Use After Free vulnerability in multiple products
Use after free in user interface in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google opensuse fedoraproject debian CWE-416
8.8
2020-11-03 CVE-2020-16003 Use After Free vulnerability in multiple products
Use after free in printing in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian fedoraproject opensuse CWE-416
8.8
2020-11-03 CVE-2020-16002 Use After Free vulnerability in multiple products
Use after free in PDFium in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.
network
low complexity
google fedoraproject opensuse debian CWE-416
8.8
2020-11-03 CVE-2020-16001 Use After Free vulnerability in multiple products
Use after free in media in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian opensuse fedoraproject CWE-416
8.8
2020-11-03 CVE-2020-15998 Use After Free vulnerability in Google Chrome
Use after free in USB in Google Chrome prior to 86.0.4240.99 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google CWE-416
8.8
2020-11-03 CVE-2020-15997 Use After Free vulnerability in Google Chrome
Use after free in Mojo in Google Chrome prior to 86.0.4240.99 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google CWE-416
8.8