Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2020-10-02 CVE-2020-5984 Use After Free vulnerability in Nvidia Virtual GPU Manager
NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin in which it may have the use-after-free vulnerability while freeing some resources, which may lead to denial of service, code execution, and information disclosure.
local
low complexity
nvidia CWE-416
7.8
2020-10-02 CVE-2020-26539 Use After Free vulnerability in Foxitsoftware Foxit Reader
An issue was discovered in Foxit Reader and PhantomPDF before 10.1.
network
low complexity
foxitsoftware CWE-416
critical
9.8
2020-10-02 CVE-2020-26534 Use After Free vulnerability in Foxitsoftware Foxit Reader
An issue was discovered in Foxit Reader and PhantomPDF before 10.1.
network
low complexity
foxitsoftware CWE-416
critical
9.8
2020-10-01 CVE-2020-15675 Use After Free vulnerability in Mozilla Firefox
When processing surfaces, the lifetime may outlive a persistent buffer leading to memory corruption and a potentially exploitable crash.
network
low complexity
mozilla CWE-416
8.8
2020-10-01 CVE-2020-15669 Use After Free vulnerability in Mozilla Firefox ESR
When aborting an operation, such as a fetch, an abort signal may be deleted while alerting the objects to be notified.
network
low complexity
mozilla CWE-416
8.8
2020-10-01 CVE-2020-15678 Use After Free vulnerability in multiple products
When recursing through graphical layers while scrolling, an iterator may have become invalid, resulting in a potential use-after-free.
network
low complexity
mozilla opensuse debian CWE-416
8.8
2020-10-01 CVE-2020-15673 Use After Free vulnerability in multiple products
Mozilla developers reported memory safety bugs present in Firefox 80 and Firefox ESR 78.2.
network
low complexity
mozilla debian opensuse CWE-416
8.8
2020-09-25 CVE-2020-25084 Use After Free vulnerability in multiple products
QEMU 5.0.0 has a use-after-free in hw/usb/hcd-xhci.c because the usb_packet_map return value is not checked.
local
low complexity
qemu debian CWE-416
3.2
2020-09-21 CVE-2020-6559 Use After Free vulnerability in multiple products
Use after free in presentation API in Google Chrome prior to 85.0.4183.83 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian opensuse fedoraproject CWE-416
8.8
2020-09-21 CVE-2020-6554 Use After Free vulnerability in multiple products
Use after free in extensions in Google Chrome prior to 84.0.4147.125 allowed a remote attacker to potentially perform a sandbox escape via a crafted Chrome Extension.
local
low complexity
google debian fedoraproject CWE-416
8.6