Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2020-09-17 CVE-2020-0427 Use After Free vulnerability in multiple products
In create_pinctrl of core.c, there is a possible out of bounds read due to a use after free.
5.5
2020-09-17 CVE-2020-6115 Use After Free vulnerability in Gonitro Nitro PRO 13.13.2.242/13.16.2.300
An exploitable vulnerability exists in the cross-reference table repairing functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242.
local
low complexity
gonitro CWE-416
7.8
2020-09-11 CVE-2020-25269 Use After Free vulnerability in multiple products
An issue was discovered in InspIRCd 2 before 2.0.29 and 3 before 3.6.0.
network
low complexity
inspircd debian CWE-416
6.5
2020-09-11 CVE-2019-20918 Use After Free vulnerability in Inspircd 3.0.0/3.0.1
An issue was discovered in InspIRCd 3 before 3.1.0.
network
low complexity
inspircd CWE-416
6.5
2020-09-10 CVE-2020-25220 Use After Free vulnerability in Linux Kernel
The Linux kernel 4.9.x before 4.9.233, 4.14.x before 4.14.194, and 4.19.x before 4.19.140 has a use-after-free because skcd->no_refcnt was not considered during a backport of a CVE-2020-14356 patch.
local
low complexity
linux CWE-416
7.8
2020-09-09 CVE-2020-7068 Use After Free vulnerability in multiple products
In PHP versions 7.2.x below 7.2.33, 7.3.x below 7.3.21 and 7.4.x below 7.4.9, while processing PHAR files using phar extension, phar_parse_zipfile could be tricked into accessing freed memory, which could lead to a crash or information disclosure.
local
high complexity
php debian tenable CWE-416
3.6
2020-09-09 CVE-2020-6354 Use After Free vulnerability in SAP 3D Visual Enterprise Viewer 9
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated SKP file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user restarts the application, this is caused due to Improper Input Validation.
network
low complexity
sap CWE-416
4.3
2020-09-09 CVE-2020-6353 Use After Free vulnerability in SAP 3D Visual Enterprise Viewer 9
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated SKP file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user restarts the application, this is caused due to Improper Input Validation.
network
low complexity
sap CWE-416
4.3
2020-09-09 CVE-2020-6334 Use After Free vulnerability in SAP 3D Visual Enterprise Viewer 9
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated SKP file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user restarts the application, this is caused due to Improper Input Validation.
network
low complexity
sap CWE-416
4.3
2020-09-09 CVE-2020-6329 Use After Free vulnerability in SAP 3D Visual Enterprise Viewer 9
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated SKP file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user restarts the application, this is caused due to Improper Input Validation.
network
low complexity
sap CWE-416
4.3