Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2020-06-24 CVE-2020-3962 Use After Free vulnerability in VMWare products
VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.5), and Fusion (11.x before 11.5.5) contain a use-after-free vulnerability in the SVGA device.
local
low complexity
vmware CWE-416
8.2
2020-06-22 CVE-2020-3642 Use After Free vulnerability in Qualcomm products
Use after free issue in camera applications when used randomly over multiple operations due to pointer not set to NULL after free/destroy of the object in Snapdragon Consumer IOT, Snapdragon Mobile in Kamorta, QCS605, Rennell, Saipan, SDM670, SDM710, SDM845, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130
local
low complexity
qualcomm CWE-416
7.8
2020-06-18 CVE-2020-14416 Use After Free vulnerability in multiple products
In the Linux kernel before 5.4.16, a race condition in tty->disc_data handling in the slip and slcan line discipline could lead to a use-after-free, aka CID-0ace17d56824.
local
low complexity
linux opensuse CWE-416
4.2
2020-06-16 CVE-2020-0232 Use After Free vulnerability in Google Android
Function abc_pcie_issue_dma_xfer_sync creates a transfer object, adds it to the session object then continues to work with it.
network
low complexity
google CWE-416
critical
9.8
2020-06-15 CVE-2020-0595 Use After Free vulnerability in Intel products
Use after free in IPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allow an unauthenticated user to potentially enable escalation of privilege via network access.
network
low complexity
intel CWE-416
critical
9.8
2020-06-12 CVE-2020-9633 Use After Free vulnerability in Adobe Flash Player and Flash Player Desktop Runtime
Adobe Flash Player Desktop Runtime 32.0.0.371 and earlier, Adobe Flash Player for Google Chrome 32.0.0.371 and earlier, and Adobe Flash Player for Microsoft Edge and Internet Explorer 32.0.0.330 and earlier have an use after free vulnerability.
network
low complexity
adobe CWE-416
critical
9.8
2020-06-11 CVE-2020-0233 Use After Free vulnerability in Google Android 10.0
In main of main.cpp, there is possible memory corruption due to a use after free.
local
low complexity
google CWE-416
7.8
2020-06-11 CVE-2020-0212 Use After Free vulnerability in Google Android 10.0
In _onBufferDestroyed of InputBufferManager.cpp, there is a possible out of bounds read due to a use after free.
network
low complexity
google CWE-416
6.5
2020-06-11 CVE-2020-0199 Use After Free vulnerability in Google Android 10.0
In TimeCheck::TimeCheckThread::threadLoop of TimeCheck.cpp, there is a possible use-after-free due to a race condition.
local
high complexity
google CWE-416
4.1
2020-06-11 CVE-2020-0126 Use After Free vulnerability in Google Android 10.0
In multiple functions in DrmPlugin.cpp, there is a possible use after free due to a race condition.
local
high complexity
google CWE-416
6.4