Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2020-06-10 CVE-2020-0113 Use After Free vulnerability in Google Android 10.0
In sendCaptureResult of Camera3OutputUtils.cpp, there is a possible out of bounds read due to a use after free.
local
low complexity
google CWE-416
5.5
2020-06-09 CVE-2020-1226 Use After Free vulnerability in Microsoft 365 Apps, Excel and Office
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'.
network
low complexity
microsoft CWE-416
8.8
2020-06-09 CVE-2020-1225 Use After Free vulnerability in Microsoft 365 Apps, Excel and Office
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'.
network
low complexity
microsoft CWE-416
8.8
2020-06-09 CVE-2020-1207 Use After Free vulnerability in Microsoft products
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-416
7.8
2020-06-09 CVE-2020-9795 Use After Free vulnerability in Apple products
A use after free issue was addressed with improved memory management.
local
low complexity
apple CWE-416
7.8
2020-06-07 CVE-2020-13904 Use After Free vulnerability in multiple products
FFmpeg 2.8 and 4.2.3 has a use-after-free via a crafted EXTINF duration in an m3u8 file because parse_playlist in libavformat/hls.c frees a pointer, and later that pointer is accessed in av_probe_input_format3 in libavformat/format.c.
local
low complexity
ffmpeg canonical debian CWE-416
5.5
2020-06-06 CVE-2020-13871 Use After Free vulnerability in multiple products
SQLite 3.32.2 has a use-after-free in resetAccumulator in select.c because the parse tree rewrite for window functions is too late.
7.5
2020-06-04 CVE-2020-13814 Use After Free vulnerability in Foxitsoftware Reader
An issue was discovered in Foxit Reader and PhantomPDF before 9.7.1.
network
low complexity
foxitsoftware CWE-416
critical
9.8
2020-06-04 CVE-2020-13806 Use After Free vulnerability in Foxitsoftware Reader
An issue was discovered in Foxit Reader and PhantomPDF before 9.7.2.
network
low complexity
foxitsoftware CWE-416
7.5
2020-06-03 CVE-2020-6496 Use After Free vulnerability in multiple products
Use after free in payments in Google Chrome on MacOS prior to 83.0.4103.97 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google debian opensuse CWE-416
8.8