Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2020-01-03 CVE-2020-5395 Use After Free vulnerability in multiple products
FontForge 20190801 has a use-after-free in SFD_GetFontMetaData in sfd.c.
network
low complexity
fontforge fedoraproject opensuse CWE-416
8.8
2019-12-31 CVE-2019-20169 Use After Free vulnerability in Gpac 0.8.0/0.9.0
An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109.
network
gpac CWE-416
4.3
2019-12-31 CVE-2019-20168 Use After Free vulnerability in Gpac 0.8.0/0.9.0
An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109.
network
gpac CWE-416
4.3
2019-12-30 CVE-2019-20090 Use After Free vulnerability in Axiosys Bento4 1.5.1.0
An issue was discovered in Bento4 1.5.1.0.
network
axiosys CWE-416
6.8
2019-12-30 CVE-2019-20079 Use After Free vulnerability in multiple products
The autocmd feature in window.c in Vim before 8.1.2136 accesses freed memory.
6.8
2019-12-27 CVE-2019-20010 Use After Free vulnerability in multiple products
An issue was discovered in GNU LibreDWG 0.92.
network
gnu opensuse CWE-416
6.8
2019-12-26 CVE-2019-20006 Use After Free vulnerability in Ezxml Project Ezxml
An issue was discovered in ezXML 0.8.3 through 0.8.6.
network
low complexity
ezxml-project CWE-416
5.0
2019-12-25 CVE-2019-19966 Use After Free vulnerability in multiple products
In the Linux kernel before 5.1.6, there is a use-after-free in cpia2_exit() in drivers/media/usb/cpia2/cpia2_v4l.c that will cause denial of service, aka CID-dea37a972655.
4.6
2019-12-24 CVE-2019-19952 Use After Free vulnerability in Imagemagick
In ImageMagick 7.0.9-7 Q16, there is a use-after-free in the function MngInfoDiscardObject of coders/png.c, related to ReadOneMNGImage.
network
low complexity
imagemagick CWE-416
7.5
2019-12-24 CVE-2019-19950 Use After Free vulnerability in multiple products
In GraphicsMagick 1.4 snapshot-20190403 Q8, there is a use-after-free in ThrowException and ThrowLoggedException of magick/error.c.
network
low complexity
graphicsmagick debian opensuse CWE-416
critical
9.8