Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2019-02-11 CVE-2018-11962 Use After Free vulnerability in Google Android
In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, Use-after-free issue in heap while loading audio effects config in audio effects factory.
local
low complexity
google CWE-416
7.8
2019-02-10 CVE-2019-7703 Use After Free vulnerability in Webassembly Binaryen
In Binaryen 1.38.22, there is a use-after-free problem in wasm::WasmBinaryBuilder::visitCall in wasm-binary.cpp.
network
low complexity
webassembly CWE-416
6.5
2019-02-07 CVE-2019-7560 Use After Free vulnerability in Boolector Project Boolector 3.0.0
In parser/btorsmt2.c in Boolector 3.0.0, opening a specially crafted input file leads to a use after free in get_failed_assumptions or btor_delete.
local
low complexity
boolector-project CWE-416
5.5
2019-02-06 CVE-2018-7817 Use After Free vulnerability in Schneider-Electric Zelio Soft 2 4.6/5.0/5.1
A Use After Free (CWE-416) vulnerability exists in Zelio Soft 2 v5.1 and prior versions which could cause remote code execution when opening a specially crafted Zelio Soft project file.
local
low complexity
schneider-electric CWE-416
7.8
2019-02-05 CVE-2018-18500 Use After Free vulnerability in multiple products
A use-after-free vulnerability can occur while parsing an HTML5 stream in concert with custom HTML elements.
network
low complexity
mozilla canonical debian redhat CWE-416
critical
9.8
2019-02-04 CVE-2019-7317 Use After Free vulnerability in multiple products
png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.
5.3
2019-02-04 CVE-2019-7314 Use After Free vulnerability in multiple products
liblivemedia in Live555 before 2019.02.03 mishandles the termination of an RTSP stream after RTP/RTCP-over-RTSP has been set up, which could lead to a Use-After-Free error that causes the RTSP server to crash (Segmentation fault) or possibly have unspecified other impact.
network
low complexity
live555 debian CWE-416
critical
9.8
2019-01-24 CVE-2018-17705 Use After Free vulnerability in Foxitsoftware Phantompdf
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.2.0.9297.
network
low complexity
foxitsoftware CWE-416
8.8
2019-01-24 CVE-2018-17704 Use After Free vulnerability in Foxitsoftware Phantompdf
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.2.0.9297.
network
low complexity
foxitsoftware CWE-416
8.8
2019-01-24 CVE-2018-17703 Use After Free vulnerability in Foxitsoftware Phantompdf
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.2.0.9297.
network
low complexity
foxitsoftware CWE-416
8.8