Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2018-12-31 CVE-2018-20623 Use After Free vulnerability in GNU Binutils 2.31.1
In GNU Binutils 2.31.1, there is a use-after-free in the error function in elfcomm.c when called from the process_archive function in readelf.c via a crafted ELF file.
local
low complexity
gnu CWE-416
5.5
2018-12-30 CVE-2018-20592 Use After Free vulnerability in multiple products
In Mini-XML (aka mxml) v2.12, there is a use-after-free in the mxmlAdd function of the mxml-node.c file.
local
low complexity
msweet fedoraproject CWE-416
5.5
2018-12-28 CVE-2018-20538 Use After Free vulnerability in Nasm Netwide Assembler 2.14.0
There is a use-after-free at asm/preproc.c (function pp_getline) in Netwide Assembler (NASM) 2.14rc16 that will cause a denial of service during certain finishes tests.
local
low complexity
nasm CWE-416
5.5
2018-12-28 CVE-2018-20535 Use After Free vulnerability in Nasm Netwide Assembler 2.14.0
There is a use-after-free at asm/preproc.c (function pp_getline) in Netwide Assembler (NASM) 2.14rc16 that will cause a denial of service during a line-number increment attempt.
local
low complexity
nasm CWE-416
5.5
2018-12-20 CVE-2018-1000878 Use After Free vulnerability in multiple products
libarchive version commit 416694915449219d505531b1096384f3237dd6cc onwards (release v3.1.0 onwards) contains a CWE-416: Use After Free vulnerability in RAR decoder - libarchive/archive_read_support_format_rar.c that can result in Crash/DoS - it is unknown if RCE is possible.
8.8
2018-12-20 CVE-2018-11988 Use After Free vulnerability in Google Android
In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, Un-trusted pointer de-reference issue by accessing a variable which is already freed.
local
low complexity
google CWE-416
7.8
2018-12-20 CVE-2018-11984 Use After Free vulnerability in Google Android
In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, A use after free condition and an out-of-bounds access can occur in the DIAG driver.
local
low complexity
google CWE-416
7.8
2018-12-20 CVE-2018-11983 Use After Free vulnerability in Google Android
In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, Error in kernel observed while accessing freed mask pointers after reallocating memory for mask table.
local
low complexity
google CWE-416
7.8
2018-12-20 CVE-2018-11960 Use After Free vulnerability in Google Android
In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, A use after free condition can occur in the SPS driver which can lead to error in kernel.
local
low complexity
google CWE-416
7.8
2018-12-20 CVE-2017-9704 Use After Free vulnerability in Google Android
In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, There is no synchronization between msm_vb2 buffer operations which can lead to use after free.
local
low complexity
google CWE-416
7.8