Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2018-03-21 CVE-2018-7521 Use After Free vulnerability in Omron Cx-Supervisor
In Omron CX-Supervisor Versions 3.30 and prior, use after free vulnerabilities can be exploited when CX Supervisor parses a specially crafted project file.
local
low complexity
omron CWE-416
5.3
2018-03-20 CVE-2018-8807 Use After Free vulnerability in Libming 0.4.8
In libming 0.4.8, these is a use-after-free in the function decompileCALLFUNCTION of decompile.c.
network
low complexity
libming CWE-416
6.5
2018-03-20 CVE-2018-8806 Use After Free vulnerability in Libming 0.4.8
In libming 0.4.8, there is a use-after-free in the decompileArithmeticOp function of decompile.c.
network
low complexity
libming CWE-416
6.5
2018-03-16 CVE-2018-3561 Use After Free vulnerability in Google Android
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a race condition in diag_ioctl_lsm_deinit() leads to a Use After Free condition.
local
high complexity
google CWE-416
7.0
2018-03-16 CVE-2017-18066 Use After Free vulnerability in Google Android
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper controls in MSM CORE leads to use memory after it is freed in msm_core_ioctl().
local
low complexity
google CWE-416
7.8
2018-03-15 CVE-2017-16749 Use After Free vulnerability in Deltaww Delta Industrial Automation Screen Editor 2.00.23.00
A Use-after-Free issue was discovered in Delta Electronics Delta Industrial Automation Screen Editor, Version 2.00.23.00 or prior.
local
low complexity
deltaww CWE-416
7.8
2018-03-15 CVE-2017-18234 Use After Free vulnerability in multiple products
An issue was discovered in Exempi before 2.4.3.
local
low complexity
exempi-project debian canonical CWE-416
7.8
2018-03-14 CVE-2018-0935 Use After Free vulnerability in Microsoft Internet Explorer 10/11/9
Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows remote code execution, due to how the scripting engine handles objects in memory, aka "Scripting Engine Memory Corruption Vulnerability".
network
high complexity
microsoft CWE-416
7.5
2018-03-09 CVE-2016-9591 Use After Free vulnerability in multiple products
JasPer before version 2.0.12 is vulnerable to a use-after-free in the way it decodes certain JPEG 2000 image files resulting in a crash on the application using JasPer.
local
low complexity
jasper-project redhat debian CWE-416
5.5
2018-03-09 CVE-2018-6916 Use After Free vulnerability in Freebsd
In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p7, 10.4-STABLE, 10.4-RELEASE-p7, and 10.3-RELEASE-p28, the kernel does not properly validate IPsec packets coming from a trusted host.
network
low complexity
freebsd CWE-416
critical
9.8