Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2018-01-16 CVE-2014-9482 Use After Free vulnerability in Libdwarf Project Libdwarf
Use-after-free vulnerability in dwarfdump in libdwarf 20130126 through 20140805 might allow remote attackers to cause a denial of service (program crash) via a crafted ELF file.
network
low complexity
libdwarf-project CWE-416
6.5
2018-01-12 CVE-2017-13184 Use After Free vulnerability in Google Android 8.0/8.1
In the enableVSyncInjections function of SurfaceFlinger, there is a possible use after free of mVSyncInjector.
local
low complexity
google CWE-416
7.8
2018-01-12 CVE-2017-13180 Use After Free vulnerability in Google Android
In the onQueueFilled function of SoftAVCDec, there is a possible out-of-bounds write due to a use after free if a bad header causes the decoder to get caught in a loop while another thread frees the memory it's accessing.
local
low complexity
google CWE-416
7.8
2018-01-12 CVE-2017-13179 Use After Free vulnerability in Google Android
In the ihevcd_allocate_static_bufs and ihevcd_create functions of SoftHEVC, there is a possible out-of-bounds write due to a use after free.
network
low complexity
google CWE-416
critical
9.8
2018-01-12 CVE-2017-13178 Use After Free vulnerability in Google Android
In the initDecoder function of SoftAVCDec, there is a possible out-of-bounds write to mCodecCtx due to a use after free when buffer allocation fails.
network
low complexity
google CWE-416
critical
9.8
2018-01-12 CVE-2014-3471 Use After Free vulnerability in Qemu
Use-after-free vulnerability in hw/pci/pcie.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (QEMU instance crash) via hotplug and hotunplug operations of Virtio block devices.
local
low complexity
qemu CWE-416
5.5
2018-01-12 CVE-2017-0869 Use After Free vulnerability in Google Android
NVIDIA driver contains an integer overflow vulnerability which could cause a use after free and possibly lead to an elevation of privilege enabling code execution as a privileged process.
local
low complexity
google CWE-416
7.8
2018-01-12 CVE-2018-5344 Use After Free vulnerability in multiple products
In the Linux kernel through 4.14.13, drivers/block/loop.c mishandles lo_release serialization, which allows attackers to cause a denial of service (__lock_acquire use-after-free) or possibly have unspecified other impact.
local
low complexity
linux canonical redhat CWE-416
7.8
2018-01-12 CVE-2017-16732 Use After Free vulnerability in Advantech Webaccess
A use-after-free issue was discovered in Advantech WebAccess versions prior to 8.3.
network
low complexity
advantech CWE-416
6.5
2018-01-11 CVE-2017-4949 Use After Free vulnerability in VMWare Fusion and Workstation
VMware Workstation and Fusion contain a use-after-free vulnerability in VMware NAT service when IPv6 mode is enabled.
local
high complexity
vmware CWE-416
7.0