Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2018-04-11 CVE-2017-18136 Use After Free vulnerability in Qualcomm products
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear MDM9206, MDM9607, MDM9615, MDM9635M, MDM9640, MDM9650, MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 808, SD 820, SD 820A, SD 835, SD 845, in the omx aac component, a Use After Free condition may potentially occur.
network
low complexity
qualcomm CWE-416
critical
9.8
2018-04-11 CVE-2017-11011 Use After Free vulnerability in Qualcomm products
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 820, SD 835, a Use After Free condition can occur in a communication API.
network
low complexity
qualcomm CWE-416
critical
9.8
2018-04-04 CVE-2017-13272 Use After Free vulnerability in Google Android
In alarm_ready_generic of alarm.cc, there is a possible out of bounds write due to a use after free.
network
low complexity
google CWE-416
critical
9.8
2018-04-04 CVE-2017-13257 Use After Free vulnerability in Google Android
In bta_pan_data_buf_ind_cback of bta_pan_act.cc there is a use after free that can result in an out of bounds read of memory allocated via malloc.
network
low complexity
google CWE-416
6.5
2018-04-04 CVE-2017-13278 Use After Free vulnerability in Google Android
In MediaPlayerService::Client::notify of MediaPlayerService.cpp, there is a possible use after free.
local
low complexity
google CWE-416
7.8
2018-04-03 CVE-2018-5826 Use After Free vulnerability in Google Android
In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch level 2018-04-05, due to a race condition, a Use After Free condition can occur in the WLAN driver.
network
high complexity
google CWE-416
5.9
2018-04-03 CVE-2018-5825 Use After Free vulnerability in Google Android
In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch level 2018-04-05, in the kernel IPA driver, a Use After Free condition can occur.
local
low complexity
google CWE-416
7.8
2018-04-03 CVE-2018-3599 Use After Free vulnerability in Google Android
In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch level 2018-04-05, while notifying a DCI client, a Use After Free condition can occur.
network
low complexity
google CWE-416
critical
9.8
2018-04-03 CVE-2018-3584 Use After Free vulnerability in Google Android
In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch level 2018-04-05, a Use After Free condition can occur in the function rmnet_usb_ctrl_init().
network
low complexity
google CWE-416
7.5
2018-04-03 CVE-2017-11075 Use After Free vulnerability in Google Android
In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch level 2018-04-05, if cmd_pkt and reg_pkt are called from different userspace threads, a use after free condition can potentially occur in wdsp_glink_write().
local
low complexity
google CWE-416
7.8