Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2018-07-06 CVE-2018-5873 Use After Free vulnerability in multiple products
An issue was discovered in the __ns_get_path function in fs/nsfs.c in the Linux kernel before 4.11.
local
high complexity
google linux CWE-416
7.0
2018-07-06 CVE-2018-5859 Use After Free vulnerability in Google Android
Due to a race condition in the MDSS MDP driver in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-07-05, a Use After Free condition can occur.
local
high complexity
google CWE-416
7.0
2018-07-06 CVE-2018-5853 Use After Free vulnerability in Google Android
A race condition exists in a driver in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-05-05 potentially leading to a use-after-free condition.
local
high complexity
google CWE-416
7.0
2018-07-06 CVE-2018-3587 Use After Free vulnerability in Google Android
In a firmware memory dump feature in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android), a Use After Free condition can occur.
local
low complexity
google CWE-416
7.8
2018-07-06 CVE-2018-13410 Use After Free vulnerability in Info-Zip Project ZIP 3.0
Info-ZIP Zip 3.0, when the -T and -TT command-line options are used, allows attackers to cause a denial of service (invalid free and application crash) or possibly have unspecified other impact because of an off-by-one error.
network
low complexity
info-zip-project CWE-416
critical
9.8
2018-07-06 CVE-2018-5899 Use After Free vulnerability in Google Android
In Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, whenever TDLS connection is setup, we are freeing the netbuf in ol_tx_completion_handler and after that, we are accessing it in NBUF_UPDATE_TX_PKT_COUNT causing a use after free.
local
low complexity
google CWE-416
7.8
2018-07-06 CVE-2018-5891 Use After Free vulnerability in Qualcomm products
While processing modem SSR after IMS is registered, the IMS data daemon is restarted but the ipc_dataHandle is no longer available.
local
low complexity
qualcomm CWE-416
8.4
2018-07-06 CVE-2018-5832 Use After Free vulnerability in Google Android
Due to a race condition in a camera driver ioctl handler in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, a Use After Free condition can occur.
local
high complexity
google CWE-416
7.0
2018-07-06 CVE-2018-5831 Use After Free vulnerability in Google Android
In the KGSL driver in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, a reference counting error can lead to a Use After Free condition.
local
low complexity
google CWE-416
7.8
2018-07-06 CVE-2018-3564 Use After Free vulnerability in Google Android
In the FastRPC driver in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, a Use After Free condition can occur when mapping on the remote processor fails.
local
low complexity
google CWE-416
7.8