Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2018-02-02 CVE-2018-6548 Use After Free vulnerability in Webmproject Libwebm
A use-after-free issue was discovered in libwebm through 2018-02-02.
network
low complexity
webmproject CWE-416
critical
9.8
2018-01-27 CVE-2018-6359 Use After Free vulnerability in multiple products
The decompileIF function (util/decompile.c) in libming through 0.4.8 is vulnerable to a use-after-free, which may allow attackers to cause a denial of service or unspecified other impact via a crafted SWF file.
network
low complexity
libming debian CWE-416
8.8
2018-01-26 CVE-2017-12374 Use After Free vulnerability in multiple products
The ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
network
low complexity
debian clamav CWE-416
7.5
2018-01-17 CVE-2018-5747 Use After Free vulnerability in multiple products
In Long Range Zip (aka lrzip) 0.631, there is a use-after-free in the ucompthread function (stream.c).
local
low complexity
long-range-zip-project debian CWE-416
5.5
2018-01-16 CVE-2014-9482 Use After Free vulnerability in Libdwarf Project Libdwarf
Use-after-free vulnerability in dwarfdump in libdwarf 20130126 through 20140805 might allow remote attackers to cause a denial of service (program crash) via a crafted ELF file.
network
low complexity
libdwarf-project CWE-416
6.5
2018-01-12 CVE-2017-13184 Use After Free vulnerability in Google Android 8.0/8.1
In the enableVSyncInjections function of SurfaceFlinger, there is a possible use after free of mVSyncInjector.
local
low complexity
google CWE-416
7.8
2018-01-12 CVE-2017-13180 Use After Free vulnerability in Google Android
In the onQueueFilled function of SoftAVCDec, there is a possible out-of-bounds write due to a use after free if a bad header causes the decoder to get caught in a loop while another thread frees the memory it's accessing.
local
low complexity
google CWE-416
7.8
2018-01-12 CVE-2017-13179 Use After Free vulnerability in Google Android
In the ihevcd_allocate_static_bufs and ihevcd_create functions of SoftHEVC, there is a possible out-of-bounds write due to a use after free.
network
low complexity
google CWE-416
critical
9.8
2018-01-12 CVE-2017-13178 Use After Free vulnerability in Google Android
In the initDecoder function of SoftAVCDec, there is a possible out-of-bounds write to mCodecCtx due to a use after free when buffer allocation fails.
network
low complexity
google CWE-416
critical
9.8
2018-01-12 CVE-2014-3471 Use After Free vulnerability in Qemu
Use-after-free vulnerability in hw/pci/pcie.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (QEMU instance crash) via hotplug and hotunplug operations of Virtio block devices.
local
low complexity
qemu CWE-416
5.5