Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2025-03-03 CVE-2024-43057 Use After Free vulnerability in Qualcomm products
Memory corruption while processing command in Glink linux.
local
low complexity
qualcomm CWE-416
7.8
2025-03-03 CVE-2024-43059 Use After Free vulnerability in Qualcomm products
Memory corruption while invoking IOCTL calls from the use-space for HGSL memory node.
local
low complexity
qualcomm CWE-416
7.8
2025-03-03 CVE-2024-43061 Use After Free vulnerability in Qualcomm products
Memory corruption during voice activation, when sound model parameters are loaded from HLOS, and the received sound model list is empty in HLOS drive.
local
low complexity
qualcomm CWE-416
7.8
2025-03-03 CVE-2024-43062 Use After Free vulnerability in Qualcomm products
Memory corruption caused by missing locks and checks on the DMA fence and improper synchronization.
local
low complexity
qualcomm CWE-416
7.8
2025-03-03 CVE-2024-45580 Use After Free vulnerability in Qualcomm products
Memory corruption while handling multuple IOCTL calls from userspace for remote invocation.
local
low complexity
qualcomm CWE-416
7.8
2025-03-03 CVE-2024-53023 Use After Free vulnerability in Qualcomm products
Memory corruption may occur while accessing a variable during extended back to back tests.
local
low complexity
qualcomm CWE-416
7.8
2025-03-03 CVE-2025-21424 Use After Free vulnerability in Qualcomm products
Memory corruption while calling the NPU driver APIs concurrently.
local
low complexity
qualcomm CWE-416
7.8
2025-02-27 CVE-2025-21791 Use After Free vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: vrf: use RCU protection in l3mdev_l3_out() l3mdev_l3_out() can be called without RCU being held: raw_sendmsg() ip_push_pending_frames() ip_send_skb() ip_local_out() __ip_local_out() l3mdev_ip_out() Add rcu_read_lock() / rcu_read_unlock() pair to avoid a potential UAF.
local
low complexity
linux CWE-416
7.8
2025-02-27 CVE-2025-21797 Use After Free vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: HID: corsair-void: Add missing delayed work cancel for headset status The cancel_delayed_work_sync() call was missed, causing a use-after-free in corsair_void_remove().
local
low complexity
linux CWE-416
7.8
2025-02-27 CVE-2024-57995 Use After Free vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix read pointer after free in ath12k_mac_assign_vif_to_vdev() In ath12k_mac_assign_vif_to_vdev(), if arvif is created on a different radio, it gets deleted from that radio through a call to ath12k_mac_unassign_link_vif().
local
low complexity
linux CWE-416
7.8