Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2024-06-07 CVE-2024-4610 Use After Free vulnerability in ARM products
Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver allows a local non-privileged user to make improper GPU memory processing operations to gain access to already freed memory.This issue affects Bifrost GPU Kernel Driver: from r34p0 through r40p0; Valhall GPU Kernel Driver: from r34p0 through r40p0.
local
low complexity
arm CWE-416
7.8
2024-06-06 CVE-2024-30375 Use After Free vulnerability in Luxion Keyshot and Keyshot Viewer
Luxion KeyShot Viewer KSP File Parsing Use-After-Free Remote Code Execution Vulnerability.
local
low complexity
luxion CWE-416
7.8
2024-06-06 CVE-2024-5269 Use After Free vulnerability in Sonos ERA 100 Firmware 15.9
Sonos Era 100 SMB2 Message Handling Use-After-Free Remote Code Execution Vulnerability.
low complexity
sonos CWE-416
8.8
2024-06-04 CVE-2024-32974 Use After Free vulnerability in Envoyproxy Envoy
Envoy is a cloud-native, open source edge and service proxy.
network
low complexity
envoyproxy CWE-416
7.5
2024-06-04 CVE-2024-34362 Use After Free vulnerability in Envoyproxy Envoy
Envoy is a cloud-native, open source edge and service proxy.
network
high complexity
envoyproxy CWE-416
5.9
2024-06-03 CVE-2023-43543 Use After Free vulnerability in Qualcomm products
Memory corruption in Audio during a playback or a recording due to race condition between allocation and deallocation of graph object.
local
high complexity
qualcomm CWE-416
7.0
2024-06-03 CVE-2023-43544 Use After Free vulnerability in Qualcomm products
Memory corruption when IPC callback handle is used after it has been released during register callback by another thread.
local
low complexity
qualcomm CWE-416
7.8
2024-05-30 CVE-2024-5494 Use After Free vulnerability in multiple products
Use after free in Dawn in Google Chrome prior to 125.0.6422.141 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject CWE-416
8.8
2024-05-30 CVE-2024-5495 Use After Free vulnerability in multiple products
Use after free in Dawn in Google Chrome prior to 125.0.6422.141 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject CWE-416
8.8
2024-05-30 CVE-2024-5496 Use After Free vulnerability in multiple products
Use after free in Media Session in Google Chrome prior to 125.0.6422.141 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.
network
low complexity
google fedoraproject CWE-416
8.8