Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2024-05-14 CVE-2024-4671 Use After Free vulnerability in multiple products
Use after free in Visuals in Google Chrome prior to 124.0.6367.201 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google fedoraproject CWE-416
critical
9.6
2024-05-14 CVE-2024-27395 Use After Free vulnerability in multiple products
In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: Fix Use-After-Free in ovs_ct_exit Since kfree_rcu, which is called in the hlist_for_each_entry_rcu traversal of ovs_ct_limit_exit, is not part of the RCU read critical section, it is possible that the RCU grace period will pass during the traversal and the key will be free. To prevent this, it should be changed to hlist_for_each_entry_safe.
local
low complexity
linux debian CWE-416
7.8
2024-05-14 CVE-2024-27396 Use After Free vulnerability in multiple products
In the Linux kernel, the following vulnerability has been resolved: net: gtp: Fix Use-After-Free in gtp_dellink Since call_rcu, which is called in the hlist_for_each_entry_rcu traversal of gtp_dellink, is not part of the RCU read critical section, it is possible that the RCU grace period will pass during the traversal and the key will be free. To prevent this, it should be changed to hlist_for_each_entry_safe.
local
low complexity
linux debian CWE-416
7.8
2024-05-07 CVE-2024-4558 Use After Free vulnerability in multiple products
Use after free in ANGLE in Google Chrome prior to 124.0.6367.155 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject apple CWE-416
critical
9.6
2024-05-07 CVE-2024-27217 Use After Free vulnerability in Openatom Openharmony
in OpenHarmony v4.0.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through use after free.
local
low complexity
openatom CWE-416
7.8
2024-05-07 CVE-2024-3759 Use After Free vulnerability in Openatom Openharmony
in OpenHarmony v4.0.0 and prior versions allow a local attacker arbitrary code execution in TCB through use after free.
local
low complexity
openatom CWE-416
7.8
2024-05-06 CVE-2023-43521 Use After Free vulnerability in Qualcomm products
Memory corruption when multiple listeners are being registered with the same file descriptor.
local
low complexity
qualcomm CWE-416
7.8
2024-05-06 CVE-2024-21471 Use After Free vulnerability in Qualcomm products
Memory corruption when IOMMU unmap of a GPU buffer fails in Linux.
local
low complexity
qualcomm CWE-416
7.8
2024-05-06 CVE-2024-23354 Use After Free vulnerability in Qualcomm products
Memory corruption when the IOCTL call is interrupted by a signal.
local
low complexity
qualcomm CWE-416
7.8
2024-05-03 CVE-2022-48695 Use After Free vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: scsi: mpt3sas: Fix use-after-free warning Fix the following use-after-free warning which is observed during controller reset: refcount_t: underflow; use-after-free. WARNING: CPU: 23 PID: 5399 at lib/refcount.c:28 refcount_warn_saturate+0xa6/0xf0
local
low complexity
linux CWE-416
7.8