Vulnerabilities > Use After Free

DATE CVE VULNERABILITY TITLE RISK
2022-12-22 CVE-2022-45407 If an attacker loaded a font using <code>FontFace()</code> on a background worker, a use-after-free could have occurred, leading to a potentially exploitable crash.
network
low complexity
CWE-416
7.5
2022-12-22 CVE-2022-45409 The garbage collector could have been aborted in several states and zones and <code>GCRuntime::finishCollection</code> may not have been called, leading to a use-after-free and potentially exploitable crash.
network
low complexity
CWE-416
8.8
2022-12-22 CVE-2022-46880 Use After Free vulnerability in Mozilla Firefox
A missing check related to tex units could have led to a use-after-free and potentially exploitable crash.<br />*Note*: This advisory was added on December 13th, 2022 after we better understood the impact of the issue.
network
low complexity
mozilla CWE-416
6.5
2022-12-22 CVE-2022-46882 Use After Free vulnerability in Mozilla Firefox
A use-after-free in WebGL extensions could have led to a potentially exploitable crash.
network
low complexity
mozilla CWE-416
critical
9.8
2022-12-21 CVE-2022-46282 Use after free vulnerability in CX-Drive V3.00 and earlier allows a local attacker to execute arbitrary code by having a user to open a specially crafted file,
local
low complexity
CWE-416
7.8
2022-12-20 CVE-2022-46311 Use After Free vulnerability in Huawei Harmonyos
The contacts component has a free (undefined) provider vulnerability.
network
low complexity
huawei CWE-416
7.5
2022-12-19 CVE-2021-33640 Use After Free vulnerability in multiple products
After tar_close(), libtar.c releases the memory pointed to by pointer t.
network
low complexity
huawei fedoraproject CWE-416
critical
9.8
2022-12-16 CVE-2022-20514 Use After Free vulnerability in Google Android 13.0
In acquireFabricatedOverlayIterator, nextFabricatedOverlayInfos, and releaseFabricatedOverlayIterator of Idmap2Service.cpp, there is a possible out of bounds write due to a use after free.
local
low complexity
google CWE-416
6.7
2022-12-16 CVE-2022-20524 Use After Free vulnerability in Google Android 13.0
In compose of Vibrator.cpp, there is a possible arbitrary code execution due to a use after free.
local
low complexity
google CWE-416
7.8
2022-12-16 CVE-2022-20540 Use After Free vulnerability in Google Android 13.0
In SurfaceFlinger::doDump of SurfaceFlinger.cpp, there is possible arbitrary code execution due to a use after free.
local
low complexity
google CWE-416
7.8