VYPR

CWE-415

Double Free

VariantDraftLikelihood: High

Description

The product calls free() twice on the same memory address.

Hierarchy (View 1000)

Children

none

CVEs mapped to this weakness (886)

page 7 of 45
  • CVE-2025-21201HigFeb 11, 2025
    risk 0.57cvss 8.8epss 0.02

    Windows Telephony Server Remote Code Execution Vulnerability

  • CVE-2025-21291HigJan 14, 2025
    risk 0.57cvss 8.8epss 0.01

    Windows Direct Show Remote Code Execution Vulnerability

  • CVE-2024-49014HigNov 12, 2024
    risk 0.57cvss 8.8epss 0.01

    SQL Server Native Client Remote Code Execution Vulnerability

  • CVE-2022-48919HigAug 22, 2024
    risk 0.57cvss 8.8epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: cifs: fix double free race when mount fails in cifs_get_root() When cifs_get_root() fails during cifs_smb3_do_mount() we call deactivate_locked_super() which eventually will call delayed_free() which will free…

  • CVE-2024-41073CriJul 29, 2024
    risk 0.57cvss 9.8epss 0.01

    In the Linux kernel, the following vulnerability has been resolved: nvme: avoid double free special payload If a discard request needs to be retried, and that retry may fail before a new special payload is added, a double free will result. Clear the RQF_SPECIAL_LOAD when the…

  • CVE-2024-38087HigJul 9, 2024
    risk 0.57cvss 8.8epss 0.02

    SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability

  • CVE-2024-30013HigJul 9, 2024
    risk 0.57cvss 8.8epss 0.02

    Windows MultiPoint Services Remote Code Execution Vulnerability

  • CVE-2024-30097HigJun 11, 2024
    risk 0.57cvss 8.8epss 0.02

    Microsoft Speech Application Programming Interface (SAPI) Remote Code Execution Vulnerability

  • CVE-2024-35856HigMay 17, 2024
    risk 0.57cvss 8.8epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btusb: mediatek: Fix double free of skb in coredump hci_devcd_append() would free the skb on error so the caller don't have to free it again otherwise it would cause the double free of skb. …

  • CVE-2023-38562HigFeb 20, 2024
    risk 0.57cvss 8.7epss 0.01

    A double-free vulnerability exists in the IP header loopback parsing functionality of Weston Embedded uC-TCP-IP v3.06.01. A specially crafted set of network packets can lead to memory corruption, potentially resulting in code execution. An attacker can send a sequence of…

  • CVE-2023-41678HigDec 13, 2023
    risk 0.57cvss 8.8epss 0.01

    A double free in Fortinet FortiOS versions 7.0.0 through 7.0.5, FortiPAM version 1.0.0 through 1.0.3, 1.1.0 through 1.1.1 allows attacker to execute unauthorized code or commands via specifically crafted request.

  • CVE-2022-27864HigJul 29, 2022
    risk 0.57cvss 8.8epss 0.01

    A Double Free vulnerability allows remote attackers to execute arbitrary code through DesignReview.exe application on PDF files within affected installations. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a…

  • CVE-2022-2008HigJul 28, 2022
    risk 0.57cvss 8.8epss 0.01

    Double free in WebGL in Google Chrome prior to 102.0.5005.115 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

  • CVE-2021-39528HigSep 20, 2021
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in libredwg through v0.10.1.3751. dwg_free_MATERIAL_private() in dwg.spec has a double free.

  • CVE-2021-30535HigJun 7, 2021
    risk 0.57cvss 8.8epss 0.01

    Double free in ICU in Google Chrome prior to 91.0.4472.77 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

  • CVE-2020-36318CriApr 11, 2021
    risk 0.57cvss 9.8epss 0.02

    In the standard library in Rust before 1.49.0, VecDeque::make_contiguous has a bug that pops the same element more than once under certain condition. This bug could result in a use-after-free or double free.

  • CVE-2021-28034CriMar 5, 2021
    risk 0.57cvss 9.8epss 0.01

    An issue was discovered in the stack_dst crate before 0.6.1 for Rust. Because of the push_inner behavior, a double free can occur upon a val.clone() panic.

  • CVE-2021-28031CriMar 5, 2021
    risk 0.57cvss 9.8epss 0.01

    An issue was discovered in the scratchpad crate before 1.3.1 for Rust. The move_elements function can have a double-free upon a panic in a user-provided f function.

  • CVE-2021-28028CriMar 5, 2021
    risk 0.57cvss 9.8epss 0.01

    An issue was discovered in the toodee crate before 0.3.0 for Rust. Row insertion can cause a double free upon an iterator panic.

  • CVE-2019-20014HigDec 27, 2019
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in GNU LibreDWG before 0.93. There is a double-free in dwg_free in free.c.