VYPR

CWE-416

Use After Free

VariantStableLikelihood: High

Description

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

Hierarchy (View 1000)

Parents

Children

none

CVEs mapped to this weakness (8,218)

page 181 of 411
  • CVE-2025-26630HigMar 11, 2025
    risk 0.51cvss 7.8epss 0.01

    Use after free in Microsoft Office Access allows an unauthorized attacker to execute code locally.

  • CVE-2025-26629HigMar 11, 2025
    risk 0.51cvss 7.8epss 0.01

    Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

  • CVE-2025-24082HigMar 11, 2025
    risk 0.51cvss 7.8epss 0.01

    Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2025-24081HigMar 11, 2025
    risk 0.51cvss 7.8epss 0.01

    Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2025-24080HigMar 11, 2025
    risk 0.51cvss 7.8epss 0.01

    Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

  • CVE-2025-24079HigMar 11, 2025
    risk 0.51cvss 7.8epss 0.01

    Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

  • CVE-2025-24077HigMar 11, 2025
    risk 0.51cvss 7.8epss 0.01

    Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

  • CVE-2025-24072HigMar 11, 2025
    risk 0.51cvss 7.8epss 0.01

    Use after free in Microsoft Local Security Authority Server (lsasrv) allows an authorized attacker to elevate privileges locally.

  • CVE-2025-24046HigMar 11, 2025
    risk 0.51cvss 7.8epss 0.01

    Use after free in Microsoft Streaming Service allows an authorized attacker to elevate privileges locally.

  • CVE-2025-24044HigMar 11, 2025
    risk 0.51cvss 7.8epss 0.01

    Use after free in Windows Win32 Kernel Subsystem allows an authorized attacker to elevate privileges locally.

  • CVE-2025-23402HigMar 11, 2025
    risk 0.51cvss 7.8epss 0.00

    A vulnerability has been identified in Teamcenter Visualization V14.3 (All versions < V14.3.0.13), Teamcenter Visualization V2312 (All versions < V2312.0009), Teamcenter Visualization V2406 (All versions < V2406.0007), Teamcenter Visualization V2412 (All versions < V2412.0002),…

  • CVE-2024-12837HigMar 7, 2025
    risk 0.51cvss 7.8epss 0.00

    Software installed and run as a non-privileged user may conduct improper GPU system calls to corrupt kernel heap memory.

  • CVE-2024-58083HigMar 6, 2025
    risk 0.51cvss 7.8epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: KVM: Explicitly verify target vCPU is online in kvm_get_vcpu() Explicitly verify the target vCPU is fully online _prior_ to clamping the index in kvm_get_vcpu(). If the index is "bad", the nospec clamping…

  • CVE-2024-58072HigMar 6, 2025
    risk 0.51cvss 7.8epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: wifi: rtlwifi: remove unused check_buddy_priv Commit 2461c7d60f9f ("rtlwifi: Update header file") introduced a global list of private data structures. Later on, commit 26634c4b1868 ("rtlwifi Modify existing…

  • CVE-2024-58060HigMar 6, 2025
    risk 0.51cvss 7.8epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: bpf: Reject struct_ops registration that uses module ptr and the module btf_id is missing There is a UAF report in the bpf_struct_ops when CONFIG_MODULES=n. In particular, the report is on tcp_congestion_ops…

  • CVE-2025-21424HigMar 3, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while calling the NPU driver APIs concurrently.

  • CVE-2024-53023HigMar 3, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption may occur while accessing a variable during extended back to back tests.

  • CVE-2024-45580HigMar 3, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while handling multuple IOCTL calls from userspace for remote invocation.

  • CVE-2024-43062HigMar 3, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption caused by missing locks and checks on the DMA fence and improper synchronization.

  • CVE-2024-43061HigMar 3, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption during voice activation, when sound model parameters are loaded from HLOS, and the received sound model list is empty in HLOS drive.