CWE-416
Use After Free
Description
The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.
Hierarchy (View 1000)
Parents
Children
none
CVEs mapped to this weakness (8,173)
page 376 of 409| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-55000 | Med | 0.00 | 6.4 | 0.00 | Jul 14, 2026 | Use after free in Windows USB Print Driver allows an unauthorized attacker to elevate privileges with a physical attack. | ||
| CVE-2026-54995 | Hig | 0.00 | 8.1 | 0.01 | Jul 14, 2026 | Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a network. | ||
| CVE-2026-54989 | Hig | 0.00 | 7.0 | 0.00 | Jul 14, 2026 | Use after free in Quality Windows Audio/Video Experience (QWAVE) service allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-54129 | Hig | 0.00 | 7.0 | 0.00 | Jul 14, 2026 | Use after free in Windows Hyper-V allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-54127 | Hig | 0.00 | 7.4 | 0.00 | Jul 14, 2026 | Use after free in Windows Hyper-V allows an unauthorized attacker to elevate privileges locally. | ||
| CVE-2026-54114 | Hig | 0.00 | 7.8 | 0.02 | Jul 14, 2026 | Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-54112 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-50694 | Hig | 0.00 | 8.1 | 0.01 | Jul 14, 2026 | Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unauthorized attacker to execute code over a network. | ||
| CVE-2026-50384 | Hig | 0.00 | 7.0 | 0.00 | Jul 14, 2026 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Clip Service allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-50354 | Hig | 0.00 | 7.1 | 0.00 | Jul 14, 2026 | Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-50323 | Hig | 0.00 | 7.0 | 0.00 | Jul 14, 2026 | Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-50296 | Hig | 0.00 | 7.0 | 0.00 | Jul 14, 2026 | Use after free in Graphics Kernel allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-50293 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Use after free in Windows Internal Task Bar allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-49808 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Kernel allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-49806 | Hig | 0.00 | 7.0 | 0.00 | Jul 14, 2026 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-49802 | Hig | 0.00 | 7.0 | 0.00 | Jul 14, 2026 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-49798 | Cri | 0.00 | 9.3 | 0.02 | Jul 14, 2026 | Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges locally. | ||
| CVE-2026-49795 | Hig | 0.00 | 8.8 | 0.02 | Jul 14, 2026 | Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-49784 | Hig | 0.00 | 7.0 | 0.00 | Jul 14, 2026 | Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Windows App Store allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-49183 | Hig | 0.00 | 7.0 | 0.00 | Jul 14, 2026 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Clipboard Server allows an authorized attacker to elevate privileges locally. |
- risk 0.00cvss 6.4epss 0.00
Use after free in Windows USB Print Driver allows an unauthorized attacker to elevate privileges with a physical attack.
- risk 0.00cvss 8.1epss 0.01
Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a network.
- risk 0.00cvss 7.0epss 0.00
Use after free in Quality Windows Audio/Video Experience (QWAVE) service allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.0epss 0.00
Use after free in Windows Hyper-V allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.4epss 0.00
Use after free in Windows Hyper-V allows an unauthorized attacker to elevate privileges locally.
- risk 0.00cvss 7.8epss 0.02
Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.8epss 0.00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 8.1epss 0.01
Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unauthorized attacker to execute code over a network.
- risk 0.00cvss 7.0epss 0.00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Clip Service allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.1epss 0.00
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.0epss 0.00
Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.0epss 0.00
Use after free in Graphics Kernel allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.8epss 0.00
Use after free in Windows Internal Task Bar allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.8epss 0.00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Kernel allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.0epss 0.00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.0epss 0.00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Print Driver allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 9.3epss 0.02
Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges locally.
- risk 0.00cvss 8.8epss 0.02
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.0epss 0.00
Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Windows App Store allows an authorized attacker to elevate privileges locally.
- risk 0.00cvss 7.0epss 0.00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Clipboard Server allows an authorized attacker to elevate privileges locally.