VYPR

CWE-416

Use After Free

VariantStableLikelihood: High

Description

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

Hierarchy (View 1000)

Parents

Children

none

CVEs mapped to this weakness (8,277)

page 94 of 414
  • CVE-2023-3214HigJun 13, 2023
    risk 0.57cvss 8.8epss 0.01

    Use after free in Autofill payments in Google Chrome prior to 114.0.5735.133 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)

  • CVE-2023-29543HigJun 2, 2023
    risk 0.57cvss 8.8epss 0.01

    An attacker could have caused memory corruption and a potentially exploitable use-after-free of a pointer in a global object's debugger vector. This vulnerability affects Firefox for Android < 112, Firefox < 112, and Focus for Android < 112.

  • CVE-2023-29536HigJun 2, 2023
    risk 0.57cvss 8.8epss 0.01

    An attacker could cause the memory manager to incorrectly free a pointer that addresses attacker-controlled memory, resulting in an assertion, memory corruption, or a potentially exploitable crash. This vulnerability affects Firefox < 112, Focus for Android < 112, Firefox ESR <…

  • CVE-2023-25739HigJun 2, 2023
    risk 0.57cvss 8.8epss 0.01

    Module load requests that failed were not being checked as to whether or not they were cancelled causing a use-after-free in ScriptLoadContext. This vulnerability affects Firefox < 110, Thunderbird < 102.8, and Firefox ESR < 102.8.

  • CVE-2023-25735HigJun 2, 2023
    risk 0.57cvss 8.8epss 0.01

    Cross-compartment wrappers wrapping a scripted proxy could have caused objects from other compartments to be stored in the main compartment resulting in a use-after-free after unwrapping the proxy. This vulnerability affects Firefox < 110, Thunderbird < 102.8, and Firefox ESR <…

  • CVE-2023-2933HigMay 30, 2023
    risk 0.57cvss 8.8epss 0.01

    Use after free in PDF in Google Chrome prior to 114.0.5735.90 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: High)

  • CVE-2023-2932HigMay 30, 2023
    risk 0.57cvss 8.8epss 0.01

    Use after free in PDF in Google Chrome prior to 114.0.5735.90 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: High)

  • CVE-2023-2931HigMay 30, 2023
    risk 0.57cvss 8.8epss 0.01

    Use after free in PDF in Google Chrome prior to 114.0.5735.90 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: High)

  • CVE-2023-2930HigMay 30, 2023
    risk 0.57cvss 8.8epss 0.01

    Use after free in Extensions in Google Chrome prior to 114.0.5735.90 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

  • CVE-2023-28081CriMay 18, 2023
    risk 0.57cvss 9.8epss 0.01

    A bytecode optimization bug in Hermes prior to commit e6ed9c1a4b02dc219de1648f44cd808a56171b81 could be used to cause an use-after-free and obtain arbitrary code execution via a carefully crafted payload. Note that this is only exploitable in cases where Hermes is used to…

  • CVE-2023-2203HigMay 17, 2023
    risk 0.57cvss 8.8epss 0.01

    A flaw was found in the WebKitGTK package. An improper input validation issue may lead to a use-after-free vulnerability. This flaw allows attackers with network access to pass specially crafted web content files, causing a denial of service or arbitrary code execution. This CVE…

  • CVE-2023-2722HigMay 16, 2023
    risk 0.57cvss 8.8epss 0.01

    Use after free in Autofill UI in Google Chrome on Android prior to 113.0.5672.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

  • CVE-2023-2721HigMay 16, 2023
    risk 0.57cvss 8.8epss 0.01

    Use after free in Navigation in Google Chrome prior to 113.0.5672.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)

  • CVE-2023-2458HigMay 12, 2023
    risk 0.57cvss 8.8epss 0.01

    Use after free in ChromeOS Camera in Google Chrome on ChromeOS prior to 113.0.5672.114 allowed a remote attacker who convinced a user to engage in specific UI interaction to potentially exploit heap corruption via UI interaction. (Chromium security severity: High)

  • CVE-2023-31566HigMay 10, 2023
    risk 0.57cvss 8.8epss 0.01

    Podofo v0.10.0 was discovered to contain a heap-use-after-free via the component PoDoFo::PdfEncrypt::IsMetadataEncrypted().

  • CVE-2023-24947HigMay 9, 2023
    risk 0.57cvss 8.8epss 0.01

    Windows Bluetooth Driver Remote Code Execution Vulnerability

  • CVE-2023-2461HigMay 3, 2023
    risk 0.57cvss 8.8epss 0.01

    Use after free in OS Inputs in Google Chrome on ChromeOS prior to 113.0.5672.63 allowed a remote attacker who convinced a user to enage in specific UI interaction to potentially exploit heap corruption via crafted UI interaction. (Chromium security severity: Medium)

  • CVE-2023-27352HigApr 20, 2023
    risk 0.57cvss 8.8epss 0.01

    This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sonos One Speaker 70.3-35220. Authentication is not required to exploit this vulnerability. The specific flaw exists within the processing of the SMB directory query…

  • CVE-2023-28297HigApr 11, 2023
    risk 0.57cvss 8.8epss 0.02

    Windows Remote Procedure Call Service (RPCSS) Elevation of Privilege Vulnerability

  • CVE-2023-24925HigApr 11, 2023
    risk 0.57cvss 8.8epss 0.02

    Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability