CWE-416
8,553 CVEs • Abstraction: Variant • Likelihood of Exploit: High
Use After Free
The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.
CVEs (8,553)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Use after free in Active Directory Domain Services allows an unauthorized attacker to execute code over a network. |
Use after free in Windows Audio Service allows an authorized attacker to elevate privileges locally. |
Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over a network. |
Use after free in Windows Remote Desktop Services allows an authorized attacker to execute code over a network. |
Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a network. |
Use after free in Windows Remote Desktop Services allows an unauthorized attacker to execute code over a network. |
Use after free in Active Directory Domain Services allows an unauthorized attacker to execute code over a network. |
Use after free in Windows Wireless Networking allows an authorized attacker to elevate privileges locally. |
Use after free in Connected Devices Platform Service (Cdpsvc) allows an authorized attacker to elevate privileges locally. |
Use after free in Windows Image Acquisition allows an authorized attacker to elevate privileges locally. |
Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally. |
Use after free in Windows Device Association Service allows an authorized attacker to elevate privileges locally. |
Use after free in Windows Overlay Filter allows an authorized attacker to disclose information over a network. |
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. |
Use after free in Windows Devices Human Interface allows an authorized attacker to elevate privileges locally. |
Use after free in Windows Connected User Experiences and Telemetry allows an authorized attacker to elevate privileges locally. |
Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges over a network. |
Use after free in Windows Management Instrumentation allows an authorized attacker to elevate privileges over a network. |
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Installer allows an authorized attacker to elevate privileges locally. |
Use after free in Windows Embedded Mode Service allows an authorized attacker to elevate privileges locally. |