CWE-416
7,456 CVEs • Abstraction: Variant • Likelihood of Exploit: High
Use After Free
The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.
CVEs (7,456)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Bytecodealliance Fedoraproject2Fedora WasmtimeNov 21, 2024 Sep 17, 2021 N/A· v4 6.3 MEDIUM· v3 3.3 LOW· v2 Wasmtime is an open source runtime for WebAssembly & WASI. In Wasmtime from version 0.19.0 and before version 0.30.0 there was a use-after-free bug when passing `externref`s from the host to guest Wasm content. To trigge...Show more |
Tremor is an event processing system for unstructured data. A vulnerability exists between versions 0.7.2 and 0.11.6. This vulnerability is a memory safety Issue when using `patch` or `merge` on `state` and assign the re...Show more |
1Qualcomm 247Apq8009 Firmware Apq8009w FirmwareApq8017 Firmware+244 moreNov 21, 2024 Sep 17, 2021 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 A use after free can occur due to improper validation of P2P device address in PD Request frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdra...Show more |
1Qualcomm 87Apq8009w Firmware Apq8053 FirmwareAr9380 Firmware+84 moreNov 21, 2024 Sep 17, 2021 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Use-after-free vulnerability in kernel graphics driver because of storing an invalid pointer in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon...Show more |
4Debian FedoraprojectNetapp+1 more4Debian Linux FedoraOntap Select Deploy Administration Utility+1 moreNov 21, 2024 Sep 15, 2021 N/A· v4 7.3 HIGH· v3 6.8 MEDIUM· v2 vim is vulnerable to Use After Free |
Microsoft Word Remote Code Execution Vulnerability |
1Microsoft 5365 Apps ExcelOffice+2 moreNov 21, 2024 Sep 15, 2021 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Microsoft Excel Remote Code Execution Vulnerability |
A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP8). The IFC adapter in affected application contains a use-after-free vulnerability that could be tr...Show more |
1Qualcomm 112Apq8009w Firmware Apq8096au FirmwareAqt1000 Firmware+109 moreNov 21, 2024 Sep 9, 2021 N/A· v4 6.7 MEDIUM· v3 4.6 MEDIUM· v2 Possible use-after-free due to lack of validation for the rule count in filter table in IPA driver in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snap...Show more |
A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.4, Security Update 2021-003 Catalina, Security Update 2021-004 Mojave. A malicious application could execute a...Show more |
1Apple 6Ipados Iphone OsMacos+3 moreOct 23, 2025 Sep 8, 2021 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 A use after free issue was addressed with improved memory management. This issue is fixed in Safari 14.1, iOS 12.5.3, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 11.3. Processing maliciously crafted w...Show more |
A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.3, Security Update 2021-002 Catalina, Security Update 2021-003 Mojave. Processing maliciously crafted web cont...Show more |
1Apple 4Ipados Iphone OsTvos+1 moreNov 21, 2024 Sep 8, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 A use after free issue was addressed with improved memory management. This issue is fixed in iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5. An attacker with JavaScript execution may be able to execute arbitrary code. |
A use after free issue was addressed with improved memory management. This issue is fixed in iOS 14.7, tvOS 14.7. Processing maliciously crafted web content may lead to arbitrary code execution. |
1Apple 5Iphone Os MacosSafari+2 moreNov 21, 2024 Sep 8, 2021 N/A· v4 8.8 HIGH· v3 9.3 HIGH· v2 A use after free issue was addressed with improved memory management. This issue is fixed in iOS 14.7, Safari 14.1.2, macOS Big Sur 11.5, watchOS 7.6, tvOS 14.7. Processing maliciously crafted web content may lead to arb...Show more |
A use after free issue was addressed with improved memory management. This issue is fixed in iOS 12.5.4. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that th...Show more |
A use after free issue was addressed with improved memory management. This issue is fixed in iOS 14.6 and iPadOS 14.6. Processing a maliciously crafted mail message may lead to unexpected memory modification or applicati...Show more |
2Fedoraproject Microsoft3Edge Edge ChromiumFedoraNov 21, 2024 Sep 3, 2021 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Chromium: CVE-2021-30624 Use after free in Autofill |
2Fedoraproject Microsoft3Edge Edge ChromiumFedoraNov 21, 2024 Sep 3, 2021 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Chromium: CVE-2021-30623 Use after free in Bookmarks |
2Fedoraproject Microsoft3Edge Edge ChromiumFedoraNov 21, 2024 Sep 3, 2021 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Chromium: CVE-2021-30622 Use after free in WebApp Installs |