CWE-415: CWE-415

240
Total CVEs
25
Critical
191
High
7.8
Avg CVSS

Yearly Trend

2026
13
2025
79
2024
72
2023
22
2022
20

Top Affected Vendors

1 Linux 106
2 Microsoft 25
3 Debian 17
4 Google 11
5 Qualcomm 11
6 Fedoraproject 8
7 Huawei 7
8 Netapp 4
9 Cisco 3
10 Openbsd 3

All CWE-415 CVEs (240)

CVE-2025-5100
8.0

A double-free vulnerability in temporary image file cleanup allows memory corruption that could lead to arbitrary code execution. This affects systems...

May 23, 2025
CVE-2025-68968
7.8

A double free vulnerability in Huawei's multi-mode input module could allow attackers to execute arbitrary code or cause denial of service. This affec...

Jan 14, 2026
CVE-2026-20832
7.8

This vulnerability allows an authenticated attacker to execute code with elevated privileges on Windows systems by exploiting a flaw in the Remote Pro...

Jan 13, 2026
CVE-2025-47396
7.8

A memory corruption vulnerability occurs when launching secure applications on devices with insufficient memory, potentially allowing attackers to exe...

Jan 7, 2026
CVE-2025-47356
7.8

This CVE describes a double-free vulnerability in Qualcomm components where concurrent thread access to shared resources can cause memory corruption. ...

Jan 7, 2026
CVE-2025-36919
7.8

This vulnerability allows local attackers to escalate privileges on affected Android devices through a double-free condition in the aocc_read function...

Dec 11, 2025
CVE-2025-59505
7.8

A double free vulnerability in Windows Smart Card components allows authenticated attackers to execute arbitrary code with elevated SYSTEM privileges....

Nov 11, 2025
CVE-2022-50543
7.8

This CVE describes a double-free vulnerability in the Linux kernel's RDMA over Converged Ethernet (RoCE) subsystem. When rxe_mr_init_user() fails duri...

Oct 7, 2025
CVE-2022-50536
7.8

A double-free vulnerability in the Linux kernel's BPF sockmap subsystem allows local attackers to cause a use-after-free condition. This can lead to k...

Oct 7, 2025
CVE-2023-53616
7.8

This is a double-free vulnerability in the Linux kernel's JFS filesystem implementation. When unmounting a JFS filesystem, the kernel can attempt to f...

Oct 4, 2025
CVE-2023-53596
7.8

A double-free vulnerability in the Linux kernel's device resource management system can cause memory corruption when unregistering bus-less or driver-...

Oct 4, 2025
CVE-2022-50499
7.8

This CVE describes a double-free vulnerability in the Linux kernel's DVB (Digital Video Broadcasting) subsystem. When dvb_register_device() fails duri...

Oct 4, 2025
CVE-2022-50470
7.8

A double-free vulnerability in the Linux kernel's xHCI driver causes memory corruption when freeing USB device endpoints during host controller remova...

Oct 4, 2025
CVE-2023-53510
7.8

A double-free vulnerability in the Linux kernel's UFS (Universal Flash Storage) driver allows local attackers to cause a kernel panic or potentially e...

Oct 1, 2025
CVE-2025-47316
7.8

This vulnerability allows memory corruption through a double-free condition when multiple threads race to set the timestamp store. Attackers could pot...

Sep 24, 2025
CVE-2025-39870
7.8

This CVE describes a double-free vulnerability in the Linux kernel's dmaengine idxd driver. The bug occurs during error handling in the idxd_setup_wqs...

Sep 23, 2025
CVE-2025-51006
7.8

A double free vulnerability in tcpreplay's tcprewrite allows local attackers to cause denial of service through memory corruption by providing a speci...

Sep 22, 2025
CVE-2022-50419
7.8

This vulnerability in the Linux kernel's Bluetooth subsystem occurs when device_add() is called multiple times for the same device structure, violatin...

Sep 18, 2025
CVE-2022-50401
7.8

This CVE describes a double-free vulnerability in the Linux kernel's NFS server (nfsd) under NFSv4.1. When rpc_create fails during callback connection...

Sep 18, 2025
CVE-2022-50303
7.8

This CVE describes a double-free vulnerability in the Linux kernel's AMD GPU driver (amdgpu) that occurs when process initialization fails. The vulner...

Sep 15, 2025
CVE-2023-53148
7.8

A double-free vulnerability in the Linux kernel's igb Ethernet driver causes system hangs when Thunderbolt devices are unexpectedly removed. This affe...

Sep 15, 2025
CVE-2025-39790
7.8

A double-free vulnerability in the Linux kernel's MHI host driver allows a malicious or compromised remote device to trigger memory corruption. This a...

Sep 11, 2025
CVE-2025-38699
7.8

A double-free vulnerability in the Linux kernel's bfa SCSI driver allows attackers to potentially crash the kernel or execute arbitrary code with kern...

Sep 4, 2025
CVE-2025-38682
7.8

A double-free vulnerability in the Linux kernel's I2C subsystem allows attackers to cause a kernel panic or potentially execute arbitrary code with ke...

Sep 4, 2025
CVE-2025-38582
7.8

This CVE describes a double-free vulnerability in the Linux kernel's RDMA (Remote Direct Memory Access) subsystem for Huawei hns hardware. The vulnera...

Aug 19, 2025
CVE-2025-38490
7.8

A double-free vulnerability in the Linux kernel's libwx networking module causes kernel panic when page_pool_put_full_page() is called redundantly dur...

Jul 28, 2025
CVE-2025-38423
7.8

A double-free vulnerability in the Linux kernel's WCD9375 audio codec driver allows attackers to cause memory corruption and potentially crash the sys...

Jul 25, 2025
CVE-2025-38421
7.8

A double-free vulnerability in the AMD Platform Management Framework (PMF) driver in the Linux kernel could lead to memory corruption and potential ke...

Jul 25, 2025
CVE-2025-38411
7.8

This CVE describes a double-free vulnerability in the Linux kernel's netfs subsystem where a request reference count is incorrectly decremented twice....

Jul 25, 2025
CVE-2025-38338
7.8

A double-unlock bug in the Linux kernel's NFS client can cause deadlocks when files are read while being truncated by another NFS client. This affects...

Jul 10, 2025
CVE-2025-38313
7.8

This CVE describes a double-free memory corruption vulnerability in the Linux kernel's fsl-mc bus driver. When a specific error condition occurs durin...

Jul 10, 2025
CVE-2025-49667
7.8

This vulnerability involves a double-free memory corruption flaw in the Windows Win32K ICOMP component, allowing authenticated attackers to escalate p...

Jul 8, 2025
CVE-2025-27046
7.8

This vulnerability involves memory corruption in Qualcomm components when processing multiple simultaneous escape calls, potentially allowing attacker...

Jul 8, 2025
CVE-2025-21432
7.8

This vulnerability allows memory corruption when retrieving CBOR data from a Trusted Application (TA) in Qualcomm components. Attackers could potentia...

Jul 8, 2025
CVE-2025-38206
7.8

A double-free vulnerability in the Linux kernel's exFAT filesystem driver could allow local attackers to crash the system or potentially execute arbit...

Jul 4, 2025
CVE-2022-50115
7.8

This CVE describes a double-free memory corruption vulnerability in the Linux kernel's Sound Open Firmware (SOF) subsystem. When byte control sanity c...

Jun 18, 2025
CVE-2022-49990
7.8

This CVE describes a double-free vulnerability in the Linux kernel on s390 architecture that occurs when the fork() system call fails. The vulnerabili...

Jun 18, 2025
CVE-2025-38079
7.8

This CVE describes a double-free vulnerability in the Linux kernel's crypto subsystem, specifically in the algif_hash socket interface. When accept() ...

Jun 18, 2025
CVE-2025-37991
7.8

A double free vulnerability in the Linux kernel's parisc architecture causes applications to crash when handling SIGFPE signals. This occurs due to im...

May 20, 2025
CVE-2025-37913
7.8

A double-free vulnerability in the Linux kernel's qfq scheduler occurs when netem is used as a child qdisc, causing reentrant enqueue operations. This...

May 20, 2025
CVE-2025-37817
7.8

This CVE describes a double-free vulnerability in the Linux kernel's MCB (Memory Controller Bridge) subsystem. When mcb_device_register() fails in cha...

May 8, 2025
CVE-2022-49900
7.8

A double-free vulnerability in the Linux kernel's i2c-piix4 driver causes memory corruption when the module is removed and reloaded. This allows local...

May 1, 2025
CVE-2022-49826
7.8

This CVE describes a double-free vulnerability in the Linux kernel's libata-transport subsystem. When the ata_tport_add() function fails, it incorrect...

May 1, 2025
CVE-2022-49789
7.8

A double-free vulnerability in the Linux kernel's zfcp SCSI driver allows local attackers to cause memory corruption and potentially crash the system....

May 1, 2025
CVE-2022-49775
7.8

A double-free vulnerability in the Linux kernel's TCP CDG congestion control module allows local attackers to cause a kernel panic or potentially exec...

May 1, 2025
CVE-2025-27730
7.8

CVE-2025-27730 is a use-after-free vulnerability in Windows Digital Media components that allows authenticated attackers to execute arbitrary code wit...

Apr 8, 2025
CVE-2023-52930
7.8

This CVE describes a double-free memory corruption vulnerability in the Linux kernel's i915 graphics driver. It allows attackers with local access to ...

Mar 27, 2025
CVE-2022-43454
7.8

A double free vulnerability in Apple operating systems allows malicious applications to execute arbitrary code with kernel privileges. This affects ma...

Mar 10, 2025
CVE-2024-58055
7.8

This CVE describes a double-free vulnerability in the Linux kernel's USB gadget f_tcm driver. An attacker could potentially cause a kernel crash or ex...

Mar 6, 2025
CVE-2024-57980
7.8

This CVE describes a double-free vulnerability in the Linux kernel's UVC video driver. If exploited, it could lead to memory corruption and potential ...

Feb 27, 2025

About CWE-415 (CWE-415)

Our database tracks 240 CVEs classified as CWE-415, with 25 rated critical and 191 rated high severity. The average CVSS score for CWE-415 vulnerabilities is 7.8.

External reference: View CWE-415 on MITRE CWE →

Monitor CWE-415 Vulnerabilities

Get alerted when new CWE-415 CVEs affect your infrastructure.

Start Monitoring Free