CWE-415: CWE-415

240
Total CVEs
25
Critical
191
High
7.8
Avg CVSS

Yearly Trend

2026
13
2025
79
2024
72
2023
22
2022
20

Top Affected Vendors

1 Linux 106
2 Microsoft 25
3 Debian 17
4 Google 11
5 Qualcomm 11
6 Fedoraproject 8
7 Huawei 7
8 Netapp 4
9 Cisco 3
10 Openbsd 3

All CWE-415 CVEs (240)

CVE-2022-49686
7.8

A double-free vulnerability in the Linux kernel's USB gadget UVC driver can cause kernel panic when USB video streaming endpoints become disabled. Thi...

Feb 26, 2025
CVE-2022-49541
7.8

A double-free vulnerability in the Linux kernel's CIFS filesystem driver could allow local attackers to crash the system or potentially execute arbitr...

Feb 26, 2025
CVE-2022-49519
7.8

A double-free vulnerability in the Linux kernel's ath10k wireless driver causes kernel crashes when firmware recovery is immediately followed by syste...

Feb 26, 2025
CVE-2022-49508
7.8

This CVE describes a double-free vulnerability in the Linux kernel's HID driver for Elan touchpads. When the elan_input_configured function incorrectl...

Feb 26, 2025
CVE-2022-49455
7.8

This CVE describes a double-free vulnerability in the Linux kernel's ocxl driver, which could lead to memory corruption and potential kernel panic or ...

Feb 26, 2025
CVE-2022-49410
7.8

This CVE describes a double-free vulnerability in the Linux kernel's tracing subsystem. When create_var_ref() encounters an error during initializatio...

Feb 26, 2025
CVE-2022-49384
7.8

This CVE describes a double-free vulnerability in the Linux kernel's md (multiple device) subsystem. When exploited, it can cause kernel memory corrup...

Feb 26, 2025
CVE-2022-49391
7.8

This CVE describes a double-free vulnerability in the MediaTek SCP (System Control Processor) remoteproc driver in the Linux kernel. If exploited, it ...

Feb 26, 2025
CVE-2022-49290
7.8

This vulnerability is a double-free memory corruption flaw in the Linux kernel's mac80211 mesh networking subsystem. It allows attackers with local ac...

Feb 26, 2025
CVE-2022-49205
7.8

This is a double-free memory management vulnerability in the Linux kernel's BPF sockmap subsystem. It allows local attackers to cause a kernel panic (...

Feb 26, 2025
CVE-2024-56766
7.8

This CVE describes a double-free vulnerability in the Linux kernel's MTD (Memory Technology Device) subsystem, specifically in the atmel_pmecc_create_...

Jan 6, 2025
CVE-2024-56708
7.8

This CVE describes a double-free vulnerability in the Linux kernel's igen6 EDAC (Error Detection and Correction) driver that can cause a segmentation ...

Dec 28, 2024
CVE-2024-56704
7.8

This CVE describes a double-free vulnerability in the Linux kernel's 9p/xen subsystem where an IRQ (Interrupt Request) is incorrectly released twice. ...

Dec 28, 2024
CVE-2024-53213
7.8

This CVE describes a double-free memory corruption vulnerability in the Linux kernel's LAN78xx USB Ethernet driver. The vulnerability allows attackers...

Dec 27, 2024
CVE-2024-53191
7.8

This CVE describes a double-free vulnerability in the Linux kernel's ath12k WiFi driver that occurs during device unbinding when firmware initializati...

Dec 27, 2024
CVE-2024-53133
7.8

A double-free vulnerability in the AMD display driver component of the Linux kernel could lead to system crashes or potential kernel memory corruption...

Dec 4, 2024
CVE-2024-50215
7.8

This CVE describes a double-free vulnerability in the Linux kernel's NVMe over Fabrics authentication module. The vulnerability occurs when ctrl->dh_k...

Nov 9, 2024
CVE-2024-50071
7.8

This CVE describes a double-free vulnerability in the Linux kernel's Nuvoton pinctrl driver. When exploited, it can cause kernel memory corruption lea...

Oct 29, 2024
CVE-2024-50055
7.8

This CVE describes a double-free vulnerability in the Linux kernel's driver core bus subsystem. When bus_register() fails after kset_register(), it ca...

Oct 21, 2024
CVE-2024-49989
7.8

This CVE describes a double-free memory corruption vulnerability in the AMD GPU display driver within the Linux kernel. When unloading the amdgpu kern...

Oct 21, 2024
CVE-2024-49983
7.8

This CVE describes a double-free vulnerability in the Linux kernel's ext4 filesystem driver. An attacker could potentially exploit this to cause a ker...

Oct 21, 2024
CVE-2024-49882
7.8

A double-free vulnerability in the Linux kernel's ext4 filesystem driver allows an attacker to cause a kernel panic or potentially achieve privilege e...

Oct 21, 2024
CVE-2024-43514
7.8

This vulnerability allows an authenticated attacker to exploit a double-free condition (CWE-415) in Windows Resilient File System (ReFS) to gain SYSTE...

Oct 8, 2024
CVE-2024-46736
7.8

This CVE describes a double-free vulnerability in the Linux kernel's SMB client implementation. When the smb2_rename_path() function encounters an err...

Sep 18, 2024
CVE-2024-46687
7.8

A use-after-free vulnerability in the Linux kernel's Btrfs filesystem allows attackers to potentially crash the system or execute arbitrary code with ...

Sep 13, 2024
CVE-2022-48892
7.8

This CVE describes a use-after-free vulnerability in the Linux kernel's scheduler when duplicating CPU affinity pointers during fork operations. The b...

Aug 21, 2024
CVE-2024-42147
7.8

This CVE describes a double-free vulnerability in the Linux kernel's Hisilicon crypto driver debugfs component. When debugfs initialization fails duri...

Jul 30, 2024
CVE-2024-42138
7.8

This is a double-free memory corruption vulnerability in the Linux kernel's mlxsw driver for Mellanox network devices. It allows local attackers with ...

Jul 30, 2024
CVE-2024-41087
7.8

This CVE describes a double-free vulnerability in the Linux kernel's libata-core subsystem that occurs during error handling in ata_host_alloc(). When...

Jul 29, 2024
CVE-2024-41073
7.8

This CVE describes a double-free vulnerability in the Linux kernel's NVMe driver that occurs when discard requests are retried. If exploited, it could...

Jul 29, 2024
CVE-2024-38627
7.8

This CVE describes a double-free vulnerability in the Linux kernel's STM (System Trace Module) subsystem. The flaw occurs when registering STM devices...

Jun 21, 2024
CVE-2022-48740
7.8

This CVE describes a double-free vulnerability in the SELinux subsystem of the Linux kernel. When error conditions occur in certain SELinux policy loa...

Jun 20, 2024
CVE-2024-36973
7.8

This CVE describes a double-free vulnerability in the Linux kernel's microchip PCI1XXXX driver. When the gp_aux_bus_probe() function fails during auxi...

Jun 17, 2024
CVE-2024-36940
7.8

This CVE describes a double-free vulnerability in the Linux kernel's pinctrl subsystem. The pinctrl_enable() function incorrectly frees a devm-managed...

May 30, 2024
CVE-2021-47564
7.8

This CVE describes a double-free vulnerability in the Marvell Prestera network driver in the Linux kernel. When exploited, it causes a kernel crash (k...

May 24, 2024
CVE-2021-47483
7.8

A double-free memory corruption vulnerability in the Linux kernel's regmap subsystem that could lead to system crashes or potential privilege escalati...

May 22, 2024
CVE-2023-52851
7.8

This CVE describes a double-free vulnerability in the Linux kernel's mlx5 InfiniBand driver that occurs during initialization error handling. When wor...

May 21, 2024
CVE-2024-35856
7.8

This CVE describes a double-free vulnerability in the Linux kernel's Bluetooth driver for MediaTek chipsets. When a Bluetooth device coredump fails, t...

May 17, 2024
CVE-2024-35847
7.8

A double-free vulnerability in the Linux kernel's GIC-V3 interrupt controller allows local attackers to potentially crash the system or execute arbitr...

May 17, 2024
CVE-2023-52679
7.8

A double-free vulnerability in the Linux kernel's device tree parsing code allows memory corruption when processing malformed device tree data. This a...

May 17, 2024
CVE-2023-52688
7.8

This CVE describes a double-free vulnerability in the Linux kernel's ath12k WiFi driver. When the rfkill configuration fails, the error handler doesn'...

May 17, 2024
CVE-2023-52667
7.8

This CVE describes a double-free memory corruption vulnerability in the Linux kernel's mlx5e network driver. If exploited, it could allow local attack...

May 17, 2024
CVE-2023-52664
7.8

This vulnerability is a double-free memory corruption flaw in the Linux kernel's Atlantic network driver. It allows attackers to potentially crash the...

May 17, 2024
CVE-2024-27433
7.8

This CVE describes a double-free vulnerability in the Linux kernel's MediaTek clock driver for MT7622 and MT8135 chips. The vulnerability occurs when ...

May 17, 2024
CVE-2024-30027
7.8

This is a Windows NTFS privilege escalation vulnerability that allows an authenticated attacker to gain SYSTEM-level privileges on a vulnerable system...

May 14, 2024
CVE-2024-27392
7.8

A double-free vulnerability in the Linux kernel's NVMe driver allows attackers to potentially crash the system or execute arbitrary code. This affects...

May 1, 2024
CVE-2024-26930
7.8

This CVE describes a double-free vulnerability in the Linux kernel's QLogic Fibre Channel driver (qla2xxx). A double-free of the ha->vp_map pointer co...

May 1, 2024
CVE-2024-26932
7.8

This CVE describes a double-free memory corruption vulnerability in the Linux kernel's USB Type-C Power Delivery (PD) subsystem. The flaw occurs when ...

May 1, 2024
CVE-2022-48649
7.8

A double-free vulnerability in the Linux kernel's memory management subsystem allows attackers to cause a use-after-free condition when destroying kme...

Apr 28, 2024
CVE-2024-26748
7.8

A double-free memory corruption vulnerability in the Linux kernel's cdns3 USB gadget driver allows attackers to potentially crash the system or execut...

Apr 3, 2024

About CWE-415 (CWE-415)

Our database tracks 240 CVEs classified as CWE-415, with 25 rated critical and 191 rated high severity. The average CVSS score for CWE-415 vulnerabilities is 7.8.

External reference: View CWE-415 on MITRE CWE →

Monitor CWE-415 Vulnerabilities

Get alerted when new CWE-415 CVEs affect your infrastructure.

Start Monitoring Free