CWE-416: Use After Free
Referencing memory after it has been freed can cause a program to crash, use unexpected values, or execute code.
Yearly Trend
Top Affected Vendors
All Use After Free CVEs (2,315)
This CVE describes a use-after-free vulnerability in the Linux kernel's NFS server component (nfsd). An attacker could potentially exploit this to cau...
Sep 13, 2024A use-after-free vulnerability in the Linux kernel's DWC3 USB driver for STMicroelectronics platforms could allow local attackers to crash the system ...
Sep 13, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's Xe graphics driver. It allows attackers to potentially crash the system or exe...
Sep 13, 2024This vulnerability in Microsoft Excel allows an attacker to gain elevated privileges by exploiting a use-after-free memory issue (CWE-416). Attackers ...
Sep 10, 2024This vulnerability in Microsoft Office Visio allows attackers to execute arbitrary code on affected systems by tricking users into opening specially c...
Sep 10, 2024This CVE describes an elevation of privilege vulnerability in the Windows Win32 Kernel Subsystem. An attacker who successfully exploits this vulnerabi...
Sep 10, 2024A use-after-free vulnerability in the Linux kernel's MediaTek Wireless Ethernet Driver (mtk_wed) allows local attackers to cause kernel panic and syst...
Sep 4, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's MPTCP subsystem. Attackers could potentially exploit this to cause kernel cras...
Sep 4, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's IPv6 packet transmission function (ip6_xmit()). If skb_expand_head() fails and...
Sep 4, 2024This is a use-after-free vulnerability in the Linux kernel's IPv6 implementation that allows local attackers to potentially crash the system or execut...
Sep 4, 2024This vulnerability allows attackers to cause memory corruption through a specific IOCTL call for group information retrieval. Successful exploitation ...
Sep 2, 2024This is a use-after-free vulnerability in the Linux kernel's idpf driver that occurs during queue destruction. It allows attackers to potentially exec...
Aug 26, 2024A use-after-free vulnerability in the Linux kernel's bridge multicast implementation allows an attacker to potentially crash the system or execute arb...
Aug 26, 2024A use-after-free vulnerability in the Linux kernel's xc2028 media driver allows attackers to potentially execute arbitrary code or cause system crashe...
Aug 26, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's memory management subsystem. An attacker could exploit this to cause a kernel ...
Aug 26, 2024This is a use-after-free vulnerability in the Linux kernel's netfilter subsystem that allows local attackers to potentially escalate privileges or cau...
Aug 22, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's FastRPC driver. An attacker could exploit this to cause memory corruption, pot...
Aug 21, 2024A use-after-free vulnerability in the Linux kernel's Bluetooth subsystem allows local attackers to cause system crashes or potentially execute arbitra...
Aug 21, 2024This is a use-after-free vulnerability in the Linux kernel's DMA engine driver for Intel Data Streaming Accelerator (DSA) devices. It allows local att...
Aug 21, 2024This CVE describes a use-after-free vulnerability in Android's RadioExt component that allows local privilege escalation without user interaction. Att...
Aug 19, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's LED trigger subsystem. The vulnerability occurs when sysfs attributes are unre...
Aug 17, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's Venus video decoder driver. Attackers could potentially exploit this to crash ...
Aug 17, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's IUCV (Inter-User Communication Vehicle) networking subsystem. The flaw occurs ...
Aug 17, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's mISDN subsystem, specifically in the hfcmulti_tx() function. Attackers could p...
Aug 17, 2024CVE-2024-41831 is a use-after-free vulnerability in Adobe Acrobat Reader that could allow attackers to execute arbitrary code when a user opens a mali...
Aug 14, 2024CVE-2024-39388 is a use-after-free vulnerability in Adobe Substance3D Stager that could allow arbitrary code execution when a user opens a malicious f...
Aug 14, 2024CVE-2024-39383 is a use-after-free vulnerability in Adobe Acrobat Reader that could allow arbitrary code execution when a user opens a malicious PDF f...
Aug 14, 2024This CVE describes a Use After Free vulnerability in Adobe Photoshop Desktop that could allow arbitrary code execution when a user opens a malicious f...
Aug 14, 2024Adobe Dimension versions 3.4.11 and earlier contain a use-after-free vulnerability that could allow attackers to execute arbitrary code when a user op...
Aug 14, 2024This vulnerability in Windows Power Dependency Coordinator allows attackers to gain SYSTEM-level privileges by exploiting a use-after-free condition. ...
Aug 13, 2024A Use After Free vulnerability in Arm Mali GPU kernel drivers allows a local non-privileged user to perform improper GPU memory operations, potentiall...
Aug 5, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's txgbe network driver. When using MSI/INTx interrupts, the driver frees interru...
Jul 30, 2024A use-after-free vulnerability in the Linux kernel's nilfs2 filesystem allows attackers with local access to trigger kernel crashes or potentially exe...
Jul 30, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's i915 graphics driver. It allows local attackers to potentially crash the syste...
Jul 29, 2024This is a use-after-free vulnerability in the Linux kernel's PCI/MSI subsystem that allows local attackers to potentially crash the system or execute ...
Jul 29, 2024This CVE-2024-41069 is a use-after-free vulnerability in the Linux kernel's ASoC (Audio System on Chip) topology subsystem. It allows attackers to pot...
Jul 29, 2024This is a use-after-free vulnerability in the Linux kernel's gdm724x staging driver. An attacker could exploit this to cause a kernel crash (denial of...
Jul 16, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's arc_emac network driver. When the arc_mdio_probe() function fails during MDIO ...
Jul 16, 2024A use-after-free vulnerability in the Linux kernel's USB Function Filesystem (FFS) driver allows local attackers to potentially escalate privileges or...
Jul 16, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's IOMMU subsystem. When a device probe fails and frees memory, a parallel deferr...
Jul 16, 2024A use-after-free vulnerability in the Linux kernel's IIO (Industrial I/O) subsystem allows local attackers to potentially escalate privileges or crash...
Jul 16, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's MCTP (Management Component Transport Protocol) subsystem. When mctp_key_add() ...
Jul 16, 2024This CVE describes a use-after-free vulnerability in the iwlwifi driver in the Linux kernel. When firmware loading fails completely, the driver incorr...
Jul 16, 2024This is a use-after-free vulnerability in the Linux kernel's NVMe over TCP subsystem. It allows attackers with local access to potentially crash the s...
Jul 16, 2024A use-after-free vulnerability in the Linux kernel's pm8001 SCSI driver allows attackers to potentially crash the kernel or execute arbitrary code whe...
Jul 16, 2024This is a use-after-free vulnerability in the Linux kernel's SUNRPC subsystem that can lead to kernel crashes or potential code execution. It affects ...
Jul 14, 2024This CVE is a use-after-free vulnerability in the Linux kernel's KVM (Kernel-based Virtual Machine) subsystem for ARM64 architectures. When tearing do...
Jul 12, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's networking subsystem where socket creation failure leaves a dangling pointer. ...
Jul 12, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's dmaengine idxd driver. It allows an attacker to potentially execute arbitrary ...
Jul 12, 2024This is a use-after-free vulnerability in the Linux kernel's network namespace handling. It allows local attackers to trigger a kernel panic (denial o...
Jul 12, 2024About Use After Free (CWE-416)
Referencing memory after it has been freed can cause a program to crash, use unexpected values, or execute code.
Our database tracks 2,315 CVEs classified as CWE-416, with 188 rated critical and 1,972 rated high severity. The average CVSS score for Use After Free vulnerabilities is 8.0.
External reference: View CWE-416 on MITRE CWE →
Monitor Use After Free Vulnerabilities
Get alerted when new Use After Free CVEs affect your infrastructure.
Start Monitoring Free