CWE-416: Use After Free
Referencing memory after it has been freed can cause a program to crash, use unexpected values, or execute code.
Yearly Trend
Top Affected Vendors
All Use After Free CVEs (2,320)
A use-after-free vulnerability in the Linux kernel's Bluetooth Microsoft extension (msft) allows local attackers to potentially crash the system or ex...
May 23, 2024A use-after-free vulnerability in the Linux kernel's SLUB memory allocator debugfs interface allows local attackers to potentially execute arbitrary c...
May 22, 2024A use-after-free vulnerability in the Linux kernel's padata subsystem allows local attackers to potentially crash the system or execute arbitrary code...
May 21, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's perf subsystem for HiSilicon uncore PMU (Performance Monitoring Unit) registra...
May 21, 2024This is a use-after-free vulnerability in the Linux kernel's NBD (Network Block Device) driver that allows local attackers to potentially crash the sy...
May 21, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's synaptics-rmi4 touchpad driver. When exploited, it could allow local attackers...
May 21, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's HSR/PRP network protocol implementation. An attacker could exploit this to cau...
May 21, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's ath12k WiFi driver. The vulnerability occurs due to improper locking when hand...
May 21, 2024This is a use-after-free vulnerability in the Linux kernel's AF_UNIX socket implementation that allows a local attacker to potentially crash the syste...
May 21, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's ath11k WiFi driver. The issue occurs when handling GTK (Group Temporal Key) of...
May 21, 2024This CVE describes a potential deadlock vulnerability in the Linux kernel's SMB client implementation. When releasing message IDs (mids) during SMB op...
May 21, 2024This is a use-after-free vulnerability in the Linux kernel's GFS2 filesystem quota handling. It allows attackers with local access to potentially cras...
May 21, 2024A use-after-free vulnerability in the Linux kernel's CIFS/SMB client implementation allows attackers to potentially execute arbitrary code or cause sy...
May 21, 2024This is a use-after-free vulnerability in the Linux kernel's SMB client implementation (cifs.ko). It allows attackers with access to a malicious SMB s...
May 21, 2024A use-after-free vulnerability in the Linux kernel's PSI (Pressure Stall Information) subsystem allows local attackers to potentially crash the system...
May 21, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's iSCSI subsystem. An attacker could potentially exploit this to cause kernel me...
May 21, 2024This is a use-after-free vulnerability in the Linux kernel's flower classifier (cls_flower) within the traffic control subsystem. It allows local atta...
May 21, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's greybus UART driver. It allows attackers to potentially execute arbitrary code...
May 21, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's mcb_alloc_bus() function. If exploited, it could allow local attackers to cras...
May 21, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's ibmasm driver module. When device initialization fails, the system attempts to...
May 21, 2024This is a use-after-free vulnerability in the Linux kernel's framebuffer subsystem (fbmem). It allows attackers with local access to potentially execu...
May 21, 2024This is a use-after-free vulnerability in the Linux kernel's KVM subsystem that allows a local attacker with access to the KVM ioctl interface to caus...
May 21, 2024A use-after-free vulnerability in the Linux kernel's arch_topology subsystem allows race conditions when clearing scale_freq_data structures. This cou...
May 21, 2024A use-after-free vulnerability in the Linux kernel watchdog driver occurs when the driver's remove function calls del_timer() without ensuring the tim...
May 21, 2024A use-after-free vulnerability in the Linux kernel's BPF subsystem allows attackers to access freed memory when running BPF programs. This can lead to...
May 21, 2024This is a use-after-free vulnerability in the Linux kernel's FDDI network driver that allows local attackers to potentially execute arbitrary code or ...
May 21, 2024This is a use-after-free vulnerability in the Linux kernel's EMAC network driver that allows attackers to potentially execute arbitrary code or cause ...
May 21, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's igb network driver. When the network controller is reset while igb_poll() is r...
May 21, 2024This is a use-after-free vulnerability in the Linux kernel's GFS2 filesystem implementation that could allow local attackers to cause denial of servic...
May 21, 2024A use-after-free vulnerability in the Linux kernel's mlx5e network driver allows attackers to cause kernel crashes or potentially execute arbitrary co...
May 21, 2024This is a use-after-free vulnerability in the Linux kernel's VC4 DRM driver that can cause kernel memory corruption and potential system crashes. It a...
May 19, 2024This CVE describes a use-after-free vulnerability in the MediaTek video codec driver for the Linux kernel. When HEVC decoder initialization fails, the...
May 19, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's SMB client implementation. Attackers could potentially exploit this to crash t...
May 19, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's SMB client implementation. An attacker could potentially exploit this to crash...
May 19, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's SMB client implementation. Attackers could potentially exploit this to crash t...
May 19, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's SMB client implementation. An attacker could potentially exploit this to crash...
May 19, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's WiFi subsystem (mac80211). When a station is moved out of a VLAN and the VLAN ...
May 17, 2024This is a use-after-free vulnerability in the Linux kernel's KVM SVM (Secure Virtual Machine) subsystem. It allows a malicious user with access to a K...
May 17, 2024Adobe Aero Desktop versions 23.4 and earlier contain a Use After Free vulnerability (CWE-416) that could allow arbitrary code execution when a user op...
May 16, 2024This CVE describes a Use After Free vulnerability in Adobe Illustrator that could allow arbitrary code execution when a user opens a malicious file. T...
May 16, 2024CVE-2024-34100 is a use-after-free vulnerability in Adobe Acrobat Reader that could allow attackers to execute arbitrary code when a user opens a mali...
May 15, 2024Adobe Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier contain a use-after-free vulnerability that could allow arbitrary code execution ...
May 15, 2024CVE-2024-34094 is a use-after-free vulnerability in Adobe Acrobat Reader that could allow arbitrary code execution when a user opens a malicious PDF f...
May 15, 2024This Windows kernel vulnerability allows attackers to gain elevated system privileges by exploiting a use-after-free condition in the Win32k subsystem...
May 14, 2024This vulnerability in the Windows Desktop Window Manager (DWM) Core Library allows an authenticated attacker to execute arbitrary code with SYSTEM pri...
May 14, 2024This vulnerability in the Windows CNG Key Isolation Service allows an authenticated attacker to gain SYSTEM-level privileges by exploiting a use-after...
May 14, 2024This is a use-after-free vulnerability in the Linux kernel's Bluetooth subsystem where a scheduled timeout worker thread can access a socket object af...
May 14, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's GTP (GPRS Tunneling Protocol) implementation. Attackers could potentially expl...
May 14, 2024This is a use-after-free vulnerability in Maxon Cinema 4D's SKP file parser that allows remote code execution. Attackers can exploit it by tricking us...
May 7, 2024This vulnerability allows remote attackers to execute arbitrary code on affected Bentley View installations by tricking users into opening malicious S...
May 7, 2024About Use After Free (CWE-416)
Referencing memory after it has been freed can cause a program to crash, use unexpected values, or execute code.
Our database tracks 2,320 CVEs classified as CWE-416, with 191 rated critical and 1,974 rated high severity. The average CVSS score for Use After Free vulnerabilities is 8.0.
External reference: View CWE-416 on MITRE CWE →
Monitor Use After Free Vulnerabilities
Get alerted when new Use After Free CVEs affect your infrastructure.
Start Monitoring Free