CWE-416: Use After Free
Referencing memory after it has been freed can cause a program to crash, use unexpected values, or execute code.
Yearly Trend
Top Affected Vendors
All Use After Free CVEs (2,387)
A use-after-free vulnerability in the Linux kernel's Cadence I3C master driver allows local attackers to potentially crash the system or execute arbit...
Oct 21, 2024This Linux kernel vulnerability allows local attackers to trigger a use-after-free condition in the memory controller subsystem by manipulating file d...
Oct 21, 2024A use-after-free vulnerability in the Linux kernel's JFS filesystem allows race conditions between dbUnmount and jfs_ioc_trim operations, potentially ...
Oct 21, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's ether3 network driver caused by a race condition during device removal. An att...
Oct 21, 2024This vulnerability allows attackers to gain elevated privileges on Windows systems by exploiting a use-after-free bug in the kernel-mode driver. It af...
Oct 8, 2024This is a use-after-free vulnerability in the Linux kernel's MPTCP subsystem that occurs due to a race condition in timer deletion. It allows attacker...
Sep 27, 2024CVE-2024-23716 is a use-after-free vulnerability in Android's kernel memory management that allows local attackers to escalate privileges without user...
Sep 11, 2024This Windows Storage Elevation of Privilege vulnerability allows an authenticated attacker to gain SYSTEM-level privileges by exploiting a use-after-f...
Sep 10, 2024This vulnerability allows an authenticated attacker to exploit the Windows Resource Manager PSM Service Extension to gain SYSTEM-level privileges on a...
Aug 13, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's rtl8712 Wi-Fi driver. An attacker could potentially execute arbitrary code or ...
May 22, 2024This is a use-after-free vulnerability in the Linux kernel's i915 graphics driver that occurs when destroying virtual memory areas (VMAs) while they'r...
May 1, 2024A use-after-free vulnerability in the Linux kernel's RDMA/srpt subsystem allows attackers to potentially crash the kernel or execute arbitrary code. T...
Apr 17, 2024This vulnerability allows an authenticated attacker to execute arbitrary code with elevated privileges on Windows systems running the Telephony Server...
Mar 12, 2024This CVE describes a use-after-free vulnerability in multiple Arm Mali GPU kernel drivers that allows a local non-privileged user to exploit a race co...
Mar 4, 2024A race condition vulnerability in the AMD TEE (Trusted Execution Environment) driver in the Linux kernel allows use-after-free exploitation. This coul...
Mar 2, 2024This vulnerability in the Linux kernel's Bluetooth subsystem allows a local attacker to trigger a use-after-free condition through a race condition in...
Feb 29, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's DRM (Direct Rendering Manager) atomic commit subsystem. It occurs during a rac...
Jan 23, 2024This CVE describes a use-after-free vulnerability in the Linux kernel's AppleTalk protocol implementation. Attackers can exploit a race condition in a...
Jan 11, 2024A race condition vulnerability in the JFS filesystem of the Linux kernel allows local attackers with standard user privileges to cause a system crash ...
Nov 1, 2023A use-after-free vulnerability in xorg-x11-server-Xvfb allows privilege escalation or denial of service when exploiting a specific legacy multi-screen...
Oct 25, 2023This is a Win32k elevation of privilege vulnerability in Windows that allows an authenticated attacker to gain SYSTEM-level privileges on a compromise...
Oct 10, 2023This CVE describes a use-after-free vulnerability in FreeRDP's processing of RDPGFX_CMDID_RESETGRAPHICS packets. When context->maxPlaneSize is 0, the ...
Aug 31, 2023This vulnerability in the Windows Cloud Files Mini Filter Driver allows an attacker to gain SYSTEM-level privileges on affected Windows systems. It af...
Jun 14, 2023CVE-2023-24914 is a Win32k elevation of privilege vulnerability in Windows kernel components that allows authenticated attackers to gain SYSTEM-level ...
Apr 11, 2023A use-after-free vulnerability in the Linux kernel's Bluetooth subsystem allows local attackers to potentially execute arbitrary code or cause denial ...
Apr 11, 2023A use-after-free vulnerability in the Linux kernel's NFC Marvell driver allows attackers to potentially execute arbitrary code or cause denial of serv...
May 18, 2022A use-after-free vulnerability in the Linux kernel's sound subsystem allows local attackers to trigger race conditions in ALSA PCM ioctl operations. T...
Apr 29, 2022A race condition vulnerability in the Linux kernel's Unix domain socket garbage collection allows local users to trigger a read-after-free memory flaw...
Jan 18, 2022This CVE describes a use-after-free vulnerability in Qualcomm Snapdragon chipsets affecting multiple device categories. A race condition between ioctl...
Mar 17, 2021CVE-2020-13630 is a use-after-free vulnerability in SQLite's FTS3 extension that can lead to memory corruption and potential code execution. It affect...
May 27, 2020This CVE describes a use-after-free vulnerability in Espressif ESP-IDF USB Host HID Driver. Attackers can trigger memory corruption by sending oversiz...
Jan 12, 2026This CVE describes a use-after-free vulnerability in the Linux kernel's Asus keyboard backlight driver. When a malicious USB device posing as an Asus ...
Mar 27, 2023This CVE describes a use-after-free vulnerability in the imgsys component that allows local privilege escalation. An attacker who already has System p...
Feb 2, 2026This CVE describes a use-after-free vulnerability in Samsung's DualDAR (Dual Data-at-Rest) encryption feature that allows local privileged attackers t...
Jan 9, 2026This CVE describes a use-after-free vulnerability (CWE-416) in Qualcomm sensor drivers that occurs during sensor register read operations. Attackers c...
Jan 7, 2026This CVE describes a use-after-free vulnerability (CWE-416) in Qualcomm synchronization objects that can lead to memory corruption during concurrent o...
Jan 7, 2026This CVE describes a use-after-free memory corruption vulnerability in geniezone that could allow local privilege escalation. Attackers who already ha...
Jan 6, 2026This CVE describes a use-after-free memory corruption vulnerability in dpe (likely a MediaTek component). An attacker with System privilege could expl...
Jan 6, 2026This CVE describes a use-after-free vulnerability in dpe (likely a MediaTek component) that could lead to memory corruption. An attacker with System p...
Jan 6, 2026This CVE describes a use-after-free vulnerability in the dpe component that could lead to memory corruption. An attacker with System privilege could e...
Jan 6, 2026This CVE describes a use-after-free memory corruption vulnerability in display components that could allow local privilege escalation. Attackers who a...
Jan 6, 2026This CVE describes a use-after-free memory corruption vulnerability in display components that could allow local privilege escalation. Attackers who a...
Jan 6, 2026This CVE describes a use-after-free memory corruption vulnerability in display components that could allow local privilege escalation. Attackers who a...
Jan 6, 2026This CVE describes a use-after-free vulnerability in the bigo_map function of bigo_iommu.c in the Android kernel. It allows local attackers to disclos...
Dec 11, 2025A use-after-free vulnerability in Foxit PDF and Editor for Windows allows memory corruption when opening a malicious PDF containing JavaScript that ca...
Dec 11, 2025A use-after-free vulnerability in Foxit PDF and Editor allows memory corruption or crashes when processing malicious PDF files containing specific Jav...
Dec 11, 2025A race condition vulnerability in the audio module could allow attackers to cause denial of service by exploiting timing issues in audio processing. T...
Dec 8, 2025This CVE describes a use-after-free memory corruption vulnerability in geniezone that could allow local privilege escalation. Attackers who already ha...
Sep 1, 2025This vulnerability allows attackers to cause memory corruption by making specific IOCTL calls to unmap DMA buffers in Qualcomm components. It affects ...
Jan 6, 2025This CVE describes a use-after-free vulnerability in the Linux kernel's af_packet.c module. It allows local attackers to escalate privileges to kernel...
Dec 5, 2024About Use After Free (CWE-416)
Referencing memory after it has been freed can cause a program to crash, use unexpected values, or execute code.
Our database tracks 2,387 CVEs classified as CWE-416, with 211 rated critical and 2,019 rated high severity. The average CVSS score for Use After Free vulnerabilities is 8.0.
External reference: View CWE-416 on MITRE CWE →
Monitor Use After Free Vulnerabilities
Get alerted when new Use After Free CVEs affect your infrastructure.
Start Monitoring Free