In the Linux kernel, the following vulnerability has been resolved: soc: ti: pruss: Fix double free in pruss_clk_mux_se
In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Fix RSS context delete logic We need to f
In the Linux kernel, the following vulnerability has been resolved: net: mana: Fix double destroy_workqueue on service
In the Linux kernel, the following vulnerability has been resolved: dm: clear cloned request bio pointer when last clon
In the Linux kernel, the following vulnerability has been resolved: cpufreq: governor: fix double free in cpufreq_dbs_g
In the Linux kernel, the following vulnerability has been resolved: spi: rockchip-sfc: Fix double-free in remove() call
Double free in Windows Message Queuing allows an authorized attacker to elevate privileges locally.
In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix double free in rxe_srq_from_init In
In the Linux kernel, the following vulnerability has been resolved: net: hns3: fix double free issue for tx spare buffe
In the Linux kernel, the following vulnerability has been resolved: ext4: fix dirtyclusters double decrement on fs shut
In the Linux kernel, the following vulnerability has been resolved: btrfs: fix double free in create_space_info() error
In the Linux kernel, the following vulnerability has been resolved: ice: fix double free in ice_sf_eth_activate() error
In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs-schemes: protect path kfree() with d
In the Linux kernel, the following vulnerability has been resolved: RDMA/vmw_pvrdma: Fix double free on pvrdma_alloc_uc
In the Linux kernel, the following vulnerability has been resolved: mm/alloc_tag: clear codetag for pages allocated bef
In the Linux kernel, the following vulnerability has been resolved: ice: fix double-free of tx_buf skb If ice_tso() or
In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: pci-ep-msi: Fix error unwind and pre
In the Linux kernel, the following vulnerability has been resolved: netdev: fix double-free in netdev_nl_bind_rx_doit()
In the Linux kernel, the following vulnerability has been resolved: idpf: fix double free and use-after-free in aux dev
In the Linux kernel, the following vulnerability has been resolved: mailbox: mailbox-test: don't free the reused channe
Double free in Microsoft Printer Drivers allows an authorized attacker to elevate privileges locally.
Double free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.
Double free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: fix double free in rvu_rep_rsrc_init(
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: net2280: Fix double free in probe erro
llama.cpp builds b1886 through b7445 contain a double free vulnerability in the LLaMA-Android JNI wrapper where new_1bat
A Double Free vulnerability in the flow processing daemon (flowd) of Juniper Networks Junos OS on SRX and MX Series allo
MuPDF versions 1.23.0 through 1.27.0 contain a double-free vulnerability in fz_fill_pixmap_from_display_list() when an e
GNU Binutils thru 2.46 readelf contains a double free vulnerability when processing a crafted ELF binary with malformed
When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a
FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.26.0, FreeRDP's RDPEAR NDR parser accepts on
The security fix for CVE-2025-0728 in eclipse-threadx NetX Duo refactors error handling in the HTTP server PUT process t
A double free issue has been identified in libarchive's RAR5 reader. During parsing of a specially crafted RAR5 archive,
Double free in Windows DHCP Server allows an authorized attacker to execute code over a network.
When initializing an RSA public key from DER or PEM bytes throws an error, the EVP_PKEY* is double-freed: first in the c
Redis before 8.8.0, in the unusual case where an authenticated attacker can execute RESTORE, allows remote code executio
A vulnerability in the zip archive parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condi
In strongSwan before 6.0.7, identity parsing/cloning is mishandled. Parsed EAP-Identities that result in an empty but no
Issue summary: QUIC server may double free QRX (QUIC record layer RX) object when channel creation fails for initial pac
FreeRDP before 3.28.0 (affected 3.x through 3.27.1) contains a double-free vulnerability in freerdp_client_rdp_file_appl
In seninf, there is a possible memory corruption due to a race condition. This could lead to local escalation of privile
Double free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.
Double free in Windows Shell allows an authorized attacker to elevate privileges locally.
Double free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.
Double free in Windows Link-Layer Discovery Protocol (LLDP) allows an authorized attacker to elevate privileges locally.
In the Linux kernel, the following vulnerability has been resolved: btrfs: fix double free in create_space_info_sub_gro
In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: avoid double free of pool->stack on A
Double free in Windows Network Connection Broker allows an authorized attacker to elevate privileges locally.
Double free in Windows Kerberos allows an authorized attacker to elevate privileges locally.
Double free in Windows Autopilot allows an authorized attacker to elevate privileges locally.
Frequently Asked Questions
What is CWE-415?
CWE-415 (CWE-415) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-415?
There are 982 CVE records associated with CWE-415 in our database. Of these, 103 are critical severity, 519 are high severity, and 168 are medium severity.
How can I protect against CWE-415 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-415 using AI-powered security agents.
Detect CWE-415 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-415 vulnerabilities across your infrastructure.
Get Started