Double free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.
In the Linux kernel, the following vulnerability has been resolved: bus: fsl-mc: fix double-free on mc_dev The blamed
In the Linux kernel, the following vulnerability has been resolved: fs/nfs/read: fix double-unlock bug in nfs_return_em
In the Linux kernel, the following vulnerability has been resolved: eth: fbnic: avoid double free when failing to DMA-m
In the Linux kernel, the following vulnerability has been resolved: platform/x86/amd: pmf: Use device managed allocatio
In the Linux kernel, the following vulnerability has been resolved: ASoC: codecs: wcd9375: Fix double free of regulator
In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: Fix double destruction of rsv_qp rsv_qp
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: fix double free in 'hci_discov
In the Linux kernel, the following vulnerability has been resolved: i2c: core: Fix double-free of fwnode in i2c_unregis
In the Linux kernel, the following vulnerability has been resolved: scsi: bfa: Double-free fix When the bfad_im_probe(
In the Linux kernel, the following vulnerability has been resolved: drm/xe: Fix vm_bind_ioctl double free bug If the a
In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: fix double free on tx path. We
In the Linux kernel, the following vulnerability has been resolved: igb: Fix igb_down hung on surprise removal In a se
In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Fix double release compute pasid If kf
In the Linux kernel, the following vulnerability has been resolved: net: fec: Better handle pm_runtime_get() failing in
Within tcpreplay's tcprewrite, a double free vulnerability has been identified in the dlt_linuxsll2_cleanup() function i
In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Fix double free in idxd_setup_wqs(
Memory corruption due to double free when multiple threads race to set the timestamp store.
In the Linux kernel, the following vulnerability has been resolved: scsi: ufs: core: Fix handling of lrbp->cmd ufshcd_
In the Linux kernel, the following vulnerability has been resolved: xhci: Remove device endpoints from bandwidth list w
In the Linux kernel, the following vulnerability has been resolved: media: dvb-core: Fix double free in dvb_register_de
In the Linux kernel, the following vulnerability has been resolved: drivers: base: Free devm resources when unregisteri
In the Linux kernel, the following vulnerability has been resolved: jfs: fix invalid free of JFS_IP(ipimap)->i_imap in
In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: Fix repeated calls to sock_put() when
In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix mr->map double free rxe_mr_cleanup()
In the Linux kernel, the following vulnerability has been resolved: ext4: fix possible double unlock when moving a dire
Double free in Windows Smart Card allows an authorized attacker to elevate privileges locally.
In aocc_read of aoc_channel_dev.c, there is a possible double free due to improper locking. This could lead to local esc
This is a similar, but different vulnerability than the issue reported as CVE-2024-39549. A double-free vulnerability i
A double-free could have occurred in `vpx_codec_enc_init_multi` after a failed allocation when initializing the encoder
NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where multiple requests could cause a doub
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB allows an una
The Sante PACS Server allows a remote attacker to crash the main thread by sending a crafted HL7 message, causing a deni
When using a multi-bladed platform with more than one blade, undisclosed traffic can cause the Traffic Management Microk
Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability
Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability
Concurrent execution using shared resource with improper synchronization ('race condition') in Capability Access Managem
Use after free in Windows Digital Media allows an authorized attacker to elevate privileges locally.
In the Linux kernel, the following vulnerability has been resolved: scsi: zfcp: Fix double free of FSF request when qdi
Double free in Windows SSDP Service allows an authorized attacker to elevate privileges locally.
NVIDIA Display Driver for Linux contains a vulnerability where an attacker might be able to use a race condition to esca
Double free in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally.
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Kernel allows an
Double free in Microsoft Wireless Provisioning System allows an authorized attacker to elevate privileges locally.
Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Brokering File
A double free vulnerability [CWE-415] vulnerability in Fortinet FortiOS 7.4.0, FortiOS 7.2.0 through 7.2.5, FortiOS 7.0.
A double free issue was addressed with improved memory management. This issue is fixed in iPadOS 17.7.7, macOS Sequoia 1
In crossbeam-channel rust crate, the internal `Channel` type's `Drop` method has a race condition which could, in some c
An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400. A Double Free in the mobile pro
An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400. A Double Free in the mobile pro
Frequently Asked Questions
What is CWE-415?
CWE-415 (CWE-415) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-415?
There are 982 CVE records associated with CWE-415 in our database. Of these, 103 are critical severity, 519 are high severity, and 168 are medium severity.
How can I protect against CWE-415 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-415 using AI-powered security agents.
Detect CWE-415 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-415 vulnerabilities across your infrastructure.
Get Started