A flaw was found in the key export functionality of libssh. The issue occurs in the internal function responsible for co
A flaw was found in GnuTLS. A double-free vulnerability exists in GnuTLS due to incorrect ownership handling in the expo
In the Linux kernel, the following vulnerability has been resolved: octeon_ep: Fix host hang issue during device reboot
In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Fix double invocation of bnxt_ulp_stop()/b
In the Linux kernel, the following vulnerability has been resolved: tracing: Silence warning when chunk allocation fail
A double free issue was addressed with improved memory management. This issue is fixed in iOS 18.6 and iPadOS 18.6, iPad
A double free issue was addressed with improved memory management. This issue is fixed in iOS 18.5 and iPadOS 18.5, iPad
A vulnerability, which was classified as critical, has been found in libav up to 12.3. Affected by this issue is the fun
A double free vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-9 and 6.9.
A vulnerability has been found in HDF5 up to 1.14.6 and classified as problematic. This vulnerability affects the functi
A security vulnerability has been detected in jarun nnn up to 5.1. The impacted element is the function show_content_in_
A double free vulnerability has been identified in the ASUS System Analysis service. This vulnerability can be triggered
The regcomp function in the GNU C library version from 2.4 to 2.41 is subject to a double free if some previous allocat
A double-free vulnerability exists in the BrainVision Header Parsing functionality of The Biosig Project libbiosig Maste
A double-free vulnerability exists in the BrainVision ASCII Header Parsing functionality of The Biosig Project libbiosig
The uAMQP is a C library for AMQP 1.0 communication to Azure Cloud Services. When processing an incorrect `AMQP_VALUE` f
In the Linux kernel, the following vulnerability has been resolved: mptcp: fix double-free on socket dismantle when MP
In the Linux kernel, the following vulnerability has been resolved: nvme: avoid double free special payload If a disca
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double put of @cfile in smb2_renam
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix possible double free in smb2_set_e
In OpenBSD 7.5 before errata 008 and OpenBSD 7.4 before errata 021, avoid possible mbuf double free in NFS client and s
In the Linux kernel, the following vulnerability has been resolved: net: vertexcom: mse102x: Fix possible double free o
A double-free issue could have occurred in `sec_pkcs7_decoder_start_decrypt()` when handling an error path. Under specif
FFmpeg n7.0 is affected by a Double Free via the rkmpp_retrieve_frame function within libavcodec/rkmppdec.c.
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btusb: mediatek: Fix double free of skb
Microsoft Speech Application Programming Interface (SAPI) Remote Code Execution Vulnerability
Windows MultiPoint Services Remote Code Execution Vulnerability
SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability
In the Linux kernel, the following vulnerability has been resolved: net: ethernet: lantiq_etop: fix double free in deta
In the Linux kernel, the following vulnerability has been resolved: cifs: fix double free race when mount fails in cifs
SQL Server Native Client Remote Code Execution Vulnerability
A double-free vulnerability exists in the IP header loopback parsing functionality of Weston Embedded uC-TCP-IP v3.06.01
Multiple vulnerabilities in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gate
Picotls is a TLS protocol library that allows users select different crypto backends based on their use case. When parsi
In the Linux kernel, the following vulnerability has been resolved: misc: microchip: pci1xxxx: fix double free in the e
Memory corruption while performing finish HMAC operation when context is freed by keymaster.
in OpenHarmony v4.1.0 and prior versions allow a local attacker cause the common permission is upgraded to root and sens
In the Linux kernel, the following vulnerability has been resolved: 9p/xen: fix release of IRQ Kernel logs indicate an
A double free vulnerability was found in QEMU virtio devices (virtio-gpu, virtio-serial-bus, virtio-crypto), where the m
In the Linux kernel, the following vulnerability has been resolved: nvmet-auth: assign dh_key to NULL after kfree_sensi
Windows SMBv3 Server Remote Code Execution Vulnerability
In the Linux kernel, the following vulnerability has been resolved: uio: Fix use-after-free in uio_open core-1 core
In the Linux kernel, the following vulnerability has been resolved: dm rq: fix double free of blk_mq_tag_set in dev rem
In the Linux kernel, the following vulnerability has been resolved: media: atomisp: Fix use after free in atomisp_alloc
In the Linux kernel, the following vulnerability has been resolved: tun: avoid double free in tun_free_netdev Avoid do
In the Linux kernel, the following vulnerability has been resolved: io_uring: fix ltout double free on completion race
In the Linux kernel, the following vulnerability has been resolved: usb: misc: ljca: Fix double free in error handling
In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: fix double-free bug The storage for
In the Linux kernel, the following vulnerability has been resolved: ext4: fix double-free of blocks due to wrong extent
Frequently Asked Questions
What is CWE-415?
CWE-415 (CWE-415) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-415?
There are 982 CVE records associated with CWE-415 in our database. Of these, 103 are critical severity, 519 are high severity, and 168 are medium severity.
How can I protect against CWE-415 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-415 using AI-powered security agents.
Detect CWE-415 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-415 vulnerabilities across your infrastructure.
Get Started