Memory corruption in audio due to use after free while managing buffers from internal cache in Snapdragon Compute, Snapd
Memory corruption in graphic driver due to use after free while calling multiple threads application to driver. in Snapd
Memory corruption in synx driver due to use-after-free condition in the synx driver due to accessing object handles with
Memory corruption in graphics due to use-after-free while graphics profiling in Snapdragon Connectivity, Snapdragon Mobi
Memory corruption due to use after free issue in kernel while processing ION handles in Snapdragon Auto, Snapdragon Comp
Memory corruption in graphics due to use-after-free in graphics dispatcher logic in Snapdragon Mobile
Memory corruption in multimedia due to use after free during callback registration failure in Snapdragon Mobile
Memory corruption in graphics due to use-after-free while importing graphics buffer in Snapdragon Auto, Snapdragon Compu
Element Desktop is a Matrix client for desktop platforms with Element Web at its core. Element Desktop before 1.9.7 is v
In PHP versions 7.4.x below 7.4.28, 8.0.x below 8.0.16, and 8.1.x below 8.1.3, when using filter functions with FILTER_V
User after free in mrb_vm_exec in GitHub repository mruby/mruby prior to 3.2.
A DMA reentrancy issue was found in the USB EHCI controller emulation of QEMU. EHCI does not verify if the Buffer Pointe
A DMA reentrancy issue was found in the NVM Express Controller (NVME) emulation in QEMU. This CVE is similar to CVE-2021
PJSIP is a free and open source multimedia communication library written in C language implementing standard based proto
Wasmtime is a standalone JIT-style runtime for WebAssembly, using Cranelift. There is a use after free vulnerability in
In ConnMan through 1.41, a man-in-the-middle attack against a WISPR HTTP query could be used to trigger a use-after-free
Jsonxx or Json++ is a JSON parser, writer and reader written in C++. In affected versions of jsonxx use of the Value cla
libexpat before 2.4.9 has a use-after-free in the doContent function in xmlparse.c.
There are use-after-free vulnerabilities in the Linux kernel's net/bluetooth/l2cap_core.c's l2cap_connect and l2cap_le_c
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7
In ipcSetDataReference of Parcel.cpp, there is a possible way to corrupt memory due to a use after free. This could lead
In fs/eventpoll.c, there is a possible use after free. This could lead to local escalation of privilege with no addition
In delete_protocol of main.c, there is a possible arbitrary code execution due to a use after free. This could lead to l
Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affe
Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affe
Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affe
Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affe
Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affe
Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affe
Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affe
NVIDIA Linux distributions contain a vulnerability in nvmap ioctl, which allows any user with a local account to exploit
Cesanta MJS v2.20.0 was discovered to contain a heap-use-after-free via mjs_apply at src/mjs_exec.c.
A CWE-416: Use After Free vulnerability exists that could cause arbitrary code execution when a malicious *.gd1 configur
kernel/ucount.c in the Linux kernel 5.14 through 5.16.4, when unprivileged user namespaces are enabled, allows a use-aft
Frequently Asked Questions
What is CWE-416?
CWE-416 (Use After Free) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-416?
There are 9,940 CVE records associated with CWE-416 in our database. Of these, 834 are critical severity, 5751 are high severity, and 1124 are medium severity.
How can I protect against CWE-416 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-416 using AI-powered security agents.
Detect CWE-416 Vulnerabilities
CyberStrike's AI agents automatically detect use after free vulnerabilities across your infrastructure.
Get Started