In BinderDiedCallback of MediaCodec.cpp, there is a possible memory corruption due to a use after free. This could lead
In various functions of DrmPlugin.cpp, there is a possible use after free due to a race condition. This could lead to lo
In various functions of CryptoPlugin.cpp, there is a possible use after free due to a race condition. This could lead to
In several functions of MemoryFileSystem.cpp and related files, there is a possible use after free due to a race conditi
In wrapUserThread of AudioStream.cpp, there is a possible use after free due to a race condition. This could lead to loc
A use-after-free vulnerability when parsing a specially crafted file in Esri ArcGIS Server 10.8.1 (and earlier) allows a
Use after free in camera If the threadmanager is being cleaned up while the worker thread is processing objects in Snapd
drivers/usb/host/max3421-hcd.c in the Linux kernel before 5.13.6 allows physically proximate attackers to cause a denial
Use after free in Page Info UI in Google Chrome prior to 92.0.4515.131 allowed a remote attacker to potentially exploit
Use after free in Browser UI in Google Chrome on Chrome prior to 92.0.4515.131 allowed a remote attacker to potentially
In SecondStageMain of init.cpp, there is a possible use after free due to incorrect shared_ptr usage. This could lead to
In tun_get_user of tun.c, there is possible memory corruption due to a use after free. This could lead to local escalati
Use after free issue in HIDL while using callback to post event in Rx thread when internal mutex is not acquired and mea
In display driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of
In display driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of
Use after free issue in audio modules while removing and freeing objects during list iteration due to incorrect usage of
A use-after-free vulnerability was found in the am53c974 SCSI host bus adapter emulation of QEMU in versions before 6.0.
There is a flaw reported in the Linux kernel in versions before 5.9 in drivers/gpu/drm/nouveau/nouveau_sgdma.c in nouvea
A flaw null pointer dereference in the Nitro Enclaves kernel driver was found in the way that Enclaves VMs forces closur
In wpas_ctrl_msg_queue_timeout of ctrl_iface_unix.c, there is a possible memory corruption due to a use after free. This
In drm_syncobj_handle_to_fd of drm_syncobj.c, there is a possible use after free due to incorrect refcounting. This coul
Possible use-after-free due to lack of validation for the rule count in filter table in IPA driver in Snapdragon Auto, S
In ip6_xmit of ip6_output.c, there is a possible out of bounds write due to a use after free. This could lead to local e
In bpf_skb_change_head of filter.c, there is a possible out of bounds read due to a use after free. This could lead to l
Possible race condition can occur due to lack of synchronization mechanism when On-Device Logging node open twice concur
Possible use after free due improper validation of reference from call back to internal store table in Snapdragon Auto,
Possible use after free due to improper memory validation when initializing new interface via Interface add command in S
In mdlactl driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of
In edma driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of pr
In ccu, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege
In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privile
In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privile
In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privile
In periodic_io_work_func of lwis_periodic_io.c, there is a possible out of bounds write due to a use after free. This co
In __configfs_open_file of file.c, there is a possible use-after-free due to improper locking. This could lead to local
In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privile
In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privile
In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privile
TensorFlow is an end-to-end open source platform for machine learning. In affected versions when running shape functions
In process of C2SoftHevcDec.cpp, there is a possible out of bounds write due to a use after free. This could lead to rem
Through routine static code analysis of the Juniper Networks Junos OS software codebase, the Secure Development Life Cyc
An issue was discovered in JerryScript 2.4.0. There is a heap-use-after-free in ecma_is_lexical_environment in the ecma-
An issue was discovered in JerryScript 2.4.0. There is a heap-use-after-free in ecma_bytecode_ref in ecma-helpers.c file
libarchive 3.4.1 through 3.5.1 has a use-after-free in copy_string (called from do_uncompress_block and process_block).
Live555 through 1.08 does not handle MPEG-1 or 2 files properly. Sending two successive RTSP SETUP commands for the same
Live555 through 1.08 does not handle Matroska and Ogg files properly. Sending two successive RTSP SETUP commands for the
A heap-use-after-free in the mpeg_mux_write_packet function in libavformat/mpegenc.c of FFmpeg 4.2 allows to cause a den
Tremor is an event processing system for unstructured data. A vulnerability exists between versions 0.7.2 and 0.11.6. Th
There is a use-after-free (UAF) vulnerability in Huawei products. An attacker may craft specific packets to exploit this
In WebKitGTK before 2.32.4, there is a use-after-free in WebCore::ContainerNode::firstChild, a different vulnerability t
Frequently Asked Questions
What is CWE-416?
CWE-416 (Use After Free) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-416?
There are 9,940 CVE records associated with CWE-416 in our database. Of these, 834 are critical severity, 5751 are high severity, and 1124 are medium severity.
How can I protect against CWE-416 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-416 using AI-powered security agents.
Detect CWE-416 Vulnerabilities
CyberStrike's AI agents automatically detect use after free vulnerabilities across your infrastructure.
Get Started