In the Linux kernel, the following vulnerability has been resolved: io_uring/eventfd: ensure io_eventfd_signal() defers
Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger use-after-free kern
Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger use-after-free kern
Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger use-after-free kern
In the Linux kernel, the following vulnerability has been resolved: zram: fix potential UAF of zram table If zram_meta
Use After Free vulnerability in Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver al
Memory corruption while handling IOCTL call from user-space to set latency level.
Memory corruption may occour occur when stopping the WLAN interface after processing a WMI command from the interface.
In the Linux kernel, the following vulnerability has been resolved: mm: zswap: properly synchronize freeing resources d
Illustrator versions 29.1, 28.7.3 and earlier are affected by a Use After Free vulnerability that could result in arbitr
Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability
Microsoft Excel Remote Code Execution Vulnerability
Microsoft Excel Remote Code Execution Vulnerability
Microsoft Office Remote Code Execution Vulnerability
Microsoft Excel Remote Code Execution Vulnerability
Microsoft Office Remote Code Execution Vulnerability
In the Linux kernel, the following vulnerability has been resolved: hrtimers: Handle CPU state correctly on hotplug Co
In the Linux kernel, the following vulnerability has been resolved: net: sched: Disallow replacing of child qdisc from
In the Linux kernel, the following vulnerability has been resolved: netem: Update sch->q.qlen before qdisc_tree_reduce_
libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a use-after-free in xmlSchemaIDCFillNodeTables and xmlSchemaBubbleID
In the Linux kernel, the following vulnerability has been resolved: IORING_OP_READ did not correctly consume the provid
A use-after-free flaw was found in X.Org and Xwayland. The root cursor is referenced in the X server as a global variabl
A use-after-free flaw was found in X.Org and Xwayland. When a device is removed while still frozen, the events queued fo
A use-after-free flaw was found in X.Org and Xwayland. When changing an alarm, the values of the change mask are evaluat
In the Linux kernel, the following vulnerability has been resolved: ubi: Fix race condition between ctrl_cdev_ioctl and
In the Linux kernel, the following vulnerability has been resolved: KVM: x86/mmu: Zap _all_ roots when unmapping gfn ra
In the Linux kernel, the following vulnerability has been resolved: Revert "Revert "block, bfq: honor already-setup que
In the Linux kernel, the following vulnerability has been resolved: media: davinci: vpif: fix use-after-free on driver
In the Linux kernel, the following vulnerability has been resolved: jffs2: fix use-after-free in jffs2_clear_xattr_subs
In the Linux kernel, the following vulnerability has been resolved: ep93xx: clock: Fix UAF in ep93xx_clk_register_gate(
In the Linux kernel, the following vulnerability has been resolved: scsi: target: tcmu: Fix possible page UAF tcmu_try
In the Linux kernel, the following vulnerability has been resolved: nfc: nci: add flush_workqueue to prevent uaf Our d
In the Linux kernel, the following vulnerability has been resolved: ice: arfs: fix use-after-free when freeing @rx_cpu_
In the Linux kernel, the following vulnerability has been resolved: RDMA/hfi1: Fix use-after-free bug for mm struct Un
In the Linux kernel, the following vulnerability has been resolved: lz4: fix LZ4_decompress_safe_partial read out of bo
In the Linux kernel, the following vulnerability has been resolved: scsi: mpt3sas: Fix use after free in _scsih_expande
In the Linux kernel, the following vulnerability has been resolved: drbd: Fix five use after free bugs in get_initial_s
In the Linux kernel, the following vulnerability has been resolved: rxrpc: fix a race in rxrpc_exit_net() Current code
In the Linux kernel, the following vulnerability has been resolved: mt76: mt7921: fix crash when startup fails. If the
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sync: Fix queuing commands when HCI_
In the Linux kernel, the following vulnerability has been resolved: btrfs: do not clean up repair bio if submit fails
In the Linux kernel, the following vulnerability has been resolved: bfq: fix use-after-free in bfq_dispatch_request KA
In the Linux kernel, the following vulnerability has been resolved: block, bfq: don't move oom_bfqq Our test report a
In the Linux kernel, the following vulnerability has been resolved: net: hns3: add vlan list lock to protect vlan list
In the Linux kernel, the following vulnerability has been resolved: powerpc/pseries: Fix use after free in remove_phb_d
In the Linux kernel, the following vulnerability has been resolved: cxl/port: Hold port reference until decoder release
In the Linux kernel, the following vulnerability has been resolved: bpf: Fix UAF due to race between btf_try_get_module
In the Linux kernel, the following vulnerability has been resolved: crypto: ccree - Fix use after free in cc_cipher_exi
In the Linux kernel, the following vulnerability has been resolved: dm: fix use-after-free in dm_cleanup_zoned_dev() d
In the Linux kernel, the following vulnerability has been resolved: can: m_can: m_can_tx_handler(): fix use after free
Frequently Asked Questions
What is CWE-416?
CWE-416 (Use After Free) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-416?
There are 9,940 CVE records associated with CWE-416 in our database. Of these, 834 are critical severity, 5751 are high severity, and 1124 are medium severity.
How can I protect against CWE-416 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-416 using AI-powered security agents.
Detect CWE-416 Vulnerabilities
CyberStrike's AI agents automatically detect use after free vulnerabilities across your infrastructure.
Get Started