In the Linux kernel, the following vulnerability has been resolved: thermal/debugfs: Prevent use-after-free from occurr
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: Fix use-after-free bug by not setting
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_core: Fix leaking sent_cmd skb sent
In the Linux kernel, the following vulnerability has been resolved: NFC: port100: fix use-after-free in port100_send_co
In the Linux kernel, the following vulnerability has been resolved: vdpa: fix use-after-free on vp_vdpa_remove When vp
In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_buffers: Fix memory corruptions on
Acrobat Reader versions 20.005.30636, 24.002.20964, 24.001.30123, 24.002.20991 and earlier are affected by a Use After F
Premiere Pro versions 24.5, 23.6.8 and earlier are affected by a Use After Free vulnerability that could lead to disclos
In the Linux kernel, the following vulnerability has been resolved: scsi: pm80xx: Set phy->enable_completion only when
In the Linux kernel, the following vulnerability has been resolved: net/ncsi: Disable the ncsi work before freeing the
In the Linux kernel, the following vulnerability has been resolved: net: microchip: vcap api: Fix memory leaks in vcap_
In the Linux kernel, the following vulnerability has been resolved: drm/xe: Don't free job in TDR Freeing job in TDR i
A use-after-free vulnerability was found in the cyttsp4_core driver in the Linux kernel. This issue occurs in the device
A use after free vulnerability exists in GPAC version 2.3-DEV-revrelease, specifically in the gf_filterpacket_del functi
PDF-XChange Editor U3D File Parsing Use-After-Free Information Disclosure Vulnerability. This vulnerability allows remot
PDF-XChange Editor U3D File Parsing Use-After-Free Information Disclosure Vulnerability. This vulnerability allows remot
Acrobat Reader DC version 22.001.20085 (and earlier), 20.005.3031x (and earlier) and 17.012.30205 (and earlier) are affe
In the Linux kernel, the following vulnerability has been resolved: iommu/s390: Implement blocking domain This fixes a
In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix use after free on unload System
It was discovered that when exec'ing from a non-leader thread, armed POSIX CPU timers would be left on a list but freed,
It was discovered that a nft object or expression could reference a nft set on a different nft table, leading to a use-a
It was discovered that the cls_route filter implementation in the Linux kernel would not remove an old filter from the h
io_uring UAF, Unix SCM garbage collection
A Use-After-Free vulnerability in the Layer 2 Address Learning Daemon (l2ald) of Juniper Networks Junos OS and Junos O
When NGINX Plus or NGINX OSS are configured to use the HTTP/3 QUIC module and the network infrastructure supports a Maxi
A vulnerability was found in GPAC 2.5-DEV-rev228-g11067ea92-master. It has been declared as problematic. This vulnerabil
@fastly/js-compute is a JavaScript SDK and runtime for building Fastly Compute applications. The implementation of sever
A flaw was found in PyO3. This vulnerability causes a use-after-free issue, potentially leading to memory corruption or
A use-after-free flaw was found in the Linux kernel's Memory Management subsystem when a user wins two races at the same
Use After Free vulnerability in Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver al
A heap use-after-free issue has been identified in SQLite in the jsonParseAddNodeArray() function in sqlite3.c. This fla
In the Linux kernel, the following vulnerability has been resolved: USB: gadgetfs: Fix race between mounting and unmoun
The issue was addressed with improved checks. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 1
The UNIX editor Vim prior to version 9.1.0678 has a use-after-free error in argument list handling. When adding a new fi
In vsp driver, there is a possible use after free due to a logic error. This could lead to local denial of service with
In camera driver, there is a possible use after free due to a logic error. This could lead to local denial of service wi
In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: fix htt pktlog locking The ath11k ac
in OpenHarmony v4.1.0 allow a local attacker with high privileges arbitrary code execution in pre-installed apps through
There was discovered a use after free bug in browser.c in the es_browser_get_variant function
in OpenHarmony v3.2.4 and prior versions allow a local attacker arbitrary code execution in any apps through use after f
A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 17.6, iOS 16.7.9 and
Foxit PDF Reader Doc Object Use-After-Free Information Disclosure Vulnerability. This vulnerability allows remote attack
Vim is an open source command line text editor. double-free in dialog_changed() in Vim < v9.1.0648. When abandoning a bu
Use after free vulnerability in pub_crypto_recv_msg prior to SMR Mar-2024 Release 1 due to race condition allows local a
in OpenHarmony v3.2.2 and prior versions allow a local attacker cause multimedia camera crash through modify a released
in OpenHarmony v3.2.2 and prior versions allow a local attacker cause multimedia player crash through modify a released
in OpenHarmony v3.2.2 and prior versions allow a local attacker cause multimedia player crash through modify a released
in OpenHarmony v3.2.2 and prior versions allow a local attacker cause multimedia audio crash through modify a released
If an AlignedBuffer were assigned to itself, the subsequent self-move could result in an incorrect reference count and l
QuickJS before 7414e5f has a quickjs.h JS_FreeValueRT use-after-free because of incorrect garbage collection of async fu
Frequently Asked Questions
What is CWE-416?
CWE-416 (Use After Free) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-416?
There are 9,940 CVE records associated with CWE-416 in our database. Of these, 834 are critical severity, 5751 are high severity, and 1124 are medium severity.
How can I protect against CWE-416 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-416 using AI-powered security agents.
Detect CWE-416 Vulnerabilities
CyberStrike's AI agents automatically detect use after free vulnerabilities across your infrastructure.
Get Started