Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-416

MITRE ↗

Use After Free

834
CRITICAL
5,751
HIGH
1,124
MEDIUM
88
LOW
7,832 CVEs · Page 95/157
7.0
CVE-2023-36776

Win32k Elevation of Privilege Vulnerability

7.0
CVE-2023-36902

Windows Runtime Remote Code Execution Vulnerability

7.0
CVE-2023-5574

A use-after-free flaw was found in xorg-x11-server-Xvfb. This issue occurs in Xvfb with a very specific and legacy confi

7.0
CVE-2023-40131

In GpuService of GpuService.cpp, there is a possible use after free due to a race condition. This could lead to local es

7.0
CVE-2023-3397

A race condition occurred between the functions lmLogClose and txEnd in JFS, in the Linux Kernel, executed in different

7.0
CVE-2023-1476

A use-after-free flaw was found in the Linux kernel’s mm/mremap memory address space accounting source code. This issue

6.8
CVE-2023-0799

LibTIFF 4.4.0 has an out-of-bounds read in tiffcrop in tools/tiffcrop.c:3701, allowing attackers to cause a denial-of-se

6.8
CVE-2023-1079

A flaw was found in the Linux kernel. A use-after-free may be triggered in asus_kbd_backlight_set when plugging/disconne

6.8
CVE-2023-30576

Apache Guacamole 0.9.10 through 1.5.1 may continue to reference a freed RDP audio input buffer. Depending on timing, thi

6.8
CVE-2023-33153

Microsoft Outlook Remote Code Execution Vulnerability

6.7
CVE-2022-33225

Memory corruption due to use after free in trusted application environment.

6.7
CVE-2022-33245

Memory corruption in WLAN due to use after free

6.7
CVE-2023-21018

In UnwindingWorker of unwinding.cc, there is a possible out of bounds write due to a use after free. This could lead to

6.7
CVE-2023-21020

In registerSignalHandlers of main.c, there is a possible local arbitrary code execution due to a use after free. This co

6.7
CVE-2023-21038

In cs40l2x_cp_trigger_queue_show of cs40l2x.c, there is a possible out of bounds write due to a use after free. This cou

6.7
CVE-2023-21042

In (TBD) of (TBD), there is a possible way to corrupt memory due to a use after free. This could lead to local escalatio

6.7
CVE-2023-21043

In (TBD) of (TBD), there is a possible way to corrupt memory due to a use after free. This could lead to local escalatio

6.7
CVE-2023-20664

In gz, there is a possible double free due to a use after free. This could lead to local escalation of privilege with Sy

6.7
CVE-2022-33298

Memory corruption due to use after free in Modem while modem initialization.

6.7
CVE-2023-32269

An issue was discovered in the Linux kernel before 6.1.11. In net/netrom/af_netrom.c, there is a use-after-free because

6.7
CVE-2023-2513

A use-after-free vulnerability was found in the Linux kernel's ext4 filesystem in the way it handled the extra inode siz

6.7
CVE-2020-36694

An issue was discovered in netfilter in the Linux kernel before 5.10. There can be a use-after-free in the packet proces

6.7
CVE-2022-33263

Memory corruption due to use after free in Core when multiple DCI clients register and deregister.

6.7
CVE-2023-20744

In vcu, there is a possible use after free due to a logic error. This could lead to local escalation of privilege with S

6.7
CVE-2023-3159

A use after free issue was discovered in driver/firewire in outbound_phy_packet_callback in the Linux Kernel. In this fl

6.7
CVE-2023-21146

there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with

6.7
CVE-2023-32055

Active Template Library Elevation of Privilege Vulnerability

6.7
CVE-2023-35693

In incfs_kill_sb of fs/incfs/vfs.c, there is a possible memory corruption due to a use after free. This could lead to lo

6.7
CVE-2023-28577

In the function call related to CAM_REQ_MGR_RELEASE_BUF there is no check if the buffer is being used. So when a functio

6.7
CVE-2023-4394

A use-after-free flaw was found in btrfs_get_dev_args_from_path in fs/btrfs/volumes.c in btrfs file-system in the Linux

6.7
CVE-2023-35660

In lwis_transaction_client_cleanup of lwis_transaction.c, there is a possible way to corrupt memory due to a use after f

6.7
CVE-2023-42722

In camera service, there is a possible use after free due to a logic error. This could lead to local escalation of privi

6.7
CVE-2023-22383

Memory Corruption in camera while installing a fd for a particular DMA buffer.

6.7
CVE-2023-22668

Memory Corruption in Audio while invoking IOCTLs calls from the user-space.

6.7
CVE-2023-48414

In the Pixel Camera Driver, there is a possible use after free due to a logic error in the code. This could lead to loca

6.6
CVE-2023-28223

Windows Domain Name Service Remote Code Execution Vulnerability

6.6
CVE-2023-28305

Windows DNS Server Remote Code Execution Vulnerability

6.6
CVE-2023-28306

Windows DNS Server Remote Code Execution Vulnerability

6.6
CVE-2023-28307

Windows DNS Server Remote Code Execution Vulnerability

6.6
CVE-2023-28308

Windows DNS Server Remote Code Execution Vulnerability

6.6
CVE-2023-32033

Microsoft Failover Cluster Remote Code Execution Vulnerability

6.6
CVE-2023-35351

Windows Active Directory Certificate Services (AD CS) Remote Code Execution Vulnerability

6.6
CVE-2023-36008

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

6.5
CVE-2023-36833

A Use After Free vulnerability in the packet forwarding engine (PFE) of Juniper Networks Junos OS Evolved on PTX10001-36

6.5
CVE-2023-35942

Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to versions 1.27.0, 1.26.4,

6.5
CVE-2023-20849

In imgsys_cmdq, there is a possible use after free due to a missing valid range checking. This could lead to local escal

6.5
CVE-2023-4573

When receiving rendering data over IPC `mStream` could have been destroyed when initialized, which could have led to a u

6.5
CVE-2023-4574

When creating a callback over IPC for showing the Color Picker window, multiple of the same callbacks could have been cr

6.5
CVE-2023-4575

When creating a callback over IPC for showing the File Picker window, multiple of the same callbacks could have been cre

6.5
CVE-2023-5171

During Ion compilation, a Garbage Collection could have resulted in a use-after-free condition, allowing an attacker to

Frequently Asked Questions

What is CWE-416?

CWE-416 (Use After Free) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-416?

There are 9,940 CVE records associated with CWE-416 in our database. Of these, 834 are critical severity, 5751 are high severity, and 1124 are medium severity.

How can I protect against CWE-416 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-416 using AI-powered security agents.

Detect CWE-416 Vulnerabilities

CyberStrike's AI agents automatically detect use after free vulnerabilities across your infrastructure.

Get Started