Win32k Elevation of Privilege Vulnerability
Windows Runtime Remote Code Execution Vulnerability
A use-after-free flaw was found in xorg-x11-server-Xvfb. This issue occurs in Xvfb with a very specific and legacy confi
In GpuService of GpuService.cpp, there is a possible use after free due to a race condition. This could lead to local es
A race condition occurred between the functions lmLogClose and txEnd in JFS, in the Linux Kernel, executed in different
A use-after-free flaw was found in the Linux kernel’s mm/mremap memory address space accounting source code. This issue
LibTIFF 4.4.0 has an out-of-bounds read in tiffcrop in tools/tiffcrop.c:3701, allowing attackers to cause a denial-of-se
A flaw was found in the Linux kernel. A use-after-free may be triggered in asus_kbd_backlight_set when plugging/disconne
Apache Guacamole 0.9.10 through 1.5.1 may continue to reference a freed RDP audio input buffer. Depending on timing, thi
Microsoft Outlook Remote Code Execution Vulnerability
Memory corruption due to use after free in trusted application environment.
Memory corruption in WLAN due to use after free
In UnwindingWorker of unwinding.cc, there is a possible out of bounds write due to a use after free. This could lead to
In registerSignalHandlers of main.c, there is a possible local arbitrary code execution due to a use after free. This co
In cs40l2x_cp_trigger_queue_show of cs40l2x.c, there is a possible out of bounds write due to a use after free. This cou
In (TBD) of (TBD), there is a possible way to corrupt memory due to a use after free. This could lead to local escalatio
In (TBD) of (TBD), there is a possible way to corrupt memory due to a use after free. This could lead to local escalatio
In gz, there is a possible double free due to a use after free. This could lead to local escalation of privilege with Sy
Memory corruption due to use after free in Modem while modem initialization.
An issue was discovered in the Linux kernel before 6.1.11. In net/netrom/af_netrom.c, there is a use-after-free because
A use-after-free vulnerability was found in the Linux kernel's ext4 filesystem in the way it handled the extra inode siz
An issue was discovered in netfilter in the Linux kernel before 5.10. There can be a use-after-free in the packet proces
Memory corruption due to use after free in Core when multiple DCI clients register and deregister.
In vcu, there is a possible use after free due to a logic error. This could lead to local escalation of privilege with S
A use after free issue was discovered in driver/firewire in outbound_phy_packet_callback in the Linux Kernel. In this fl
there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with
Active Template Library Elevation of Privilege Vulnerability
In incfs_kill_sb of fs/incfs/vfs.c, there is a possible memory corruption due to a use after free. This could lead to lo
In the function call related to CAM_REQ_MGR_RELEASE_BUF there is no check if the buffer is being used. So when a functio
A use-after-free flaw was found in btrfs_get_dev_args_from_path in fs/btrfs/volumes.c in btrfs file-system in the Linux
In lwis_transaction_client_cleanup of lwis_transaction.c, there is a possible way to corrupt memory due to a use after f
In camera service, there is a possible use after free due to a logic error. This could lead to local escalation of privi
Memory Corruption in camera while installing a fd for a particular DMA buffer.
Memory Corruption in Audio while invoking IOCTLs calls from the user-space.
In the Pixel Camera Driver, there is a possible use after free due to a logic error in the code. This could lead to loca
Windows Domain Name Service Remote Code Execution Vulnerability
Windows DNS Server Remote Code Execution Vulnerability
Windows DNS Server Remote Code Execution Vulnerability
Windows DNS Server Remote Code Execution Vulnerability
Windows DNS Server Remote Code Execution Vulnerability
Microsoft Failover Cluster Remote Code Execution Vulnerability
Windows Active Directory Certificate Services (AD CS) Remote Code Execution Vulnerability
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
A Use After Free vulnerability in the packet forwarding engine (PFE) of Juniper Networks Junos OS Evolved on PTX10001-36
Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to versions 1.27.0, 1.26.4,
In imgsys_cmdq, there is a possible use after free due to a missing valid range checking. This could lead to local escal
When receiving rendering data over IPC `mStream` could have been destroyed when initialized, which could have led to a u
When creating a callback over IPC for showing the Color Picker window, multiple of the same callbacks could have been cr
When creating a callback over IPC for showing the File Picker window, multiple of the same callbacks could have been cre
During Ion compilation, a Garbage Collection could have resulted in a use-after-free condition, allowing an attacker to
Frequently Asked Questions
What is CWE-416?
CWE-416 (Use After Free) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-416?
There are 9,940 CVE records associated with CWE-416 in our database. Of these, 834 are critical severity, 5751 are high severity, and 1124 are medium severity.
How can I protect against CWE-416 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-416 using AI-powered security agents.
Detect CWE-416 Vulnerabilities
CyberStrike's AI agents automatically detect use after free vulnerabilities across your infrastructure.
Get Started