Skip to main content

CWE archive

CWE-416 CVEs

Programmatic archive

7,941 CVEs tagged with CWE-416819 Critical, 5,735 High, 1,272 Medium, 115 Low, 0 Unrated.

CVE-2020-6838

Published Jan 11, 2020

In mruby 2.1.0, there is a use-after-free in hash_values_at in mrbgems/mruby-hash-ext/src/hash-ext.c.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2019-17013

Published Jan 8, 2020

Mozilla developers reported memory safety bugs present in Firefox 70. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-11756

Published Jan 8, 2020

Improper refcounting of soft token session objects could cause a use-after-free and crash (likely limited to a denial of service). This vulnerability affects Firefox < 71.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-0002

Published Jan 8, 2020

In ih264d_init_decoder of ih264d_api.c, there is a possible out of bounds write due to a use after free. This could lead to remote code execution with no additional execution priv…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2019-13766

Published Jan 3, 2020

Use-after-free in accessibility in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-13765

Published Jan 3, 2020

Use-after-free in content delivery manager in Google Chrome prior to 78.0.3904.70 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-20169

Published Dec 31, 2019

An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a use-after-free in the function trak_Read() in isomedia/box_code_base.c.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-20168

Published Dec 31, 2019

An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a use-after-free in the function gf_isom_box_dump_ex() in isomedia/box_funcs.c.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-20090

Published Dec 30, 2019

An issue was discovered in Bento4 1.5.1.0. There is a use-after-free in AP4_Sample::GetOffset in Core/Ap4Sample.h when called from Ap4LinearReader.cpp.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-20006

Published Dec 26, 2019

An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_char_content puts a pointer to the internal address of a larger block as xml->txt. This is later deallocat…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-19952

Published Dec 24, 2019

In ImageMagick 7.0.9-7 Q16, there is a use-after-free in the function MngInfoDiscardObject of coders/png.c, related to ReadOneMNGImage.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 6,176-6,200 of 7,941 CVEsPage 248 of 318