Filtered by vendor
Subscriptions
Total
6163 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2025-27038 | 2025-06-03 | 7.5 High | ||
Memory corruption while rendering graphics using Adreno GPU drivers in Chrome. | ||||
CVE-2025-27031 | 2025-06-03 | 7.8 High | ||
memory corruption while processing IOCTL commands, when the buffer in write loopback mode is accessed after being freed. | ||||
CVE-2024-53015 | 2025-06-03 | 6.6 Medium | ||
Memory corruption while processing IOCTL command to handle buffers associated with a session. | ||||
CVE-2025-5036 | 2025-06-03 | 7.8 High | ||
A maliciously crafted RFA file, when linked or imported into Autodesk Revit, can force a Use-After-Free vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process. | ||||
CVE-2025-5068 | 2025-06-03 | 8.8 High | ||
Use after free in Blink in Google Chrome prior to 137.0.7151.68 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium) | ||||
CVE-2023-4387 | 2 Linux, Redhat | 2 Linux Kernel, Enterprise Linux | 2025-06-03 | 7.1 High |
A use-after-free flaw was found in vmxnet3_rq_alloc_rx_buf in drivers/net/vmxnet3/vmxnet3_drv.c in VMware's vmxnet3 ethernet NIC driver in the Linux Kernel. This issue could allow a local attacker to crash the system due to a double-free while cleaning up vmxnet3_rq_cleanup_all, which could also lead to a kernel information leak problem. | ||||
CVE-2025-23104 | 2025-06-03 | 6.5 Medium | ||
An issue was discovered in Samsung Mobile Processor Exynos 2200, 1480, and 2400. A Use-After-Free in the mobile processor leads to privilege escalation. | ||||
CVE-2025-0073 | 2025-06-02 | 7.8 High | ||
Use After Free vulnerability in Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform improper GPU memory processing operations to gain access to already freed memory.This issue affects Valhall GPU Kernel Driver: from r53p0 before r54p0; Arm 5th Gen GPU Architecture Kernel Driver: from r53p0 before r54p0. | ||||
CVE-2023-26226 | 2025-06-02 | N/A | ||
A use after free memory corruption issue exists in Yandex Browser for Desktop prior to version 24.4.0.682 | ||||
CVE-2025-0819 | 2025-06-02 | 7.8 High | ||
Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform valid GPU memory processing operations to gain access to already freed memory.This issue affects Bifrost GPU Kernel Driver: from r44p0 through r49p3, from r50p0 through r51p0; Valhall GPU Kernel Driver: from r44p0 through r49p3, from r50p0 through r54p0; Arm 5th Gen GPU Architecture Kernel Driver: from r44p0 through r49p3, from r50p0 through r54p0. | ||||
CVE-2025-5283 | 1 Google | 1 Chrome | 2025-06-01 | 5.4 Medium |
Use after free in libvpx in Google Chrome prior to 137.0.7151.55 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium) | ||||
CVE-2025-44906 | 2025-05-31 | 7.8 High | ||
jhead v3.08 was discovered to contain a heap-use-after-free via the ProcessFile function at jhead.c. | ||||
CVE-2022-43680 | 5 Debian, Fedoraproject, Libexpat Project and 2 more | 24 Debian Linux, Fedora, Libexpat and 21 more | 2025-05-30 | 7.5 High |
In libexpat through 2.4.9, there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memory situations. | ||||
CVE-2022-40674 | 4 Debian, Fedoraproject, Libexpat Project and 1 more | 9 Debian Linux, Fedora, Libexpat and 6 more | 2025-05-30 | 8.1 High |
libexpat before 2.4.9 has a use-after-free in the doContent function in xmlparse.c. | ||||
CVE-2025-29823 | 2025-05-30 | 7.8 High | ||
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-29815 | 2025-05-30 | 7.6 High | ||
Use after free in Microsoft Edge (Chromium-based) allows an authorized attacker to execute code over a network. | ||||
CVE-2025-27730 | 2025-05-30 | 7.8 High | ||
Use after free in Windows Digital Media allows an authorized attacker to elevate privileges locally. | ||||
CVE-2025-27729 | 2025-05-30 | 7.8 High | ||
Use after free in Windows Shell allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-27491 | 2025-05-30 | 7.1 High | ||
Use after free in Windows Hyper-V allows an authorized attacker to execute code over a network. | ||||
CVE-2025-27492 | 2025-05-30 | 7 High | ||
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Secure Channel allows an authorized attacker to elevate privileges locally. |