Skip to main content

CWE archive

CWE-415 CVEs

Programmatic archive

819 CVEs tagged with CWE-415105 Critical, 520 High, 178 Medium, 16 Low, 0 Unrated.

CVE-2024-46741

Published Sep 18, 2024

In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: Fix double free of 'buf' in error path smatch warning: drivers/misc/fastrpc.c:1926 fastrpc_req…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-46736

Published Sep 18, 2024

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double put of @cfile in smb2_rename_path() If smb2_set_path_attr() is called with a valid @c…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-46687

Published Sep 13, 2024

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix a use-after-free when hitting errors inside btrfs_submit_chunk() [BUG] There is an internal report…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-46673

Published Sep 13, 2024

In the Linux kernel, the following vulnerability has been resolved: scsi: aacraid: Fix double-free on probe failure aac_probe_one() calls hardware-specific init functions throug…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-7256

Published Aug 31, 2024

In affected libpcap versions during the setup of a remote packet capture the internal function sock_initaddress() calls getaddrinfo() and possibly freeaddrinfo(), but does not cle…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-48919

Published Aug 22, 2024

In the Linux kernel, the following vulnerability has been resolved: cifs: fix double free race when mount fails in cifs_get_root() When cifs_get_root() fails during cifs_smb3_do…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-48892

Published Aug 21, 2024

In the Linux kernel, the following vulnerability has been resolved: sched/core: Fix use-after-free bug in dup_user_cpus_ptr() Since commit 07ec77a1d4e8 ("sched: Allow task CPU a…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-42234

Published Aug 7, 2024

In the Linux kernel, the following vulnerability has been resolved: mm: fix crashes from deferred split racing folio migration Even on 6.10-rc6, I've been seeing elusive "Bad pa…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-41965

Published Aug 1, 2024

Vim is an open source command line text editor. double-free in dialog_changed() in Vim < v9.1.0648. When abandoning a buffer, Vim may ask the user what to do with the modified buf…

CVSS 4.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-41957

Published Aug 1, 2024

Vim is an open source command line text editor. Vim < v9.1.0647 has double free in src/alloc.c:616. When closing a window, the corresponding tagstack data will be cleared and free…

CVSS 4.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-42147

Published Jul 30, 2024

In the Linux kernel, the following vulnerability has been resolved: crypto: hisilicon/debugfs - Fix debugfs uninit process issue During the zip probe process, the debugfs failur…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-42138

Published Jul 30, 2024

In the Linux kernel, the following vulnerability has been resolved: mlxsw: core_linecards: Fix double memory deallocation in case of invalid INI file In case of invalid INI file…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-42123

Published Jul 30, 2024

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix double free err_addr pointer warnings In amdgpu_umc_bad_page_polling_timeout, the amdgpu_umc_…

CVSS 4.4 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-52888

Published Jul 30, 2024

In the Linux kernel, the following vulnerability has been resolved: media: mediatek: vcodec: Only free buffer VA that is not NULL In the MediaTek vcodec driver, while mtk_vcodec…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-41087

Published Jul 29, 2024

In the Linux kernel, the following vulnerability has been resolved: ata: libata-core: Fix double free on error If e.g. the ata_port_alloc() call in ata_host_alloc() fails, we wi…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-41073

Published Jul 29, 2024

In the Linux kernel, the following vulnerability has been resolved: nvme: avoid double free special payload If a discard request needs to be retried, and that retry may fail bef…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-41046

Published Jul 29, 2024

In the Linux kernel, the following vulnerability has been resolved: net: ethernet: lantiq_etop: fix double free in detach The number of the currently released descriptor is neve…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-40940

Published Jul 12, 2024

In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Fix tainted pointer delete is case of flow rules creation fail In case of flow rule creation fail i…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-23141

Published Jun 25, 2024

A maliciously crafted MODEL file, when parsed in libodxdll through Autodesk applications, can cause a double free. This vulnerability, along with other vulnerabilities, can lead t…

CVSS 7.8 · High

CVE-2024-39292

Published Jun 24, 2024

In the Linux kernel, the following vulnerability has been resolved: um: Add winch to winch_handlers before registering winch IRQ Registering a winch IRQ is racy, an interrupt ma…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 276-300 of 819 CVEsPage 12 of 33