Skip to main content

CWE archive

CWE-415 CVEs

Programmatic archive

821 CVEs tagged with CWE-415105 Critical, 522 High, 178 Medium, 16 Low, 0 Unrated.

CVE-2023-41374

Published Sep 20, 2023

Double free issue exists in Kostac PLC Programming Software Version 1.6.11.0 and earlier. Arbitrary code may be executed by having a user open a specially crafted project file whi…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-41325

Published Sep 15, 2023

OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone technology. Starting in versi…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2023-4389

Published Aug 16, 2023

A flaw was found in btrfs_get_root_ref in fs/btrfs/disk-io.c in the btrfs filesystem in the Linux Kernel due to a double decrement of the reference count. This issue may allow a l…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2023-39975

Published Aug 16, 2023

kdc/do_tgs_req.c in MIT Kerberos 5 (aka krb5) 1.21 before 1.21.2 has a double free that is reachable if an authenticated user can trigger an authorization-data handling failure. I…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-1999

Published Jun 20, 2023

There exists a use after free/double free in libwebp. An attacker can use the ApplyFiltersAndEncode() function and loop through to free best.bw and assign best = trial pointer. Th…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-3312

Published Jun 19, 2023

A vulnerability was found in drivers/cpufreq/qcom-cpufreq-hw.c in cpufreq subsystem in the Linux Kernel. This flaw, during device unbind will lead to double release problem leadin…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-35784

Published Jun 16, 2023

A double free or use after free could occur after SSL_clear in OpenBSD 7.2 before errata 026 and 7.3 before errata 004, and in LibreSSL before 3.6.3 and 3.7.x before 3.7.3. NOTE:…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-21106

Published May 15, 2023

In adreno_set_param of adreno_gpu.c, there is a possible memory corruption due to a double free. This could lead to local escalation of privilege with no additional execution priv…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 376-400 of 821 CVEsPage 16 of 33