Skip to main content

CWE archive

CWE-415 CVEs

Programmatic archive

819 CVEs tagged with CWE-415105 Critical, 520 High, 178 Medium, 16 Low, 0 Unrated.

CVE-2021-39528

Published Sep 20, 2021

An issue was discovered in libredwg through v0.10.1.3751. dwg_free_MATERIAL_private() in dwg.spec has a double free.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-40145

Published Aug 26, 2021

gdImageGd2Ptr in gd_gd2.c in the GD Graphics Library (aka LibGD) through 2.3.2 has a double free. NOTE: the vendor's position is "The GD2 image format is a proprietary image forma…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-37652

Published Aug 12, 2021

TensorFlow is an end-to-end open source platform for machine learning. In affected versions the implementation for `tf.raw_ops.BoostedTreesCreateEnsemble` can result in a use afte…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-22386

Published Aug 10, 2021

A component of the Huawei smartphone has a Double Free vulnerability. Local attackers may exploit this vulnerability to cause Root Elevation of Privileges.

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2020-36434

Published Aug 8, 2021

An issue was discovered in the sys-info crate before 0.8.0 for Rust. sys_info::disk_info calls can trigger a double free.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-22425

Published Aug 3, 2021

A component of the HarmonyOS has a Double Free vulnerability. Local attackers may exploit this vulnerability to cause Root Elevating Privileges.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-37159

Published Jul 21, 2021

hso_free_net_device in drivers/net/usb/hso.c in the Linux kernel through 5.13.4 calls unregister_netdev without checking for the NETREG_REGISTERED state, leading to a use-after-fr…

CVSS 6.4 · Medium

CVE-2021-0601

Published Jul 14, 2021

In encodeFrames of avc_enc_fuzzer.cpp, there is a possible out of bounds write due to a double free. This could lead to local information disclosure with no additional execution p…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-27033

Published Jul 9, 2021

A maliciously crafted PDF file, when opened by a user in Autodesk Design Review, can trigger a Double Free vulnerability in the Autodesk Design Review application. A malicious act…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2021-36088

Published Jul 1, 2021

Fluent Bit (aka fluent-bit) 1.7.0 through 1.7.4 has a double free in flb_free (called from flb_parser_json_do and flb_parser_do).

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-36080

Published Jul 1, 2021

GNU LibreDWG 0.12.3.4163 through 0.12.3.4191 has a double-free in bit_chain_free (called from dwg_encode_MTEXT and dwg_encode_add_object).

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-34184

Published Jun 25, 2021

Miniaudio 0.10.35 has a Double free vulnerability that could cause a buffer overflow in ma_default_vfs_close__stdio in miniaudio.h.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-0528

Published Jun 21, 2021

In memory management driver, there is a possible memory corruption due to a double free. This could lead to local escalation of privilege with no additional execution privileges n…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0498

Published Jun 11, 2021

In memory management driver, there is a possible memory corruption due to a double free. This could lead to local escalation of privilege with no additional execution privileges n…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 501-525 of 819 CVEsPage 21 of 33