Skip to main content

CWE archive

CWE-415 CVEs

Programmatic archive

819 CVEs tagged with CWE-415105 Critical, 520 High, 178 Medium, 16 Low, 0 Unrated.

CVE-2021-22332

Published Apr 28, 2021

There is a pointer double free vulnerability in some versions of CloudEngine 5800, CloudEngine 6800, CloudEngine 7800 and CloudEngine 12800. When a function is called, the same me…

CVSS 7.5 · High

CVE-2021-3492

Published Apr 17, 2021

Shiftfs, an out-of-tree stacking file system included in Ubuntu Linux kernels, did not properly handle faults occurring during copy_from_user() correctly. These could lead to eith…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2021-0437

Published Apr 13, 2021

In setPlayPolicy of DrmPlugin.cpp, there is a possible double free. This could lead to local escalation of privilege in a privileged process with no additional execution privilege…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-36318

Published Apr 11, 2021

In the standard library in Rust before 1.49.0, VecDeque::make_contiguous has a bug that pops the same element more than once under certain condition. This bug could result in a us…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-30457

Published Apr 7, 2021

An issue was discovered in the id-map crate through 2021-02-26 for Rust. A double free can occur in remove_set upon a panic in a Drop impl.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-30456

Published Apr 7, 2021

An issue was discovered in the id-map crate through 2021-02-26 for Rust. A double free can occur in get_or_insert upon a panic of a user-provided f function.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-30455

Published Apr 7, 2021

An issue was discovered in the id-map crate through 2021-02-26 for Rust. A double free can occur in IdMap::clone_from upon a .clone panic.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-29627

Published Apr 7, 2021

In FreeBSD 13.0-STABLE before n245050, 12.2-STABLE before r369525, 13.0-RC4 before p0, and 12.2-RELEASE before p6, listening socket accept filters implementing the accf_create cal…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-29940

Published Apr 1, 2021

An issue was discovered in the through crate through 2021-02-18 for Rust. There is a double free (in through and through_and) upon a panic of the map function.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-29938

Published Apr 1, 2021

An issue was discovered in the slice-deque crate through 2021-02-19 for Rust. A double drop can occur in SliceDeque::drain_filter upon a panic in a predicate function.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-29931

Published Apr 1, 2021

An issue was discovered in the arenavec crate through 2021-01-12 for Rust. A double drop can sometimes occur upon a panic in T::drop().

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-0397

Published Mar 10, 2021

In sdp_copy_raw_data of sdp_discovery.cc, there is a possible system compromise due to a double free. This could lead to remote code execution with no additional execution privile…

CVSS 9.8 · Critical
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2021-0392

Published Mar 10, 2021

In main of main.cpp, there is a possible memory corruption due to a double free. This could lead to local escalation of privilege with User execution privileges needed. User inter…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-28041

Published Mar 5, 2021

ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common scenarios, such as unconstrained agent-socket access on a legacy operating system, or t…

CVSS 7.1 · High

CVE-2021-28034

Published Mar 5, 2021

An issue was discovered in the stack_dst crate before 0.6.1 for Rust. Because of the push_inner behavior, a double free can occur upon a val.clone() panic.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-28031

Published Mar 5, 2021

An issue was discovered in the scratchpad crate before 1.3.1 for Rust. The move_elements function can have a double-free upon a panic in a user-provided f function.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 526-550 of 819 CVEsPage 22 of 33