Skip to main content

CWE archive

CWE-415 CVEs

Programmatic archive

818 CVEs tagged with CWE-415105 Critical, 519 High, 178 Medium, 16 Low, 0 Unrated.

CVE-2020-5988

Published Oct 2, 2020

NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which allocated memory can be freed twice, which may lead to information disclosure or denial of service…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2020-24698

Published Oct 2, 2020

An issue was discovered in PowerDNS Authoritative through 4.3.0 when --enable-experimental-gss-tsig is used. A remote, unauthenticated attacker might be able to cause a double-fre…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-25773

Published Sep 29, 2020

A vulnerability in the Trend Micro Apex One ServerMigrationTool component could allow an attacker to execute arbitrary code on affected products. User interaction is required to e…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-0392

Published Sep 17, 2020

In getLayerDebugInfo of SurfaceFlinger.cpp, there is a possible code execution due to a double free. This could lead to local escalation of privilege with no additional execution…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-25559

Published Sep 16, 2020

gnuplot 5.5 is affected by double free when executing print_set_output. This may result in context-dependent arbitrary code execution.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-24978

Published Sep 4, 2020

In NASM 2.15.04rc3, there is a double-free vulnerability in pp_tokline asm/preproc.c. This is fixed in commit 8806c3ca007b84accac21dd88b900fb03614ceb7.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-0241

Published Aug 11, 2020

In NuPlayerStreamListener of NuPlayerStreamListener.cpp, there is possible memory corruption due to a double free. This could lead to local escalation of privilege with no additio…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-16217

Published Aug 6, 2020

Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. A double free vulnerability caused by processing specially crafted project files may allow remote code execution, di…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-1647

Published Jul 17, 2020

On Juniper Networks SRX Series with ICAP (Internet Content Adaptation Protocol) redirect service enabled, a double free vulnerability can lead to a Denial of Service (DoS) or Remo…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2020-11900

Published Jun 17, 2020

The Treck TCP/IP stack before 6.0.1.41 has an IPv4 tunneling Double Free.

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2019-20792

Published Apr 29, 2020

OpenSC before 0.20.0 has a double free in coolkey_free_private_data because coolkey_add_object in libopensc/card-coolkey.c lacks a uniqueness check.

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-21086

Published Apr 8, 2020

An issue was discovered on Samsung mobile devices with L(5.x), M(6.0), and N(7.x) software. There is a race condition with a resultant double free in vnswap_init_backing_storage.…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2019-20633

Published Mar 25, 2020

GNU patch through 2.7.6 contains a free(p_line[p_end]) Double Free vulnerability in the function another_hunk in pch.c that can cause a denial of service via a crafted patch file.…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 576-600 of 818 CVEsPage 24 of 33