Skip to content
Noroxi

CWE-911 · 15 records

Improper Update of Reference Count

CVEs in this class

15 records

  • KVM: arm64: vgic-its: Drop the translation cache reference only for the erased entry

    CriticalCVSS 9.3Proof of conceptEPSS 0%

    linux · linux kernelJun 9, 2026

  • Jail reference count underflow

    HighCVSS 8.8No exploitEPSS 0%

    freebsd · freebsdAug 19, 2026

  • net: ipv6: fix NOREF dst use in seg6 and rpl lwtunnels

    HighCVSS 8.1No exploitEPSS 0%

    linux · linux kernelMay 27, 2026

  • CVE-2022-1678
    31Monitor

    An issue was discovered in the Linux Kernel from 4.18 to 4.19, an improper update of sock reference in TCP pacing can lead to memory/netns l

    HighCVSS 7.5No exploitEPSS 3%

    linux · linux kernelMay 25, 2022

  • This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Unified Automation OPC UA C+

    HighCVSS 7.5No exploitEPSS 2%

    unified-automation · opc ua c\+\+ demo serverMar 29, 2023

  • Improper Update of Reference Count vulnerability in net/sched of Linux Kernel allows local attacker to cause privilege escalation to root.

    HighCVSS 7.8Proof of conceptEPSS 1%

    linux · linux kernelMay 17, 2022

  • CVE-2023-5633
    31Monitor

    Kernel: vmwgfx: reference count issue leads to use-after-free in surface handling

    HighCVSS 7.8No exploitEPSS 0%

    linux · linux kernelOct 23, 2023

  • GPU DDK - Security: Reference count overflow in pvr_sync_rollback_export_fence

    HighCVSS 7.8No exploitEPSS 0%

    imagination technologies · graphics ddkDec 28, 2024

  • Junos OS Evolved: Specific packets reaching the RE lead to a counter overflow and eventually a crash

    HighCVSS 7.5No exploitEPSS 1%

    juniper · junos os evolvedApr 14, 2022

  • Junos OS: SRX Series and MX Series: Memory leak due to receipt of specially crafted SIP calls

    HighCVSS 7.5No exploitEPSS 1%

    juniper · junosJan 12, 2023

  • Tor before 0.4.9.11 is prone to a use-after-free (and potential double free) of a conflux object when a recovery leg revives a conflux set w

    HighCVSS 7.5No exploitEPSS 0%

    torproject · torAug 20, 2026

  • iommu/arm-smmu: Fix arm_smmu_device refcount leak when arm_smmu_rpm_get fails

    HighCVSS 7.1No exploitEPSS 0%

    linux · linux kernelMay 21, 2024

  • aufs: improperly managed inode reference counts in the vfsub_dentry_open() method

    MediumCVSS 5.5No exploitEPSS 0%

    canonical · ubuntu linuxApr 6, 2023

  • CVE-2023-2019
    17Monitor

    A flaw was found in the Linux kernel's netdevsim device driver, within the scheduling of events.

    MediumCVSS 4.4No exploitEPSS 0%

    linux · linux kernelApr 24, 2023

  • Grub2: fs/hfs+: refcount can be decremented twice

    MediumCVSS 4.4No exploitEPSS 0%

    red hat · red hat enterprise linux 9Feb 18, 2025

All vulnerability classes