İçeriğe atla
Noroxi

CWE-415 · 839 kayıt

Double Free

Bu sınıftaki CVE’ler

839 kayıt

  • CVE-2018-4990
    76Bu hafta

    Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Double Free

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %36

    adobe · acrobat dc9 Tem 2018

  • CVE-2014-0502
    72Bu hafta

    Double free vulnerability in Adobe Flash Player before 11.7.700.269 and 11.8.x through 12.0.x before 12.0.0.70 on Windows and Mac OS X and b

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %25

    adobe · flash player21 Şub 2014

  • CVE-2026-33824
    69Bu hafta

    Windows Internet Key Exchange (IKE) Service Extensions Remote Code Execution Vulnerability

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %2

    microsoft · windows 10 160714 Nis 2026

  • CVE-2018-0101
    66Bu hafta

    A vulnerability in the Secure Sockets Layer (SSL) VPN functionality of the Cisco Adaptive Security Appliance (ASA) Software could allow an u

    KritikCVSS 10,0Kavram kanıtıEPSS %87

    cisco · adaptive security appliance software29 Oca 2018

  • CVE-2003-0545
    65Bu hafta

    Double free vulnerability in OpenSSL 0.9.7 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code

    KritikCVSS 9,8İstismar yokEPSS %87

    openssl · openssl17 Kas 2003

  • CVE-2020-9859
    61Bu hafta

    A memory consumption issue was addressed with improved memory handling.

    YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %1

    apple · ipados5 Haz 2020

  • CVE-2021-22600
    60Bu hafta

    Double Free in net/packet/af_packet.c leading to priviledge escalation

    YüksekCVSS 7,0KEVSilahlaştırılmışEPSS %7

    netapp · 8300 firmware26 Oca 2022

  • CVE-2023-25136
    53Planlayın

    OpenSSH server (sshd) 9.1 introduced a double-free vulnerability during options.kex_algorithms handling.

    OrtaCVSS 6,5Kavram kanıtıEPSS %90

    openbsd · openssh3 Şub 2023

  • CVE-2018-5379
    51Planlayın

    The Quagga BGP daemon (bgpd) prior to version 1.2.3 can double-free memory when processing certain forms of UPDATE message, containing clust

    KritikCVSS 9,8İstismar yokEPSS %38

    quagga · quagga19 Şub 2018

  • CVE-2026-23918
    50Planlayın

    Apache HTTP Server: http2: double free and possible RCE on early reset

    YüksekCVSS 8,8Kavram kanıtıEPSS %50

    apache · http server4 May 2026

  • CVE-2017-5334
    49Planlayın

    Double free vulnerability in the gnutls_x509_ext_import_proxy function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allows remote attacker

    KritikCVSS 9,8İstismar yokEPSS %33

    gnu · gnutls24 Mar 2017

  • CVE-2019-11932
    48Planlayın

    A double free vulnerability in the DDGifSlurp function in decoding.c in the android-gif-drawable library before version 1.2.18, as used in W

    YüksekCVSS 8,8Kavram kanıtıEPSS %45

    whatsapp · whatsapp3 Eki 2019

  • CVE-2006-5051
    45Planlayın

    Signal handler race condition in OpenSSH before 4.4 allows remote attackers to cause a denial of service (crash), and possibly execute arbit

    YüksekCVSS 8,1Kavram kanıtıEPSS %45

    openbsd · openssh27 Eyl 2006

  • CVE-2019-8044
    43Planlayın

    Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 2017.011.30143 and ear

    KritikCVSS 9,8Kavram kanıtıEPSS %14

    adobe · acrobat dc20 Ağu 2019

  • CVE-2016-3132
    43Planlayın

    Double free vulnerability in the SplDoublyLinkedList::offsetSet function in ext/spl/spl_dllist.c in PHP 7.x before 7.0.6 allows remote attac

    KritikCVSS 9,8İstismar yokEPSS %12

    php · php7 Ağu 2016

  • CVE-2018-12782
    42Planlayın

    Adobe Acrobat and Reader 2018.011.20040 and earlier, 2017.011.30080 and earlier, and 2015.006.30418 and earlier versions have a Double Free

    KritikCVSS 9,8İstismar yokEPSS %11

    adobe · acrobat dc20 Tem 2018

  • CVE-2005-1689
    42Planlayın

    Double free vulnerability in the krb5_recvauth function in MIT Kerberos 5 (krb5) 1.4.1 and earlier allows remote attackers to execute arbitr

    KritikCVSS 9,8İstismar yokEPSS %11

    mit · kerberos 518 Tem 2005

  • CVE-2002-0059
    42Planlayın

    The decompression algorithm in zlib 1.1.3 and earlier, as used in many different utilities and packages, causes inflateEnd to release certai

    KritikCVSS 9,8İstismar yokEPSS %10

    zlib · zlib15 Mar 2002

  • CVE-2016-5772
    42Planlayın

    Double free vulnerability in the php_wddx_process_data function in wddx.c in the WDDX extension in PHP before 5.5.37, 5.6.x before 5.6.23, a

    KritikCVSS 9,8İstismar yokEPSS %10

    php · php7 Ağu 2016

  • CVE-2016-5768
    42Planlayın

    Double free vulnerability in the _php_mb_regex_ereg_replace_exec function in php_mbregex.c in the mbstring extension in PHP before 5.5.37, 5

    KritikCVSS 9,8İstismar yokEPSS %10

    php · php7 Ağu 2016

  • CVE-2014-0301
    41Planlayın

    Double free vulnerability in qedit.dll in DirectShow in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Window

    KritikCVSS 9,3İstismar yokEPSS %14

    microsoft · windows 712 Mar 2014

  • CVE-2019-5481
    41Planlayın

    Double-free vulnerability in the FTP-kerberos code in cURL 7.52.0 to 7.65.3.

    KritikCVSS 9,8İstismar yokEPSS %7

    haxx · curl16 Eyl 2019

  • CVE-2022-20127
    41Planlayın

    In ce_t4t_data_cback of ce_t4t.cc, there is a possible out of bounds write due to a double free.

    KritikCVSS 9,8İstismar yokEPSS %7

    google · android15 Haz 2022

  • CVE-2004-0772
    41Planlayın

    Double free vulnerabilities in error handling code in krb524d for MIT Kerberos 5 (krb5) 1.2.8 and earlier may allow remote attackers to exec

    KritikCVSS 9,8İstismar yokEPSS %7

    mit · kerberos 520 Eki 2004

  • CVE-2019-7784
    41Planlayın

    Adobe Acrobat and Reader versions 2019.010.20100 and earlier, 2019.010.20099 and earlier, 2017.011.30140 and earlier, 2017.011.30138 and ear

    KritikCVSS 9,8İstismar yokEPSS %7

    adobe · acrobat dc22 May 2019

Tüm zafiyet sınıfları