İçeriğe atla
Noroxi

CWE-416 · 8.147 kayıt

Serbest bırakılmış belleğin kullanımı

Neden olur?

Bir bellek alanı serbest bırakıldıktan sonra ona işaret eden başka bir referans kullanılmaya devam ediyor. Aynı alan o sırada başka bir veri için ayrılmış olabilir.

Hatalı ve düzeltilmiş kod

Temsili ders örneği. Vurgulu satırlar hatanın ve düzeltmenin yeridir.

Hatalı

c
free(dev->buf);/* ... başka bir iş parçacığı hâlâ çalışıyor ... */process(dev->buf);

Düzeltilmiş

c
lock(&dev->lock);free(dev->buf);dev->buf = NULL;unlock(&dev->lock);

Nasıl önlenir?

  1. 01Serbest bırakılan işaretçiyi hemen NULL yapın.
  2. 02Paylaşılan nesnelerde referans sayımı ve kilit kullanın.
  3. 03Bellek hatası denetleyicileriyle (sanitizer) test edin.

Bu sınıftaki CVE’ler

8.211 kayıt

  • A remote code execution vulnerability exists in Remote Desktop Services formerly known as Terminal Services when an unauthenticated attacker

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100

    microsoft · windows 716 May 2019

  • HTTP Protocol Stack Remote Code Execution Vulnerability

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100

    microsoft · windows 10 200411 May 2021

  • Use-after-free vulnerability in the ByteArray class in the ActionScript 3 (AS3) implementation in Adobe Flash Player 13.x through 13.0.0.296

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %99

    adobe · flash player8 Tem 2015

  • Use-after-free vulnerability in Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %95

    adobe · flash player2 Şub 2015

  • Use-after-free vulnerability in the DisplayObject class in the ActionScript 3 (AS3) implementation in Adobe Flash Player 13.x through 13.0.0

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %94

    adobe · flash player14 Tem 2015

  • OpenSLP as used in VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202010401-SG, 6.5 before ESXi650-202010401-SG) has a

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %83

    vmware · cloud foundation20 Eki 2020

  • Use-after-free vulnerability in Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %83

    microsoft · internet explorer27 Nis 2014

  • Use-after-free vulnerability in Microsoft Internet Explorer 6, 6 SP1, 7, and 8 on Windows 2000 SP4; Windows XP SP2 and SP3; Windows Server 2

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %92

    microsoft · internet explorer15 Oca 2010

  • Use-after-free vulnerability in Microsoft Internet Explorer 6, 7, and 8 allows remote attackers to execute arbitrary code via vectors relate

    YüksekCVSS 8,1KEVSilahlaştırılmışEPSS %97

    microsoft · internet explorer5 Kas 2010

  • Use-after-free vulnerability in the SetMouseCapture implementation in mshtml.dll in Microsoft Internet Explorer 6 through 11 allows remote a

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %88

    microsoft · internet explorer18 Eyl 2013

  • Use-after-free vulnerability in Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code via vectors involving

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %85

    microsoft · internet explorer14 Şub 2014

  • Internet Explorer Memory Corruption Vulnerability

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %81

    microsoft · edge11 Mar 2021

  • Use-after-free vulnerability in Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code via a crafted web

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %79

    microsoft · internet explorer30 Ara 2012

  • Flash Player versions 31.0.0.153 and earlier, and 31.0.0.108 and earlier have a use after free vulnerability.

    YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %90

    adobe · flash player18 Oca 2019

  • A use-after-free vulnerability was discovered in Adobe Flash Player before 28.0.0.161.

    YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %90

    adobe · flash player6 Şub 2018

  • Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessi

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %78

    microsoft · internet explorer5 May 2013

  • Use-after-free vulnerability in the CDisplayPointer class in mshtml.dll in Microsoft Internet Explorer 6 through 11 allows remote attackers

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %77

    microsoft · internet explorer9 Eki 2013

  • Use-after-free vulnerability in Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code via a crafted web

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %74

    microsoft · internet explorer11 Mar 2013

  • A use-after-free vulnerability in SVG Animation has been discovered.

    YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %87

    debian · debian linux11 Haz 2018

  • A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scrip

    YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %87

    microsoft · internet explorer11 Şub 2020

  • Use-after-free vulnerability in the Doc.media.newPlayer method in Multimedia.api in Adobe Reader and Acrobat 9.x before 9.3, and 8.x before

    YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %82

    adobe · acrobat14 Ara 2009

  • Use-after-free vulnerability in the CMshtmlEd::Exec function in mshtml.dll in Microsoft Internet Explorer 6 through 9 allows remote attacker

    YüksekCVSS 8,1KEVSilahlaştırılmışEPSS %80

    microsoft · internet explorer18 Eyl 2012

  • Microsoft Office 2010 SP2, Office 2013 SP1, and Office 2016 allow a remote code execution vulnerability when the software fails to properly

    YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %78

    microsoft · office12 May 2017

  • A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scrip

    YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %77

    microsoft · internet explorer12 Kas 2019

  • Win32k Elevation of Privilege Vulnerability

    YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %74

    microsoft · windows 10 150712 Eki 2021

Tüm zafiyet sınıfları