CWE-590 · 20 kayıt
Free of Memory not on the Heap
Bu sınıftaki CVE’ler
20 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2020-6016İstismar yok | Valve's Game Networking Sockets prior to version v1.2.0 improperly handles unreliable segments with negative offsets in function SNP_Receivevalvesoftware · game networking sockets · CWE-590 | Kritik9,8 | — | %6,0 | 18 Kas 2020 |
40Planlayın | CVE-2021-42377İstismar yok | An attacker-controlled pointer free in Busybox's hush applet leads to denial of service and possible code execution when processing a craftebusybox · busybox · CWE-590 | Kritik9,8 | — | %3,6 | 15 Kas 2021 |
40Planlayın | CVE-2022-31627İstismar yok | Heap buffer overflow in finfo_bufferphp · php · CWE-590 | Kritik9,8 | — | %2,1 | 28 Tem 2022 |
38İzleyin | CVE-2026-95311İstismar yok | Free of non-heap memory in Fonts in Google Chrome prior to 154.0.8037.57 allowed a remote attacker leveraging social engineering to potentiagoogle · chrome · CWE-590 | Kritik9,6 | — | — | Bugün |
36İzleyin | CVE-2025-32911İstismar yok | Libsoup: double free on soup_message_headers_get_content_disposition() through "soup-message-headers.c" via "params" ghashtable valuered hat · red hat enterprise linux 7 extended lifecycle support · CWE-590 | Kritik9,0 | — | %0,9 | 15 Nis 2025 |
33İzleyin | CVE-2022-31625İstismar yok | Freeing unallocated memory in php_pgsql_free_params()php · php · CWE-590 | Yüksek8,1 | — | %3,8 | 16 Haz 2022 |
31İzleyin | CVE-2024-6197İstismar yok | freeing stack buffer in utf8asn1strhaxx · libcurl · CWE-590 | Yüksek7,5 | — | %4,3 | 24 Tem 2024 |
31İzleyin | CVE-2025-54899İstismar yok | Microsoft Excel Remote Code Execution Vulnerabilitymicrosoft · 365 apps · CWE-590 | Yüksek7,8 | — | %0,6 | 9 Eyl 2025 |
31İzleyin | CVE-2026-20810İstismar yok | Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerabilitymicrosoft · windows 10 1809 · CWE-590 | Yüksek7,8 | — | %0,5 | 13 Oca 2026 |
31İzleyin | CVE-2023-22291İstismar yok | An invalid free vulnerability exists in the Frame stream parser functionality of Ichitaro 2022 1.0.1.57600.justsystems · ichitaro 2022 · CWE-590 | Yüksek7,8 | — | %0,5 | 5 Nis 2023 |
31İzleyin | CVE-2021-3939İstismar yok | Free of static data in accountsservicecanonical · accountsservice · CWE-590 | Yüksek7,8 | — | %0,4 | 17 Kas 2021 |
31İzleyin | CVE-2026-89161İstismar yok | In PCRE2 before 10.48, pcre2_jit_match mishandles a previously copied subject being passed in as a context.pcre · pcre2 · CWE-590 | Yüksek7,8 | — | %0,1 | 11 Eyl 2026 |
30İzleyin | CVE-2023-25565İstismar yok | GSS-NTLMSSP vulnerable to incorrect free when decoding target informationgss-ntlmssp project · gss-ntlmssp · CWE-590 | Yüksek7,5 | — | %1,1 | 14 Şub 2023 |
30İzleyin | CVE-2025-42994İstismar yok | Multiple vulnerabilities in SAP MDM Serversap_se · sap mdm server · CWE-590 | Yüksek7,5 | — | %0,4 | 9 Haz 2025 |
30İzleyin | CVE-2025-42995İstismar yok | Multiple vulnerabilities in SAP MDM Serversap_se · sap mdm server · CWE-590 | Yüksek7,5 | — | %0,4 | 9 Haz 2025 |
24İzleyin | CVE-2026-47328İstismar yok | Invalid pointer deallocation in Ubuntu Linux AppArmor notification handlingcanonical · ubuntu linux · CWE-590 | Orta6,1 | — | %0,1 | 28 May 2026 |
22İzleyin | CVE-2026-18582İstismar yok | mz-automation libiec61850 Report Sending Path reporting.c Reporting_RCBWriteAccessHandler free of memory not on the heapmz-automation · libiec61850 · CWE-590 | Orta5,5 | — | %0,9 | 2 Ağu 2026 |
22İzleyin | CVE-2025-42996İstismar yok | Multiple vulnerabilities in SAP MDM Serversap_se · sap mdm server · CWE-590 | Orta5,6 | — | %0,2 | 9 Haz 2025 |
22İzleyin | CVE-2025-7006İstismar yok | Avast antivirus use of stack memory after free when scanning a malformed PE filegen digital · avast antivirus · CWE-590 | Orta5,5 | — | %0,1 | 12 Haz 2026 |
7İzleyin | CVE-2025-5899İstismar yok | GNU PSPP pspp-convert.c parse_variables_option free of memory not on the heapgnu · pspp · CWE-590 | Düşük1,9 | — | %0,2 | 9 Haz 2025 |
- CVE-2020-601641Planlayın
Valve's Game Networking Sockets prior to version v1.2.0 improperly handles unreliable segments with negative offsets in function SNP_Receive
KritikCVSS 9,8İstismar yokEPSS %6valvesoftware · game networking sockets18 Kas 2020
- CVE-2021-4237740Planlayın
An attacker-controlled pointer free in Busybox's hush applet leads to denial of service and possible code execution when processing a crafte
KritikCVSS 9,8İstismar yokEPSS %4busybox · busybox15 Kas 2021
- CVE-2022-3162740Planlayın
Heap buffer overflow in finfo_buffer
KritikCVSS 9,8İstismar yokEPSS %2php · php28 Tem 2022
- CVE-2026-9531138İzleyin
Free of non-heap memory in Fonts in Google Chrome prior to 154.0.8037.57 allowed a remote attacker leveraging social engineering to potentia
KritikCVSS 9,6İstismar yokgoogle · chromeBugün
- CVE-2025-3291136İzleyin
Libsoup: double free on soup_message_headers_get_content_disposition() through "soup-message-headers.c" via "params" ghashtable value
KritikCVSS 9,0İstismar yokEPSS %1red hat · red hat enterprise linux 7 extended lifecycle support15 Nis 2025
- CVE-2022-3162533İzleyin
Freeing unallocated memory in php_pgsql_free_params()
YüksekCVSS 8,1İstismar yokEPSS %4php · php16 Haz 2022
- CVE-2024-619731İzleyin
freeing stack buffer in utf8asn1str
YüksekCVSS 7,5İstismar yokEPSS %4haxx · libcurl24 Tem 2024
- CVE-2025-5489931İzleyin
Microsoft Excel Remote Code Execution Vulnerability
YüksekCVSS 7,8İstismar yokEPSS %1microsoft · 365 apps9 Eyl 2025
- CVE-2026-2081031İzleyin
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
YüksekCVSS 7,8İstismar yokEPSS %1microsoft · windows 10 180913 Oca 2026
- CVE-2023-2229131İzleyin
An invalid free vulnerability exists in the Frame stream parser functionality of Ichitaro 2022 1.0.1.57600.
YüksekCVSS 7,8İstismar yokEPSS %0justsystems · ichitaro 20225 Nis 2023
- CVE-2021-393931İzleyin
Free of static data in accountsservice
YüksekCVSS 7,8İstismar yokEPSS %0canonical · accountsservice17 Kas 2021
- CVE-2026-8916131İzleyin
In PCRE2 before 10.48, pcre2_jit_match mishandles a previously copied subject being passed in as a context.
YüksekCVSS 7,8İstismar yokEPSS %0pcre · pcre211 Eyl 2026
- CVE-2023-2556530İzleyin
GSS-NTLMSSP vulnerable to incorrect free when decoding target information
YüksekCVSS 7,5İstismar yokEPSS %1gss-ntlmssp project · gss-ntlmssp14 Şub 2023
- CVE-2025-4299430İzleyin
Multiple vulnerabilities in SAP MDM Server
YüksekCVSS 7,5İstismar yokEPSS %0sap_se · sap mdm server9 Haz 2025
- CVE-2025-4299530İzleyin
Multiple vulnerabilities in SAP MDM Server
YüksekCVSS 7,5İstismar yokEPSS %0sap_se · sap mdm server9 Haz 2025
- CVE-2026-4732824İzleyin
Invalid pointer deallocation in Ubuntu Linux AppArmor notification handling
OrtaCVSS 6,1İstismar yokEPSS %0canonical · ubuntu linux28 May 2026
- CVE-2026-1858222İzleyin
mz-automation libiec61850 Report Sending Path reporting.c Reporting_RCBWriteAccessHandler free of memory not on the heap
OrtaCVSS 5,5İstismar yokEPSS %1mz-automation · libiec618502 Ağu 2026
- CVE-2025-4299622İzleyin
Multiple vulnerabilities in SAP MDM Server
OrtaCVSS 5,6İstismar yokEPSS %0sap_se · sap mdm server9 Haz 2025
- CVE-2025-700622İzleyin
Avast antivirus use of stack memory after free when scanning a malformed PE file
OrtaCVSS 5,5İstismar yokEPSS %0gen digital · avast antivirus12 Haz 2026
- CVE-2025-58997İzleyin
GNU PSPP pspp-convert.c parse_variables_option free of memory not on the heap
DüşükCVSS 1,9İstismar yokEPSS %0gnu · pspp9 Haz 2025