İçeriğe atla
Noroxi

CWE-763 · 90 kayıt

Release of Invalid Pointer or Reference

Bu sınıftaki CVE’ler

90 kayıt

  • CVE-2019-11930
    40Planlayın

    An invalid free in mb_detect_order can cause the application to crash or potentially result in remote code execution.

    KritikCVSS 9,8İstismar yokEPSS %3

    facebook · hhvm4 Ara 2019

  • CVE-2018-6836
    40Planlayın

    The netmonrec_comment_destroy function in wiretap/netmon.c in Wireshark through 2.4.4 performs a free operation on an uninitialized memory a

    KritikCVSS 9,8İstismar yokEPSS %3

    wireshark · wireshark8 Şub 2018

  • CVE-2021-30473
    40Planlayın

    aom_image.c in libaom in AOMedia before 2021-04-07 frees memory that is not located on the heap.

    KritikCVSS 9,8İstismar yokEPSS %2

    aomedia · aomedia6 May 2021

  • CVE-2020-11105
    40Planlayın

    An issue was discovered in USC iLab cereal through 1.3.0.

    KritikCVSS 9,8İstismar yokEPSS %2

    usc · cereal30 Mar 2020

  • CVE-2021-24028
    40Planlayın

    An invalid free in Thrift's table-based serialization can cause the application to crash or potentially result in code execution or other un

    KritikCVSS 9,8İstismar yokEPSS %2

    facebook · thrift13 Nis 2021

  • CVE-2007-4367
    39İzleyin

    Opera before 9.23 allows remote attackers to execute arbitrary code via crafted Javascript that triggers a "virtual function call on an inva

    KritikCVSS 9,3İstismar yokEPSS %8

    opera · opera browser15 Ağu 2007

  • CVE-2020-0103
    39İzleyin

    In a2dp_aac_decoder_cleanup of a2dp_aac_decoder.cc, there is a possible invalid free due to memory corruption.

    KritikCVSS 9,8İstismar yokEPSS %2

    google · android14 May 2020

  • CVE-2024-44852
    39İzleyin

    Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a segmentation violation via the component thet

    KritikCVSS 9,8İstismar yokEPSS %1

    openrobotics · robot operating system6 Ara 2024

  • CVE-2026-22770
    39İzleyin

    ImageMagick vulnerable to Release of Invalid Pointer in BilateralBlur when memory allocation fails

    KritikCVSS 9,8İstismar yokEPSS %0

    imagemagick · imagemagick19 Oca 2026

  • CVE-2025-14233
    37İzleyin

    Invalid free in CPCA file deletion processing on Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on th

    KritikCVSS 9,3İstismar yokEPSS %1

    canon · lbp1238 ii firmware15 Oca 2026

  • CVE-2025-25215
    36İzleyin

    Dell ControlVault3/ControlVault3 Plus cv_close arbitrary free vulnerability

    YüksekCVSS 8,8İstismar yokEPSS %3

    broadcom · bcm5820x13 Haz 2025

  • CVE-2021-3682
    35İzleyin

    A flaw was found in the USB redirector device emulation of QEMU in versions prior to 6.1.0-rc2.

    YüksekCVSS 8,5İstismar yokEPSS %3

    qemu · qemu5 Ağu 2021

  • CVE-2024-6607
    35İzleyin

    Leaving pointerlock by pressing the escape key could be prevented

    YüksekCVSS 8,8İstismar yokEPSS %1

    mozilla · firefox9 Tem 2024

  • CVE-2026-74947
    35İzleyin

    Privilege escalation due to invalid pointer in the Graphics component

    YüksekCVSS 8,8İstismar yokEPSS %0

    mozilla · firefox18 Ağu 2026

  • CVE-2026-84131
    35İzleyin

    Privilege escalation due to invalid pointer in the Graphics component

    YüksekCVSS 8,8İstismar yokEPSS %0

    mozilla · firefox1 Eyl 2026

  • CVE-2022-42309
    35İzleyin

    Xenstore: Guests can crash xenstored Due to a bug in the fix of XSA-115 a malicious guest can cause xenstored to use a wrong pointer during

    YüksekCVSS 8,8İstismar yokEPSS %0

    xen · xen1 Kas 2022

  • CVE-2026-100813
    35İzleyin

    Invalid pointer in the JavaScript Engine: JIT component

    YüksekCVSS 8,8İstismar yok

    mozilla · firefox1 gün önce

  • CVE-2025-11838
    34İzleyin

    WatchGuard Firebox iked Memory Corruption Vulnerability

    YüksekCVSS 8,7İstismar yokEPSS %0

    watchguard · fireware4 Ara 2025

  • CVE-2026-74860
    34İzleyin

    Libxml2: double-free/uaf in libxml2 python bindings

    YüksekCVSS 8,5İstismar yokEPSS %0

    red hat · red hat enterprise linux 108 Eyl 2026

  • CVE-2025-13824
    34İzleyin

    Micro820®, Micro850®, Micro870® – Specialized Fuzzing Vulnerabilities

    YüksekCVSS 8,7İstismar yokEPSS %0

    rockwell automation · micro820®, micro850®, micro870®15 Ara 2025

  • CVE-2013-4695
    33İzleyin

    Winamp 5.63: Invalid Pointer Dereference leading to Arbitrary Code Execution

    YüksekCVSS 7,8Kavram kanıtıEPSS %5

    winamp · winamp27 Ara 2019

  • CVE-2021-41073
    32İzleyin

    loop_rw_iter in fs/io_uring.c in the Linux kernel 5.10 through 5.14.6 allows local users to gain privileges by using IORING_OP_PROVIDE_BUFFE

    YüksekCVSS 7,8Kavram kanıtıEPSS %2

    linux · linux kernel19 Eyl 2021

  • CVE-2020-36224
    31İzleyin

    A flaw was discovered in OpenLDAP before 2.4.57 leading to an invalid pointer free and slapd crash in the saslAuthzTo processing, resulting

    YüksekCVSS 7,5İstismar yokEPSS %4

    openldap · openldap26 Oca 2021

  • CVE-2022-37451
    31İzleyin

    Exim before 4.96 has an invalid free in pam_converse in auths/call_pam.c because store_free is not used after store_malloc.

    YüksekCVSS 7,5İstismar yokEPSS %3

    exim · exim6 Ağu 2022

  • CVE-2020-5139
    31İzleyin

    A vulnerability in SonicOS SSLVPN service allows a remote unauthenticated attacker to cause Denial of Service (DoS) due to the release of In

    YüksekCVSS 7,5İstismar yokEPSS %2

    sonicwall · sonicos12 Eki 2020

Tüm zafiyet sınıfları