Weaknesses of type CWE-416

5,043 results

Uso após liberação de memória

Ocorre quando o código tenta acessar um bloco de memória que já foi desalocado (free/delete). O ponteiro continua apontando para aquele endereço, mas o dado ali pode ter sido sobrescrito por outra operação, causando comportamento impredizível, corrupção de dados ou execução de código arbitrário.

Example

Um buffer é alocado, depois liberado com free(). Mais adiante, o código ainda tenta ler ou escrever naquele mesmo ponteiro sem verificar. Se um atacante controlar a alocação subsequente daquele endereço, consegue manipular o conteúdo que será lido.

How to mitigate

Anule o ponteiro imediatamente após liberar (ptr = NULL), implemente análise estática para detectar acessos pós-liberação, use ferramentas como valgrind ou AddressSanitizer nos testes, e considere linguagens com gerenciamento automático de memória para código sensível.

CVE-2026-20920HIGHWin32k Elevation of Privilege VulnerabilityEPSS 0.5%CVE-2023-42098LOWFoxit PDF Reader Annotation Use-After-Free Information Disclosure VulnerabilityEPSS 0.5%CVE-2023-21724HIGHMicrosoft DWM Core Library Elevation of Privilege VulnerabilityEPSS 0.5%CVE-2024-3187MEDIUMThis issue tracks two CWE-416 Use After Free (UAF) and one CWE-415 Double Free vulnerabilities in Goahead versions <= 6.0.0. These are causeEPSS 0.5%CVE-2024-43570MEDIUMWindows Kernel Elevation of Privilege VulnerabilityEPSS 0.5%CVE-2018-6555—The irda_setsockopt function in net/irda/af_irda.c and later in drivers/staging/irda/net/af_irda.c in the Linux kernel before 4.17 allows loEPSS 0.5%CVE-2023-51568LOWKofax Power PDF OXPS File Parsing Use-After-Free Information Disclosure VulnerabilityEPSS 0.5%CVE-2026-7531LOWUse-after-free in PQC hybrid key-share handlingEPSS 0.5%CVE-2024-50106CRITICALnfsd: fix race between laundromat and free_stateidEPSS 0.5%CVE-2021-20227—A flaw was found in SQLite's SELECT query functionality (src/select.c). This flaw allows an attacker who is capable of running SQL queries lEPSS 0.5%CVE-2026-15765HIGHUse after free in Ozone in Google Chrome prior to 150.0.7871.125 allowed a remote attacker who convinced a user to engage in specific UI gesEPSS 0.5%CVE-2026-15764HIGHUse after free in Ozone in Google Chrome on Linux prior to 150.0.7871.125 allowed a remote attacker who convinced a user to engage in specifEPSS 0.5%CVE-2025-3030HIGHMemory safety bugs fixed in Firefox 137, Thunderbird 137, Firefox ESR 128.9, and Thunderbird 128.9EPSS 0.5%CVE-2024-21803LOWPossible UAF in bt_accept_poll in Linux kernelEPSS 0.5%CVE-2026-20950HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 0.5%CVE-2026-9080HIGHUAF after pause in socket callbackEPSS 0.5%CVE-2023-21755HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 0.5%CVE-2026-53415HIGHZoom Clients - Use After FreeEPSS 0.5%CVE-2026-18711HIGHUse-After-Free in MongoDB Query Execution Engine Leads to Denial of Service and Potential Memory DisclosureEPSS 0.5%CVE-2025-53784HIGHMicrosoft Word Remote Code Execution VulnerabilityEPSS 0.5%