Weaknesses of type CWE-416

5,134 results

Uso após liberação de memória

Ocorre quando o código tenta acessar um bloco de memória que já foi desalocado (free/delete). O ponteiro continua apontando para aquele endereço, mas o dado ali pode ter sido sobrescrito por outra operação, causando comportamento impredizível, corrupção de dados ou execução de código arbitrário.

Example

Um buffer é alocado, depois liberado com free(). Mais adiante, o código ainda tenta ler ou escrever naquele mesmo ponteiro sem verificar. Se um atacante controlar a alocação subsequente daquele endereço, consegue manipular o conteúdo que será lido.

How to mitigate

Anule o ponteiro imediatamente após liberar (ptr = NULL), implemente análise estática para detectar acessos pós-liberação, use ferramentas como valgrind ou AddressSanitizer nos testes, e considere linguagens com gerenciamento automático de memória para código sensível.

CVE-2022-45343HIGHGPAC v2.1-DEV-rev478-g696e6f868-master was discovered to contain a heap use-after-free via the Q_IsTypeOn function at /gpac/src/bifs/unquantEPSS 0.3%CVE-2023-28830HIGHA vulnerability has been identified in JT2Go (All versions < V14.2.0.5), Solid Edge SE2022 (All versions < V222.0 Update 13), Solid Edge SE2EPSS 0.3%CVE-2025-62569HIGHMicrosoft Brokering File System Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2024-41965MEDIUMVim < v9.1.0648 has a double-free in dialog_changed()EPSS 0.3%CVE-2026-4454HIGHUse after free in Network in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption via a crEPSS 0.3%CVE-2026-4446HIGHUse after free in WebRTC in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption via a craEPSS 0.3%CVE-2026-4445HIGHUse after free in WebRTC in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption via a craEPSS 0.3%CVE-2026-4456HIGHUse after free in Digital Credentials API in Google Chrome prior to 146.0.7680.153 allowed a remote attacker who had compromised the rendereEPSS 0.3%CVE-2026-4449HIGHUse after free in Blink in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption via a crafEPSS 0.3%CVE-2026-12439HIGHUse after free in Digital Credentials in Google Chrome prior to 149.0.7827.155 allowed a remote attacker to potentially exploit heap corruptEPSS 0.3%CVE-2022-49535HIGHscsi: lpfc: Fix null pointer dereference after failing to issue FLOGI and PLOGIEPSS 0.3%CVE-2022-49168HIGHbtrfs: do not clean up repair bio if submit failsEPSS 0.3%CVE-2025-55224HIGHWindows Hyper-V Remote Code Execution VulnerabilityEPSS 0.3%CVE-2024-41168HIGHUse after free in some Intel(R) PROSet/Wireless WiFi and Killerâ„¢ WiFi software for Windows before version 23.80 may allow an unauthenticatEPSS 0.3%CVE-2023-24914HIGHWin32k Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2025-2136HIGHUse after free in Inspector in Google Chrome prior to 134.0.6998.88 allowed a remote attacker to potentially exploit heap corruption via a cEPSS 0.3%CVE-2022-41285HIGHA vulnerability has been identified in JT2Go (All versions < V14.1.0.6), Teamcenter Visualization V13.2 (All versions < V13.2.0.12), TeamcenEPSS 0.3%CVE-2022-1998—A use after free in the Linux kernel File System notify functionality was found in the way user triggers copy_info_records_to_user() call toEPSS 0.3%CVE-2025-59515HIGHWindows Broadcast DVR User Service Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2025-60717HIGHWindows Broadcast DVR User Service Elevation of Privilege VulnerabilityEPSS 0.3%