Weaknesses of type CWE-416

5,138 results

Uso após liberação de memória

Ocorre quando o código tenta acessar um bloco de memória que já foi desalocado (free/delete). O ponteiro continua apontando para aquele endereço, mas o dado ali pode ter sido sobrescrito por outra operação, causando comportamento impredizível, corrupção de dados ou execução de código arbitrário.

Example

Um buffer é alocado, depois liberado com free(). Mais adiante, o código ainda tenta ler ou escrever naquele mesmo ponteiro sem verificar. Se um atacante controlar a alocação subsequente daquele endereço, consegue manipular o conteúdo que será lido.

How to mitigate

Anule o ponteiro imediatamente após liberar (ptr = NULL), implemente análise estática para detectar acessos pós-liberação, use ferramentas como valgrind ou AddressSanitizer nos testes, e considere linguagens com gerenciamento automático de memória para código sensível.

CVE-2026-11116HIGHUse after free in Chromoting in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via malicious netwoEPSS 0.3%CVE-2023-31974MEDIUMyasm v1.3.0 was discovered to contain a use after free via the function error at /nasm/nasm-pp.c. Note: Multiple third parties dispute this EPSS 0.3%CVE-2022-49426HIGHiommu/arm-smmu-v3-sva: Fix mm use-after-freeEPSS 0.3%CVE-2024-56631HIGHscsi: sg: Fix slab-use-after-free read in sg_release()EPSS 0.3%CVE-2022-49377HIGHblk-mq: don't touch ->tagset in blk_mq_get_sq_hctxEPSS 0.3%CVE-2026-32156HIGHWindows UPnP Device Host Remote Code Execution VulnerabilityEPSS 0.3%CVE-2023-31972MEDIUMyasm v1.3.0 was discovered to contain a use after free via the function pp_getline at /nasm/nasm-pp.c. Note: Multiple third parties dispute EPSS 0.3%CVE-2025-59210HIGHWindows Resilient File System (ReFS) Deduplication Service Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2026-9887HIGHUse after free in Proxy in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to execute arbitrary code via a crafted PAC scripEPSS 0.3%CVE-2023-52973HIGHvc_screen: move load of struct vc_data pointer in vcs_read() to avoid UAFEPSS 0.3%CVE-2026-84125MEDIUMUse-after-free in the DOM: Core & HTML componentEPSS 0.3%CVE-2023-31725MEDIUMyasm 1.3.0.55.g101bc was discovered to contain a heap-use-after-free via the function expand_mmac_params at yasm/modules/preprocs/nasm/nasm-EPSS 0.3%CVE-2026-12007HIGHUse after free in Core in Google Chrome on Windows prior to 149.0.7827.115 allowed a remote attacker to execute arbitrary code via a craftedEPSS 0.3%CVE-2026-84118MEDIUMUse-after-free in the JavaScript: GC componentEPSS 0.3%CVE-2026-11012HIGHUse after free in Serial in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer proceEPSS 0.3%CVE-2025-6661HIGHPDF-XChange Editor App Object Use-After-Free Remote Code Execution VulnerabilityEPSS 0.3%CVE-2026-10918HIGHUse after free in Viz in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentiaEPSS 0.3%CVE-2026-10894HIGHUse after free in Printing in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer proceEPSS 0.3%CVE-2026-11010HIGHUse after free in WebShare in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer proEPSS 0.3%CVE-2025-6640HIGHPDF-XChange Editor U3D File Parsing Use-After-Free Remote Code Execution VulnerabilityEPSS 0.3%