Weaknesses of type CWE-416

5,138 results

Uso após liberação de memória

Ocorre quando o código tenta acessar um bloco de memória que já foi desalocado (free/delete). O ponteiro continua apontando para aquele endereço, mas o dado ali pode ter sido sobrescrito por outra operação, causando comportamento impredizível, corrupção de dados ou execução de código arbitrário.

Example

Um buffer é alocado, depois liberado com free(). Mais adiante, o código ainda tenta ler ou escrever naquele mesmo ponteiro sem verificar. Se um atacante controlar a alocação subsequente daquele endereço, consegue manipular o conteúdo que será lido.

How to mitigate

Anule o ponteiro imediatamente após liberar (ptr = NULL), implemente análise estática para detectar acessos pós-liberação, use ferramentas como valgrind ou AddressSanitizer nos testes, e considere linguagens com gerenciamento automático de memória para código sensível.

CVE-2024-1848HIGHMultiple vulnerabilities exist in file reading procedure in SOLIDWORKS Desktop on Release SOLIDWORKS 2024EPSS 0.3%CVE-2026-103622HIGHUse after free in SVG in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code inside the sandbox via a cEPSS 0.3%CVE-2022-49493HIGHASoC: rt5645: Fix errorenous cleanup orderEPSS 0.3%CVE-2024-53173HIGHNFSv4.0: Fix a use-after-free problem in the asynchronous open()EPSS 0.3%CVE-2026-100797HIGHPrivilege escalation due to use-after-free in the Graphics: WebRender componentEPSS 0.3%CVE-2022-49129HIGHmt76: mt7921: fix crash when startup fails.EPSS 0.3%CVE-2025-21791HIGHvrf: use RCU protection in l3mdev_l3_out()EPSS 0.3%CVE-2022-49258HIGHcrypto: ccree - Fix use after free in cc_cipher_exit()EPSS 0.3%CVE-2022-49223HIGHcxl/port: Hold port reference until decoder releaseEPSS 0.3%CVE-2022-49270HIGHdm: fix use-after-free in dm_cleanup_zoned_dev()EPSS 0.3%CVE-2024-31583HIGHPytorch before version v2.2.0 was discovered to contain a use-after-free vulnerability in torch/csrc/jit/mobile/interpreter.cpp.EPSS 0.3%CVE-2026-7940HIGHUse after free in V8 in Google Chrome prior to 148.0.7778.96 allowed an attacker who convinced a user to install a malicious extension to exEPSS 0.3%CVE-2021-47653HIGHmedia: davinci: vpif: fix use-after-free on driver unbindEPSS 0.3%CVE-2026-84641HIGHInformation disclosure due to malicious IMAP server responseEPSS 0.3%CVE-2026-10961HIGHUse after free in Chrome for iOS in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer pEPSS 0.3%CVE-2026-9923HIGHUse after free in Skia in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to potentially exploit heap corruption via a craftEPSS 0.3%CVE-2024-30386HIGHJunos OS and Junos OS Evolved: In a EVPN-VXLAN scenario state changes on adjacent systems can cause an l2ald process crashEPSS 0.3%CVE-2026-10933HIGHUse after free in Audio in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer procesEPSS 0.3%CVE-2026-7901HIGHUse after free in ANGLE in Google Chrome on Mac prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary code inside a sandbox EPSS 0.3%CVE-2026-11061CRITICALType Confusion in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafEPSS 0.3%