Weaknesses of type CWE-416

5,143 results

Uso após liberação de memória

Ocorre quando o código tenta acessar um bloco de memória que já foi desalocado (free/delete). O ponteiro continua apontando para aquele endereço, mas o dado ali pode ter sido sobrescrito por outra operação, causando comportamento impredizível, corrupção de dados ou execução de código arbitrário.

Example

Um buffer é alocado, depois liberado com free(). Mais adiante, o código ainda tenta ler ou escrever naquele mesmo ponteiro sem verificar. Se um atacante controlar a alocação subsequente daquele endereço, consegue manipular o conteúdo que será lido.

How to mitigate

Anule o ponteiro imediatamente após liberar (ptr = NULL), implemente análise estática para detectar acessos pós-liberação, use ferramentas como valgrind ou AddressSanitizer nos testes, e considere linguagens com gerenciamento automático de memória para código sensível.

CVE-2023-1652HIGHA use-after-free flaw was found in nfsd4_ssc_setup_dul in fs/nfsd/nfs4proc.c in the NFS filesystem in the Linux Kernel. This issue could allEPSS 0.2%CVE-2024-3857HIGHThe JIT created incorrect code for arguments in certain cases. This led to potential use-after-free crashes during garbage collection. This EPSS 0.2%CVE-2025-10994MEDIUMOpen Babel gamessformat.cpp ReadMolecule use after freeEPSS 0.2%CVE-2026-65341MEDIUMThe issue was addressed with improved memory handling. This issue is fixed in Safari 26.6.1, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6.1 and EPSS 0.2%CVE-2023-1611MEDIUMA use-after-free flaw was found in btrfs_search_slot in fs/btrfs/ctree.c in btrfs in the Linux Kernel.This flaw allows an attacker to crash EPSS 0.2%CVE-2025-21858HIGHgeneve: Fix use-after-free in geneve_find_dev().EPSS 0.2%CVE-2026-6297HIGHUse after free in Proxy in Google Chrome prior to 147.0.7727.101 allowed an attacker in a privileged network position to potentially performEPSS 0.2%CVE-2024-56693HIGHbrd: defer automatic disk creation until module initialization succeedsEPSS 0.2%CVE-2026-11224HIGHUse after free in Chromoting in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code via maliciEPSS 0.2%CVE-2026-58543MEDIUMUniversal Print Management Service Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2024-50150HIGHusb: typec: altmode should keep reference to parentEPSS 0.2%CVE-2022-2978—A flaw use after free in the Linux kernel NILFS file system was found in the way user triggers function security_inode_alloc to fail with foEPSS 0.2%CVE-2026-11673HIGHUse after free in InterestGroups in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary code inside a sandbEPSS 0.2%CVE-2024-56642HIGHtipc: Fix use-after-free of kernel socket in cleanup_bearer().EPSS 0.2%CVE-2025-55644MEDIUMA heap use-after-free in the gf_node_get_tag function (scenegraph/base_scenegraph.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial EPSS 0.2%CVE-2025-14372MEDIUMUse after free in Password Manager in Google Chrome prior to 143.0.7499.110 allowed a remote attacker to potentially perform a sandbox escapEPSS 0.2%CVE-2025-23101MEDIUMAn issue was discovered in Samsung Mobile Processor Exynos 1380. A Use-After-Free in the mobile processor leads to privilege escalation.EPSS 0.2%CVE-2026-11674HIGHUse after free in Guest View in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary code inside a sandbox vEPSS 0.2%CVE-2024-56600HIGHnet: inet6: do not leave a dangling sk pointer in inet6_create()EPSS 0.2%CVE-2026-11671CRITICALUse after free in Navigation in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to potentially perform a sandbox escape via EPSS 0.2%