Weaknesses of type CWE-416

5,149 results

Uso após liberação de memória

Ocorre quando o código tenta acessar um bloco de memória que já foi desalocado (free/delete). O ponteiro continua apontando para aquele endereço, mas o dado ali pode ter sido sobrescrito por outra operação, causando comportamento impredizível, corrupção de dados ou execução de código arbitrário.

Example

Um buffer é alocado, depois liberado com free(). Mais adiante, o código ainda tenta ler ou escrever naquele mesmo ponteiro sem verificar. Se um atacante controlar a alocação subsequente daquele endereço, consegue manipular o conteúdo que será lido.

How to mitigate

Anule o ponteiro imediatamente após liberar (ptr = NULL), implemente análise estática para detectar acessos pós-liberação, use ferramentas como valgrind ou AddressSanitizer nos testes, e considere linguagens com gerenciamento automático de memória para código sensível.

CVE-2024-47040CRITICALUse After Free in the android.hardware.radio.sap.ISap/slot2 serviceEPSS 0.2%CVE-2023-49676MEDIUMCODESYS: Use after free vulnerability through corrupted project filesEPSS 0.2%CVE-2022-20524HIGHIn compose of Vibrator.cpp, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of priEPSS 0.2%CVE-2025-8045MEDIUMMali GPU Kernel Driver allows improper GPU processing operationsEPSS 0.2%CVE-2023-1859MEDIUMA use-after-free flaw was found in xen_9pfs_front_removet in net/9p/trans_xen.c in Xen transport for 9pfs in the Linux Kernel. This flaw couEPSS 0.2%CVE-2026-27813MEDIUMEVerest has use-after-free in auth timeout timer via race conditionEPSS 0.2%CVE-2026-49496MEDIUMGhidra < 12.1 - Heap-Use-After-Free in SleighBuilder::generatePointerAdd via Vector ReallocationEPSS 0.2%CVE-2026-12451HIGHUse after free in DigitalCredentials in Google Chrome prior to 149.0.7827.155 allowed a remote attacker who had compromised the renderer proEPSS 0.2%CVE-2026-5398HIGHKernel use-after-free bug in the TIOCNOTTY handlerEPSS 0.2%CVE-2026-63729MEDIUMTeX Live SyncTeX Parser Heap Use-After-Free via Malformed SyncTeX FileEPSS 0.2%CVE-2026-56131MEDIUMlibexpat before 2.8.2 lacks handler call depth tracking for calls to XML_ResumeParser from within handlers in cases of a policy violation. TEPSS 0.2%CVE-2025-22412HIGHIn multiple functions of sdp_server.cc, there is a possible use after free due to a logic error in the code. This could lead to remote (proxEPSS 0.2%CVE-2026-53359HIGHKVM: x86: Fix shadow paging use-after-free due to unexpected roleEPSS 0.2%CVE-2026-3777MEDIUMUse after free of view cache in Foxit PDF Editor/ReaderEPSS 0.2%CVE-2026-57256HIGHFoxit Editor/Reader List Box Format Use-After-Free VulnerabilityEPSS 0.2%CVE-2022-29919HIGHUse after free in the Intel(R) VROC software before version 7.7.6.1003 may allow an authenticated user to potentially enable escalation of pEPSS 0.2%CVE-2026-2889MEDIUMCCExtractor mp4.c processmp4 use after freeEPSS 0.2%CVE-2026-12014HIGHUse after free in Cast in Google Chrome prior to 149.0.7827.115 allowed an attacker on the local network segment to potentially perform a saEPSS 0.2%CVE-2026-84506HIGHA use after free issue was addressed with improved memory management. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOSEPSS 0.2%CVE-2026-10001HIGHUse after free in PerformanceManager in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer proEPSS 0.2%