Weaknesses of type CWE-416

5,184 results

Uso após liberação de memória

Ocorre quando o código tenta acessar um bloco de memória que já foi desalocado (free/delete). O ponteiro continua apontando para aquele endereço, mas o dado ali pode ter sido sobrescrito por outra operação, causando comportamento impredizível, corrupção de dados ou execução de código arbitrário.

Example

Um buffer é alocado, depois liberado com free(). Mais adiante, o código ainda tenta ler ou escrever naquele mesmo ponteiro sem verificar. Se um atacante controlar a alocação subsequente daquele endereço, consegue manipular o conteúdo que será lido.

How to mitigate

Anule o ponteiro imediatamente após liberar (ptr = NULL), implemente análise estática para detectar acessos pós-liberação, use ferramentas como valgrind ou AddressSanitizer nos testes, e considere linguagens com gerenciamento automático de memória para código sensível.

CVE-2025-0031MEDIUMA use after free in the SEV firmware could allow a malicous hypervisor to activate a migrated guest with the SINGLE_SOCKET policy on a diffeEPSS 0.1%CVE-2023-33108HIGHUse After Free in GraphicsEPSS 0.1%CVE-2023-33114HIGHUse after free in Neural Processing UnitEPSS 0.1%CVE-2026-34983LOWWasmtime has a use-after-free bug after cloning `wasmtime::Linker`EPSS 0.1%CVE-2026-21102CRITICALUse after free in DualDAR prior to SMR Sep-2026 Release 1 allows local privileged attackers to execute arbitrary code with root privilege.EPSS 0.1%CVE-2026-100503MEDIUMGhidra through 12.1.4 Heap Use-After-Free in DecompilerEPSS 0.1%CVE-2024-27213HIGHIn BroadcastSystemMessage of servicemgr.cpp, there is a possible Remote Code Execution due to a use after free. This could lead to local escEPSS 0.1%CVE-2026-97222MEDIUMGnumeric: gnumeric: heap use-after-free when opening a malformed workbookEPSS 0.1%CVE-2024-45580HIGHUse After Free in DSP ServiceEPSS 0.1%CVE-2024-43059HIGHUse After Free in Automotive MultimediaEPSS 0.1%CVE-2026-47597HIGHNVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the open-source kernel module Resource Server where an unprivileEPSS 0.1%CVE-2025-21424HIGHUse After Free in NPUEPSS 0.1%CVE-2024-53023HIGHUse After Free in Automotive Android OSEPSS 0.1%CVE-2024-43057HIGHUse After Free in MProcEPSS 0.1%CVE-2024-43062HIGHUse After Free in Camera LinuxEPSS 0.1%CVE-2024-43061HIGHUse After Free in AudioEPSS 0.1%CVE-2024-23382HIGHUse After Free in Graphics LinuxEPSS 0.1%CVE-2026-91816HIGHFoxit PDF Editor/Reader AcroForm Use-After-Free Remote Code Execution VulnerabilityEPSS 0.1%CVE-2022-33292HIGHUse after free in Qualcomm IPCEPSS 0.1%CVE-2023-21672HIGHUse After Free in AudioEPSS 0.1%