Weaknesses of type CWE-416

5,184 results

Uso após liberação de memória

Ocorre quando o código tenta acessar um bloco de memória que já foi desalocado (free/delete). O ponteiro continua apontando para aquele endereço, mas o dado ali pode ter sido sobrescrito por outra operação, causando comportamento impredizível, corrupção de dados ou execução de código arbitrário.

Example

Um buffer é alocado, depois liberado com free(). Mais adiante, o código ainda tenta ler ou escrever naquele mesmo ponteiro sem verificar. Se um atacante controlar a alocação subsequente daquele endereço, consegue manipular o conteúdo que será lido.

How to mitigate

Anule o ponteiro imediatamente após liberar (ptr = NULL), implemente análise estática para detectar acessos pós-liberação, use ferramentas como valgrind ou AddressSanitizer nos testes, e considere linguagens com gerenciamento automático de memória para código sensível.

CVE-2026-91809HIGHFoxit PDF Editor/Reader Annotation Use-After-Free Information Disclosure VulnerabilityEPSS 0.1%CVE-2026-91816HIGHFoxit PDF Editor/Reader AcroForm Use-After-Free Remote Code Execution VulnerabilityEPSS 0.1%CVE-2023-21672HIGHUse After Free in AudioEPSS 0.1%CVE-2024-31339HIGHIn multiple functions of StatsService.cpp, there is a possible memory corruption due to a use after free. This could lead to local escalatioEPSS 0.1%CVE-2023-33029HIGHUse After Free in DSP ServiceEPSS 0.1%CVE-2026-91818HIGHFoxit PDF Editor/Reader Annotation Use-After-Free Remote Code Execution VulnerabilityEPSS 0.1%CVE-2026-91806HIGHFoxit PDF Editor/Reader Doc Object Use-After-Free Information Disclosure VulnerabilityEPSS 0.1%CVE-2022-33292HIGHUse after free in Qualcomm IPCEPSS 0.1%CVE-2024-45566HIGHUse After Free in Camera DriverEPSS 0.1%CVE-2024-43066HIGHUse After Free in HLOSEPSS 0.1%CVE-2026-25274MEDIUMUse After Free in Windows WLAN HostEPSS 0.1%CVE-2022-33263MEDIUMUse after free in CoreEPSS 0.1%CVE-2024-45567HIGHUse After Free in Camera DriverEPSS 0.1%CVE-2022-33298MEDIUMUse after free in ModemEPSS 0.1%CVE-2024-45564HIGHUse After Free in HLOSEPSS 0.1%CVE-2026-10232MEDIUMAssimp ASE File scene.cpp ~aiNode use after freeEPSS 0.1%CVE-2024-39672HIGHMemory request logic vulnerability in the memory module. Impact: Successful exploitation of this vulnerability will affect integrity and avaEPSS 0.1%CVE-2026-20506MEDIUMIn Audio HAL, there is a possible escalation of privilege due to use after free. This could lead to local escalation of privilege if a malicEPSS 0.1%CVE-2024-23384HIGHUse After Free in Graphics LinuxEPSS 0.1%CVE-2026-93586LOWImageMagick before 7.1.2-31 Use After Free via ImagesToBlobEPSS 0.1%