Weaknesses of type CWE-416

5,184 results

Uso após liberação de memória

Ocorre quando o código tenta acessar um bloco de memória que já foi desalocado (free/delete). O ponteiro continua apontando para aquele endereço, mas o dado ali pode ter sido sobrescrito por outra operação, causando comportamento impredizível, corrupção de dados ou execução de código arbitrário.

Example

Um buffer é alocado, depois liberado com free(). Mais adiante, o código ainda tenta ler ou escrever naquele mesmo ponteiro sem verificar. Se um atacante controlar a alocação subsequente daquele endereço, consegue manipular o conteúdo que será lido.

How to mitigate

Anule o ponteiro imediatamente após liberar (ptr = NULL), implemente análise estática para detectar acessos pós-liberação, use ferramentas como valgrind ou AddressSanitizer nos testes, e considere linguagens com gerenciamento automático de memória para código sensível.

CVE-2026-12387MEDIUMMali GPU Kernel Driver allows access to already freed memoryEPSS 0.1%CVE-2026-11891MEDIUMMali GPU Userspace Driver allows access to already freed memoryEPSS 0.1%CVE-2023-43521MEDIUMUse After Free in HLOSEPSS 0.1%CVE-2026-13844HIGHUse after free in Updater in Google Chrome on Windows prior to 150.0.7871.47 allowed a local attacker to perform OS-level privilege escalatiEPSS 0.1%CVE-2026-20536MEDIUMIn aidl, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor EPSS 0.1%CVE-2026-20537MEDIUMIn aidl, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor EPSS 0.1%CVE-2024-45554HIGHUse After Free in DSP ServiceEPSS 0.1%CVE-2026-34859MEDIUMUAF vulnerability in the kernel module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.EPSS 0.1%CVE-2025-47398HIGHUse After Free in GraphicsEPSS 0.1%CVE-2023-20849MEDIUMIn imgsys_cmdq, there is a possible use after free due to a missing valid range checking. This could lead to local escalation of privilege wEPSS 0.1%CVE-2026-76957MEDIUMlibexpat before 2.8.4 lacks handler call depth tracking with custom encoding callbacks. Thus, a use-after-free can occur. NOTE: this is simiEPSS 0.1%CVE-2025-21436HIGHUse After Free in DSP ServiceEPSS 0.1%CVE-2025-21453HIGHUse After Free in GPS HLOS DriverEPSS 0.1%CVE-2025-21437HIGHUse After Free in Automotive Linux OSEPSS 0.1%CVE-2026-11072HIGHUse after free in WebView in Google Chrome on Android prior to 149.0.7827.53 allowed a local attacker to execute arbitrary code via a maliciEPSS 0.1%CVE-2022-36855MEDIUMA use after free vulnerability in iva_ctl driver prior to SMR Sep-2022 Release 1 allows attacker to cause memory access fault.EPSS 0.1%CVE-2022-20372HIGHIn exynos5_i2c_irq of (TBD), there is a possible out of bounds write due to a use after free. This could lead to local escalation of privileEPSS 0.1%CVE-2026-105249LOWvgmstream TXTP File txtp_process.c make_group_random use after freeEPSS 0.1%CVE-2026-24917MEDIUMUAF vulnerability in the security module. Impact: Successful exploitation of this vulnerability may affect availability.EPSS 0.1%CVE-2026-20414MEDIUMIn imgsys, there is a possible escalation of privilege due to use after free. This could lead to local escalation of privilege if a maliciouEPSS 0.1%