Weaknesses of type CWE-416

5,184 results

Uso após liberação de memória

Ocorre quando o código tenta acessar um bloco de memória que já foi desalocado (free/delete). O ponteiro continua apontando para aquele endereço, mas o dado ali pode ter sido sobrescrito por outra operação, causando comportamento impredizível, corrupção de dados ou execução de código arbitrário.

Example

Um buffer é alocado, depois liberado com free(). Mais adiante, o código ainda tenta ler ou escrever naquele mesmo ponteiro sem verificar. Se um atacante controlar a alocação subsequente daquele endereço, consegue manipular o conteúdo que será lido.

How to mitigate

Anule o ponteiro imediatamente após liberar (ptr = NULL), implemente análise estática para detectar acessos pós-liberação, use ferramentas como valgrind ou AddressSanitizer nos testes, e considere linguagens com gerenciamento automático de memória para código sensível.

CVE-2023-21018MEDIUMIn UnwindingWorker of unwinding.cc, there is a possible out of bounds write due to a use after free. This could lead to local escalation of EPSS 0.1%CVE-2025-27031HIGHUse After Free in Bluetooth HOSTEPSS 0.1%CVE-2025-20706HIGHIn mbrain, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actoEPSS 0.1%CVE-2023-21045MEDIUMWhen cpif handles probe failures, there is a possible out of bounds read due to a use after free. This could lead to local information disclEPSS 0.1%CVE-2022-36849MEDIUMUse after free vulnerability in sdp_mm_set_process_sensitive function of sdpmm driver prior to SMR Sep-2022 Release 1 allows attackers to peEPSS 0.1%CVE-2025-20705HIGHIn monitor_hang, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a maliciouEPSS 0.1%CVE-2025-53185MEDIUMVirtual address reuse issue in the memory management module, which can be exploited by non-privileged users to access released memory ImpactEPSS 0.1%CVE-2022-36847MEDIUMUse after free vulnerability in mtp_send_signal function of MTP driver prior to SMR Sep-2022 Release 1 allows attackers to perform maliciousEPSS 0.1%CVE-2025-27047HIGHUse After Free in DisplayEPSS 0.1%CVE-2022-48386MEDIUMthe apipe driver, there is a possible use after free due to a logic error. This could lead to local denial of service with System execution EPSS 0.1%CVE-2025-27056HIGHUse After Free in DSP ServiceEPSS 0.1%CVE-2025-27050HIGHUse After Free in CameraEPSS 0.1%CVE-2025-20780HIGHIn display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actEPSS 0.1%CVE-2023-20608MEDIUMIn display drm, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System exeEPSS 0.1%CVE-2023-20664MEDIUMIn gz, there is a possible double free due to a use after free. This could lead to local escalation of privilege with System execution priviEPSS 0.1%CVE-2026-23787MEDIUMAn issue was discovered in DPU in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, 2400, 1580, 2500, 1680, and 2600. A Use-After-FreeEPSS 0.1%CVE-2024-53015MEDIUMUse After Free in Computer VisionEPSS 0.1%CVE-2023-40131HIGHIn GpuService of GpuService.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privilegEPSS 0.1%CVE-2023-40100HIGHIn discovery_thread of Dns64Configuration.cpp, there is a possible memory corruption due to a use after free. This could lead to local escalEPSS 0.1%CVE-2024-25985HIGHIn bigo_unlocked_ioctl of bigo.c, there is a possible UAF due to a missing bounds check. This could lead to local escalation of privilege wiEPSS 0.1%