Weaknesses of type CWE-416

5,043 results

Uso após liberação de memória

Ocorre quando o código tenta acessar um bloco de memória que já foi desalocado (free/delete). O ponteiro continua apontando para aquele endereço, mas o dado ali pode ter sido sobrescrito por outra operação, causando comportamento impredizível, corrupção de dados ou execução de código arbitrário.

Example

Um buffer é alocado, depois liberado com free(). Mais adiante, o código ainda tenta ler ou escrever naquele mesmo ponteiro sem verificar. Se um atacante controlar a alocação subsequente daquele endereço, consegue manipular o conteúdo que será lido.

How to mitigate

Anule o ponteiro imediatamente após liberar (ptr = NULL), implemente análise estática para detectar acessos pós-liberação, use ferramentas como valgrind ou AddressSanitizer nos testes, e considere linguagens com gerenciamento automático de memória para código sensível.

CVE-2025-22088CRITICALRDMA/erdma: Prevent use-after-free in erdma_accept_newconn()EPSS 0.5%CVE-2026-7261MEDIUMSoapServer session-persisted object use-after-free via SOAP header faultEPSS 0.5%CVE-2026-4688CRITICALSandbox escape due to use-after-free in the Disability Access APIs componentEPSS 0.5%CVE-2025-29978HIGHMicrosoft PowerPoint Remote Code Execution VulnerabilityEPSS 0.5%CVE-2024-38920CRITICALOpen Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl proceEPSS 0.5%CVE-2022-2817HIGHUse After Free in vim/vimEPSS 0.5%CVE-2022-3037HIGHUse After Free in vim/vimEPSS 0.5%CVE-2024-38910HIGHOpen Robotics Robotic Operating System 2 (ROS2) and Nav2 humble version was discovered to contain a use-after-free in the nav2_amcl process.EPSS 0.5%CVE-2026-69244HIGHAIOHTTP: Out-of-bounds heap read in C HTTP response parser error path (malformed chunked response)EPSS 0.5%CVE-2026-28883HIGHA use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5, iOS 26.5 and iPadOS 26.5, macOS TaEPSS 0.5%CVE-2024-43535HIGHWindows Kernel-Mode Driver Elevation of Privilege VulnerabilityEPSS 0.5%CVE-2022-2889HIGHUse After Free in vim/vimEPSS 0.5%CVE-2022-3016HIGHUse After Free in vim/vimEPSS 0.5%CVE-2026-87933MEDIUMDaveGamble cJSON cJSON_Utils.c cJSONUtils_MergePatch use after freeEPSS 0.5%CVE-2026-90707MEDIUMOpen5GS Old AMF Discovery Fallback nnrf-handler.c amf_nnrf_try_old_amf_discovery_fallback use after freeEPSS 0.5%CVE-2022-43664HIGHA use-after-free vulnerability exists within the way Ichitaro Word Processor 2022, version 1.0.1.57600, processes protected documents. A speEPSS 0.5%CVE-2022-1734—A flaw in Linux Kernel found in nfcmrvl_nci_unregister_dev() in drivers/nfc/nfcmrvl/main.c can lead to use after free both read or write wheEPSS 0.5%CVE-2021-3750—A DMA reentrancy issue was found in the USB EHCI controller emulation of QEMU. EHCI does not verify if the Buffer Pointer overlaps with its EPSS 0.5%CVE-2026-82061HIGHUse-After-Free in MongoDB Server Query Execution Memory Tracking Subsystem Leads to Denial of ServiceEPSS 0.5%CVE-2026-87646CRITICALUse after free in Web Authentication in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside theEPSS 0.5%