Fallos del tipo CWE-416

5129 resultados

Uso após liberação de memória

Ocorre quando o código tenta acessar uma área de memória que já foi liberada (deallocated). O programa continua usando um ponteiro que aponta para um endereço inválido, causando leitura/escrita em memória não controlada. Isso pode levar a crash, corrupção de dados ou execução arbitrária de código.

Ejemplo

Um navegador aloca memória para um objeto DOM, depois o remove da página e libera a memória. Se um script JavaScript ainda tentar acessar esse objeto deletado, o navegador tenta ler/escrever em um endereço que agora contém outro dado, causando comportamento impredizível ou exploração por atacante.

Cómo mitigar

Use linguagens com garbage collection (Java, Python, C#) ou práticas rigorosas: null os ponteiros após free(), use smart pointers (C++), evite compartilhamento de referências sem sincronização, faça testes de memória com ferramentas como Valgrind ou AddressSanitizer.

CVE-2026-100789HIGHUse-after-free in the Graphics: Canvas2D componentEPSS 0.3%CVE-2026-100784HIGHUse-after-free in the Layout: Text and Fonts componentEPSS 0.3%CVE-2026-91710CRITICALUse after free in WebAppInstalls in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to execute arbitrary code outside the sanEPSS 0.3%CVE-2023-26991HIGHSWFTools v0.9.2 was discovered to contain a stack-use-after-scope in the swf_ReadSWF2 function in lib/rfxswf.c.EPSS 0.3%CVE-2026-100772HIGHUse-after-free in the DOM: Core & HTML componentEPSS 0.3%CVE-2021-40790MEDIUMAdobe Premiere Pro MOV File Parsing Use-After-Free Information Disclosure VulnerabilityEPSS 0.3%CVE-2021-4083—A read-after-free memory flaw was found in the Linux kernel's garbage collection for Unix domain socket file handlers in the way users call EPSS 0.3%CVE-2024-56653HIGHBluetooth: btmtk: avoid UAF in btmtk_process_coredumpEPSS 0.3%CVE-2023-22424HIGHUse-after-free vulnerability exists in Kostac PLC Programming Software (Former name: Koyo PLC Programming Software) Version 1.6.9.0 and earlEPSS 0.3%CVE-2022-1419—The root cause of this vulnerability is that the ioctl$DRM_IOCTL_MODE_DESTROY_DUMB can decrease refcount of *drm_vgem_gem_object *(created iEPSS 0.3%CVE-2024-3171HIGHUse after free in Accessibility in Google Chrome prior to 122.0.6261.57 allowed a remote attacker who convinced a user to engage in specificEPSS 0.3%CVE-2024-26898HIGHaoe: fix the potential use-after-free problem in aoecmd_cfg_pktsEPSS 0.3%CVE-2026-10636LOWUse-after-free in Zephyr IPv4 IGMP send path (`igmp_send`)EPSS 0.3%CVE-2026-56000CRITICALxorg-x11-server / xwayland GLX contextTags Use-After-Free in CommonMakeCurrent()EPSS 0.3%CVE-2020-27835—A use after free in the Linux kernel infiniband hfi1 driver in versions prior to 5.10-rc6 was found in the way user calls Ioctl after open dEPSS 0.3%CVE-2026-15924MEDIUMUse-after-free / double-free from unsynchronized concurrent access to the TLS client session cache in Zephyr socketsEPSS 0.3%CVE-2026-16851HIGHVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.3%CVE-2026-20877HIGHWindows Management Services Elevation of Privilege VulnerabilityEPSS 0.3%CVE-2021-39216MEDIUMUse after free passing `externref`s to Wasm in WasmtimeEPSS 0.3%CVE-2026-20924HIGHWindows Management Services Elevation of Privilege VulnerabilityEPSS 0.3%