Fallos del tipo CWE-416

5143 resultados

Uso após liberação de memória

Ocorre quando o código tenta acessar uma área de memória que já foi liberada (deallocated). O programa continua usando um ponteiro que aponta para um endereço inválido, causando leitura/escrita em memória não controlada. Isso pode levar a crash, corrupção de dados ou execução arbitrária de código.

Ejemplo

Um navegador aloca memória para um objeto DOM, depois o remove da página e libera a memória. Se um script JavaScript ainda tentar acessar esse objeto deletado, o navegador tenta ler/escrever em um endereço que agora contém outro dado, causando comportamento impredizível ou exploração por atacante.

Cómo mitigar

Use linguagens com garbage collection (Java, Python, C#) ou práticas rigorosas: null os ponteiros após free(), use smart pointers (C++), evite compartilhamento de referências sem sincronização, faça testes de memória com ferramentas como Valgrind ou AddressSanitizer.

CVE-2026-86425MEDIUMImageMagick before 7.1.2-30 Heap-use-after-free via LayerEPSS 0.1%CVE-2026-26203MEDIUMPJSIP's pjmedia-video has use-after-free in H264 packetizer when packetizing fragmented NALEPSS 0.1%CVE-2026-0027MEDIUMIn smmu_detach_dev of arm-smmu-v3.c, there is a possible out of bounds write due to a use after free. This could lead to local escalation ofEPSS 0.1%CVE-2024-23373HIGHUse After Free in GraphicsEPSS 0.1%CVE-2023-53386HIGHBluetooth: Fix potential use-after-free when clear keysEPSS 0.1%CVE-2023-53427HIGHcifs: Fix warning and UAF when destroy the MR listEPSS 0.1%CVE-2026-10667HIGHSMP use-after-free in Zephyr `CONFIG_USERSPACE` dynamic kernel-object tracking, reachable from unprivileged user threadsEPSS 0.1%CVE-2023-53446HIGHPCI/ASPM: Disable ASPM on MFD function removal to avoid use-after-freeEPSS 0.1%CVE-2023-53377HIGHcifs: prevent use-after-free by freeing the cfile laterEPSS 0.1%CVE-2025-9157MEDIUMappneta tcpreplay tcprewrite edit_packet.c untrunc_packet use after freeEPSS 0.1%CVE-2022-1974—A use-after-free flaw was found in the Linux kernel's NFC core functionality due to a race condition between kobject creation and delete. ThEPSS 0.1%CVE-2025-24298HIGHliteos_a has an UAF vulnerabilityEPSS 0.1%CVE-2026-55510MEDIUMImageMagick: Use-After-Free in crafted 8BIM when identifying an imageEPSS 0.1%CVE-2025-27128HIGHliteos_a has an UAF vulnerabilityEPSS 0.1%CVE-2026-5942MEDIUMFoxit PDF Editor/Reader AcroForm Signature Use-After-Free VulnerabilityEPSS 0.1%CVE-2026-13037HIGHUse after free in WebView in Google Chrome on Android prior to 149.0.7827.197 allowed a local attacker to execute arbitrary code inside a saEPSS 0.1%CVE-2023-53398HIGHmlx5: fix possible ptp queue fifo use-after-freeEPSS 0.1%CVE-2025-39896HIGHaccel/ivpu: Prevent recovery work from being queued during device removalEPSS 0.1%CVE-2023-53252HIGHBluetooth: use RCU for hci_conn_params and iterate safely in hci_syncEPSS 0.1%CVE-2018-9483MEDIUMIn bta_dm_remove_sec_dev_entry of bta_dm_act.cc, there is a possible out of bounds read due to a use after free. This could lead to remote iEPSS 0.1%