Fallos del tipo CWE-416

5103 resultados

Uso após liberação de memória

Ocorre quando o código tenta acessar uma área de memória que já foi liberada (deallocated). O programa continua usando um ponteiro que aponta para um endereço inválido, causando leitura/escrita em memória não controlada. Isso pode levar a crash, corrupção de dados ou execução arbitrária de código.

Ejemplo

Um navegador aloca memória para um objeto DOM, depois o remove da página e libera a memória. Se um script JavaScript ainda tentar acessar esse objeto deletado, o navegador tenta ler/escrever em um endereço que agora contém outro dado, causando comportamento impredizível ou exploração por atacante.

Cómo mitigar

Use linguagens com garbage collection (Java, Python, C#) ou práticas rigorosas: null os ponteiros após free(), use smart pointers (C++), evite compartilhamento de referências sem sincronização, faça testes de memória com ferramentas como Valgrind ou AddressSanitizer.

CVE-2025-22088CRITICALRDMA/erdma: Prevent use-after-free in erdma_accept_newconn()EPSS 0.5%CVE-2026-7261MEDIUMSoapServer session-persisted object use-after-free via SOAP header faultEPSS 0.5%CVE-2026-4688CRITICALSandbox escape due to use-after-free in the Disability Access APIs componentEPSS 0.5%CVE-2025-29978HIGHMicrosoft PowerPoint Remote Code Execution VulnerabilityEPSS 0.5%CVE-2022-2817HIGHUse After Free in vim/vimEPSS 0.5%CVE-2022-3037HIGHUse After Free in vim/vimEPSS 0.5%CVE-2024-38910HIGHOpen Robotics Robotic Operating System 2 (ROS2) and Nav2 humble version was discovered to contain a use-after-free in the nav2_amcl process.EPSS 0.5%CVE-2024-38920CRITICALOpen Robotics Robotic Operating System 2 (ROS2) and Nav2 humble versions were discovered to contain a use-after-free via the nav2_amcl proceEPSS 0.5%CVE-2026-69244HIGHAIOHTTP: Out-of-bounds heap read in C HTTP response parser error path (malformed chunked response)EPSS 0.5%CVE-2026-28883HIGHA use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.5, iOS 26.5 and iPadOS 26.5, macOS TaEPSS 0.5%CVE-2024-43535HIGHWindows Kernel-Mode Driver Elevation of Privilege VulnerabilityEPSS 0.5%CVE-2022-2889HIGHUse After Free in vim/vimEPSS 0.5%CVE-2022-3016HIGHUse After Free in vim/vimEPSS 0.5%CVE-2026-87933MEDIUMDaveGamble cJSON cJSON_Utils.c cJSONUtils_MergePatch use after freeEPSS 0.5%CVE-2026-90707MEDIUMOpen5GS Old AMF Discovery Fallback nnrf-handler.c amf_nnrf_try_old_amf_discovery_fallback use after freeEPSS 0.5%CVE-2022-43664HIGHA use-after-free vulnerability exists within the way Ichitaro Word Processor 2022, version 1.0.1.57600, processes protected documents. A speEPSS 0.5%CVE-2022-1734—A flaw in Linux Kernel found in nfcmrvl_nci_unregister_dev() in drivers/nfc/nfcmrvl/main.c can lead to use after free both read or write wheEPSS 0.5%CVE-2021-3750—A DMA reentrancy issue was found in the USB EHCI controller emulation of QEMU. EHCI does not verify if the Buffer Pointer overlaps with its EPSS 0.5%CVE-2026-82061HIGHUse-After-Free in MongoDB Server Query Execution Memory Tracking Subsystem Leads to Denial of ServiceEPSS 0.5%CVE-2026-87646CRITICALUse after free in Web Authentication in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary code outside theEPSS 0.5%