Falhas do tipo CWE-416

5.043 resultados

Uso após liberação de memória

Ocorre quando o código tenta acessar (ler ou escrever) um bloco de memória que já foi liberado (free, delete). O programa mantém um ponteiro para a memória, mas o sistema operacional pode reatribuir essa região para outro uso, causando corrupção de dados, travamento ou execução de código arbitrário.

Exemplo

Um servidor web aloca memória para armazenar dados de sessão do usuário, depois libera essa memória quando a sessão encerra. Se uma thread continuar tentando acessar essa sessão após a liberação, pode ler dados de outra sessão ou sobrescrever dados críticos de outro processo.

Como mitigar

Sempre anule ponteiros após liberar memória (ptr = NULL), use variáveis de controle para rastrear estado de alocação, implemente gerenciamento automático de memória quando possível (smart pointers em C++), e execute testes com sanitizers (AddressSanitizer, Valgrind) durante desenvolvimento e CI/CD.

CVE-2026-20920HIGHWin32k Elevation of Privilege VulnerabilityEPSS 0.5%CVE-2023-42098LOWFoxit PDF Reader Annotation Use-After-Free Information Disclosure VulnerabilityEPSS 0.5%CVE-2023-21724HIGHMicrosoft DWM Core Library Elevation of Privilege VulnerabilityEPSS 0.5%CVE-2024-3187MEDIUMThis issue tracks two CWE-416 Use After Free (UAF) and one CWE-415 Double Free vulnerabilities in Goahead versions <= 6.0.0. These are causeEPSS 0.5%CVE-2024-43570MEDIUMWindows Kernel Elevation of Privilege VulnerabilityEPSS 0.5%CVE-2018-6555—The irda_setsockopt function in net/irda/af_irda.c and later in drivers/staging/irda/net/af_irda.c in the Linux kernel before 4.17 allows loEPSS 0.5%CVE-2023-51568LOWKofax Power PDF OXPS File Parsing Use-After-Free Information Disclosure VulnerabilityEPSS 0.5%CVE-2026-7531LOWUse-after-free in PQC hybrid key-share handlingEPSS 0.5%CVE-2024-50106CRITICALnfsd: fix race between laundromat and free_stateidEPSS 0.5%CVE-2021-20227—A flaw was found in SQLite's SELECT query functionality (src/select.c). This flaw allows an attacker who is capable of running SQL queries lEPSS 0.5%CVE-2026-15765HIGHUse after free in Ozone in Google Chrome prior to 150.0.7871.125 allowed a remote attacker who convinced a user to engage in specific UI gesEPSS 0.5%CVE-2026-15764HIGHUse after free in Ozone in Google Chrome on Linux prior to 150.0.7871.125 allowed a remote attacker who convinced a user to engage in specifEPSS 0.5%CVE-2025-3030HIGHMemory safety bugs fixed in Firefox 137, Thunderbird 137, Firefox ESR 128.9, and Thunderbird 128.9EPSS 0.5%CVE-2024-21803LOWPossible UAF in bt_accept_poll in Linux kernelEPSS 0.5%CVE-2026-20950HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 0.5%CVE-2026-9080HIGHUAF after pause in socket callbackEPSS 0.5%CVE-2023-21755HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 0.5%CVE-2026-53415HIGHZoom Clients - Use After FreeEPSS 0.5%CVE-2026-18711HIGHUse-After-Free in MongoDB Query Execution Engine Leads to Denial of Service and Potential Memory DisclosureEPSS 0.5%CVE-2025-53784HIGHMicrosoft Word Remote Code Execution VulnerabilityEPSS 0.5%