Falhas do tipo CWE-416

5.138 resultados

Uso após liberação de memória

Ocorre quando o código tenta acessar (ler ou escrever) um bloco de memória que já foi liberado (free, delete). O programa mantém um ponteiro para a memória, mas o sistema operacional pode reatribuir essa região para outro uso, causando corrupção de dados, travamento ou execução de código arbitrário.

Exemplo

Um servidor web aloca memória para armazenar dados de sessão do usuário, depois libera essa memória quando a sessão encerra. Se uma thread continuar tentando acessar essa sessão após a liberação, pode ler dados de outra sessão ou sobrescrever dados críticos de outro processo.

Como mitigar

Sempre anule ponteiros após liberar memória (ptr = NULL), use variáveis de controle para rastrear estado de alocação, implemente gerenciamento automático de memória quando possível (smart pointers em C++), e execute testes com sanitizers (AddressSanitizer, Valgrind) durante desenvolvimento e CI/CD.

CVE-2025-55650MEDIUMA heap use-after-free in the gf_node_get_tag function (scenegraph/base_scenegraph.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial EPSS 0.2%CVE-2024-56600HIGHnet: inet6: do not leave a dangling sk pointer in inet6_create()EPSS 0.2%CVE-2026-11680HIGHUse after free in Media in Google Chrome on Windows prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary code inside a sanEPSS 0.2%CVE-2025-14372MEDIUMUse after free in Password Manager in Google Chrome prior to 143.0.7499.110 allowed a remote attacker to potentially perform a sandbox escapEPSS 0.2%CVE-2024-56606HIGHaf_packet: avoid erroring out after sock_init_data() in packet_create()EPSS 0.2%CVE-2025-55644MEDIUMA heap use-after-free in the gf_node_get_tag function (scenegraph/base_scenegraph.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial EPSS 0.2%CVE-2024-56642HIGHtipc: Fix use-after-free of kernel socket in cleanup_bearer().EPSS 0.2%CVE-2026-10703MEDIUMEIPStackGroup OpENer SendRRData cipmessagerouter.c CreateMessageRouterRequestStructure use after freeEPSS 0.2%CVE-2026-11661HIGHUse after free in Views in Google Chrome on Windows prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer proceEPSS 0.2%CVE-2023-2513MEDIUMA use-after-free vulnerability was found in the Linux kernel's ext4 filesystem in the way it handled the extra inode size for extended attriEPSS 0.2%CVE-2023-52629HIGHsh: push-switch: Reorder cleanup operations to avoid use-after-free bugEPSS 0.2%CVE-2025-9385MEDIUMappneta tcpreplay tcprewrite edit_packet.c fix_ipv6_checksums use after freeEPSS 0.2%CVE-2026-11230HIGHUse after free in Extensions in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox viEPSS 0.2%CVE-2026-11652HIGHUse after free in Extensions in Google Chrome prior to 149.0.7827.103 allowed a remote attacker who had compromised the renderer process to EPSS 0.2%CVE-2022-1048—A use-after-free flaw was found in the Linux kernel’s sound subsystem in the way a user triggers concurrent calls of PCM hw_params. The hw_fEPSS 0.2%CVE-2026-34772MEDIUMElectron: Use-after-free in download save dialog callbackEPSS 0.2%CVE-2024-25385MEDIUMAn issue in flvmeta v.1.2.2 allows a local attacker to cause a denial of service via the flvmeta/src/flv.c:375:21 function in flv_close.EPSS 0.2%CVE-2023-4387HIGHKernel: vmxnet3: use-after-free in vmxnet3_rq_alloc_rx_buf()EPSS 0.2%CVE-2025-21715HIGHnet: davicom: fix UAF in dm9000_drv_removeEPSS 0.2%CVE-2024-26957HIGHs390/zcrypt: fix reference counting on zcrypt card objectsEPSS 0.2%