Falhas do tipo CWE-416

5.138 resultados

Uso após liberação de memória

Ocorre quando o código tenta acessar (ler ou escrever) um bloco de memória que já foi liberado (free, delete). O programa mantém um ponteiro para a memória, mas o sistema operacional pode reatribuir essa região para outro uso, causando corrupção de dados, travamento ou execução de código arbitrário.

Exemplo

Um servidor web aloca memória para armazenar dados de sessão do usuário, depois libera essa memória quando a sessão encerra. Se uma thread continuar tentando acessar essa sessão após a liberação, pode ler dados de outra sessão ou sobrescrever dados críticos de outro processo.

Como mitigar

Sempre anule ponteiros após liberar memória (ptr = NULL), use variáveis de controle para rastrear estado de alocação, implemente gerenciamento automático de memória quando possível (smart pointers em C++), e execute testes com sanitizers (AddressSanitizer, Valgrind) durante desenvolvimento e CI/CD.

CVE-2025-21693HIGHmm: zswap: properly synchronize freeing resources during CPU hotunplugEPSS 0.2%CVE-2025-61842MEDIUMFormat Plugins | Use After Free (CWE-416)EPSS 0.2%CVE-2026-11687HIGHUse after free in Dawn in Google Chrome on Mac prior to 149.0.7827.103 allowed a remote attacker to potentially exploit heap corruption via EPSS 0.2%CVE-2026-8553LOWUse after free in GPU in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to performEPSS 0.2%CVE-2025-21929HIGHHID: intel-ish-hid: Fix use-after-free issue in hid_ishtp_cl_remove()EPSS 0.2%CVE-2025-21915HIGHcdx: Fix possible UAF error in driver_override_show()EPSS 0.2%CVE-2026-11698HIGHUse after free in Bluetooth in Google Chrome on Mac prior to 149.0.7827.103 allowed a remote attacker to potentially exploit heap corruptionEPSS 0.2%CVE-2023-53432HIGHfirewire: net: fix use after free in fwnet_finish_incoming_packet()EPSS 0.2%CVE-2026-11681HIGHUse after free in Ozone in Google Chrome on Linux prior to 149.0.7827.103 allowed a remote attacker to potentially exploit heap corruption vEPSS 0.2%CVE-2026-69682HIGHWindows Host Guardian Service Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2026-62780HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2026-50669HIGHWindows Telephony Server Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2026-50403HIGHWindows Runtime Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2026-45596HIGHWindows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2026-26168HIGHWindows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2026-68824HIGHConnected User Experiences and Telemetry Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2026-62734HIGHWindows Telephony Service Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2026-62705HIGHMicrosoft Brokering File System Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2026-61927HIGHWindows Bind Filter Driver Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2026-69581HIGHWindows Device Association Service Elevation of Privilege VulnerabilityEPSS 0.2%