Falhas do tipo CWE-416

5.143 resultados

Uso após liberação de memória

Ocorre quando o código tenta acessar (ler ou escrever) um bloco de memória que já foi liberado (free, delete). O programa mantém um ponteiro para a memória, mas o sistema operacional pode reatribuir essa região para outro uso, causando corrupção de dados, travamento ou execução de código arbitrário.

Exemplo

Um servidor web aloca memória para armazenar dados de sessão do usuário, depois libera essa memória quando a sessão encerra. Se uma thread continuar tentando acessar essa sessão após a liberação, pode ler dados de outra sessão ou sobrescrever dados críticos de outro processo.

Como mitigar

Sempre anule ponteiros após liberar memória (ptr = NULL), use variáveis de controle para rastrear estado de alocação, implemente gerenciamento automático de memória quando possível (smart pointers em C++), e execute testes com sanitizers (AddressSanitizer, Valgrind) durante desenvolvimento e CI/CD.

CVE-2026-20439MEDIUMIn imgsys, there is a possible system crash due to use after free. This could lead to local denial of service if a malicious actor has alreaEPSS 0.1%CVE-2026-0137HIGHIn edgetpu_sync_fence_group_shutdown() of edgetpu-dmabuf.c, there is a possible elevation of privilege due to a use after free. This could lEPSS 0.1%CVE-2025-47375HIGHUse After Free in Automotive AudioEPSS 0.1%CVE-2025-47379HIGHUse After Free in Automotive AudioEPSS 0.1%CVE-2026-20442MEDIUMIn display, there is a possible system crash due to use after free. This could lead to local denial of service if a malicious actor has alreEPSS 0.1%CVE-2026-0143HIGHIn lwis_device_external_event_emit of lwis_event.c, there is a possible memory corruption due to a use after free. This could lead to local EPSS 0.1%CVE-2026-20437MEDIUMIn MAE, there is a possible system crash due to use after free. This could lead to local denial of service if a malicious actor has already EPSS 0.1%CVE-2025-47377HIGHUse After Free in Automotive AudioEPSS 0.1%CVE-2026-56964MEDIUMIn multiple locations, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with SysEPSS 0.1%CVE-2026-56988MEDIUMIn multiple functions of bluetooth_cco.cc, there is a possible use-after-free due to a race condition. This could lead to local escalation oEPSS 0.1%CVE-2026-58724HIGHIn multiple locations, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with SysEPSS 0.1%CVE-2025-66326MEDIUMRace condition vulnerability in the audio module. Impact: Successful exploitation of this vulnerability may affect availability.EPSS 0.1%CVE-2023-20834MEDIUMIn pda, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution pEPSS 0.1%CVE-2023-20835MEDIUMIn camsys, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System executioEPSS 0.1%CVE-2026-0125HIGHIn multiple functions of vpu_ioctl.c, there is a possible use after free due to a race condition. This could lead to local escalation of priEPSS 0.1%CVE-2025-47374MEDIUMUse After Free in Camera DriverEPSS 0.1%CVE-2026-0112HIGHIn vpu_open_inst of vpu_ioctl.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilegEPSS 0.1%CVE-2026-0121LOWIn VPU, there is a possible use-after-free read due to a race condition. This could lead to local information disclosure with no additional EPSS 0.1%CVE-2026-20537MEDIUMIn aidl, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor EPSS —CVE-2026-20542MEDIUMIn apusys, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actoEPSS —