CWE-415— Double Free
The product calls free() twice on the same memory address.— MITRE CWE catalog
904 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-415page 10 of 19
- CVE-2022-25660HIGHCVSS 7.8EG 7.82022-10-19
Memory corruption due to double free issue in kernel in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile
- CVE-2022-36043HIGHCVSS 7.8EG 7.82022-09-06
Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to a double free in bobj.c:rz_bin_reloc_storage_free() when freeing relocations generated from qnx binary plugin. A user o…
- CVE-2022-2327HIGHCVSS 7.8EG 7.82022-07-22
io_uring use work_flags to determine which identity need to grab from the calling process to make sure it is consistent with the calling process when executing IORING_OP. Some operations are missing some types, which can lead to incorrect …
- CVE-2022-33033HIGHCVSS 7.8EG 7.82022-06-23
LibreDWG v0.12.4.4608 was discovered to contain a double-free via the function dwg_read_file at dwg.c.
- CVE-2021-39806HIGHCVSS 7.8EG 7.82022-06-15
In closef of label_backends_android.c, there is a possible way to corrupt memory due to a double free. This could lead to local escalation of privilege during startup of servicemanager, if an attacker can trigger an initialization failure,…
- CVE-2022-22103HIGHCVSS 7.8EG 7.82022-06-14
Memory corruption in multimedia driver due to double free while processing data from user in Snapdragon Auto
- CVE-2021-42613HIGHCVSS 7.8EG 7.82022-05-24
A double free in cleanup_index in index.c in Halibut 1.2 allows an attacker to cause a denial of service or possibly have other unspecified impact via a crafted text document.
- CVE-2022-29032HIGHCVSS 7.8EG 7.82022-05-20
A vulnerability has been identified in JT2Go (All versions < V13.3.0.3), Teamcenter Visualization V13.3 (All versions < V13.3.0.3), Teamcenter Visualization V14.0 (All versions < V14.0.0.1). The CGM_NIST_Loader.dll library contains a doubl…
- CVE-2022-29156HIGHCVSS 7.8EG 7.82022-04-13
drivers/infiniband/ulp/rtrs/rtrs-clt.c in the Linux kernel before 5.16.12 has a double free related to rtrs_clt_dev_release.
- CVE-2022-27416HIGHCVSS 7.8EG 7.82022-04-12
Tcpreplay v4.4.1 was discovered to contain a double-free via __interceptor_free.
- CVE-2022-25796HIGHCVSS 7.8EG 7.82022-04-11
A Double Free vulnerability allows remote malicious actors to execute arbitrary code on DWF file in Autodesk Navisworks 2022 within affected installations. User interaction is required to exploit this vulnerability in that the target must …
- CVE-2022-28390HIGHCVSS 7.8EG 7.82022-04-03
ems_usb_start_xmit in drivers/net/can/usb/ems_usb.c in the Linux kernel through 5.17.1 has a double free.
- CVE-2021-42533HIGHCVSS 7.8EG 7.82022-03-16
Adobe Bridge version 11.1.1 (and earlier) is affected by a double free vulnerability when parsing a crafted DCM file, which could result in arbitrary code execution in the context of the current user. This vulnerability requires user inter…
- CVE-2021-46625HIGHCVSS 7.8EG 7.82022-02-18
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.75. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a …
- CVE-2021-46621HIGHCVSS 7.8EG 7.82022-02-18
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.0.80. User interaction is required to exploit this vulnerability in that the target must visit a malicious…
- CVE-2021-40574HIGHCVSS 7.8EG 7.82022-01-13
The binary MP4Box in Gpac from 0.9.0-preview to 1.0.1 has a double-free vulnerability in the gf_text_get_utf8_line function in load_text.c, which allows attackers to cause a denial of service, even code execution and escalation of privileg…
- CVE-2021-40571HIGHCVSS 7.8EG 7.82022-01-13
The binary MP4Box in Gpac 1.0.1 has a double-free vulnerability in the ilst_box_read function in box_code_apple.c, which allows attackers to cause a denial of service, even code execution and escalation of privileges.
- CVE-2021-40570HIGHCVSS 7.8EG 7.82022-01-13
The binary MP4Box in Gpac 1.0.1 has a double-free vulnerability in the avc_compute_poc function in av_parsers.c, which allows attackers to cause a denial of service, even code execution and escalation of privileges.
- CVE-2021-21797HIGHCVSS 7.8EG 7.82021-10-18
An exploitable double-free vulnerability exists in the JavaScript implementation of Nitro Pro PDF. A specially crafted document can cause a reference to a timeout object to be stored in two different places. When closed, the document will …
- CVE-2021-30703HIGHCVSS 7.8EG 7.82021-09-08
A double free issue was addressed with improved memory management. This issue is fixed in tvOS 14.6, iOS 14.6 and iPadOS 14.6, Security Update 2021-004 Catalina, Security Update 2021-005 Mojave, macOS Big Sur 11.4, watchOS 7.5. An applicat…
- CVE-2021-1875HIGHCVSS 7.8EG 7.82021-09-08
A double free issue was addressed with improved memory management. This issue is fixed in Security Update 2021-002 Catalina, Security Update 2021-003 Mojave, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Sur 11.3. Processing …
- CVE-2021-37652HIGHCVSS 7.8EG 7.82021-08-12
TensorFlow is an end-to-end open source platform for machine learning. In affected versions the implementation for `tf.raw_ops.BoostedTreesCreateEnsemble` can result in a use after free error if an attacker supplies specially crafted argum…
- CVE-2021-22425HIGHCVSS 7.8EG 7.82021-08-03
A component of the HarmonyOS has a Double Free vulnerability. Local attackers may exploit this vulnerability to cause Root Elevating Privileges.
- CVE-2021-27033HIGHCVSS 7.8EG 7.82021-07-09
A maliciously crafted PDF file, when opened by a user in Autodesk Design Review, can trigger a Double Free vulnerability in the Autodesk Design Review application. A malicious actor may leverage this vulnerability to cause memory corruptio…
- CVE-2020-36401HIGHCVSS 7.8EG 7.82021-07-01
mruby 2.1.2 has a double free in mrb_default_allocf (called from mrb_free and obj_free).
- CVE-2021-0528HIGHCVSS 7.8EG 7.82021-06-21
In memory management driver, there is a possible memory corruption due to a double free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Produ…
- CVE-2021-0498HIGHCVSS 7.8EG 7.82021-06-11
In memory management driver, there is a possible memory corruption due to a double free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Produ…
- CVE-2021-31449HIGHCVSS 7.8EG 7.82021-05-07
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37576. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open …
- CVE-2021-0437HIGHCVSS 7.8EG 7.82021-04-13
In setPlayPolicy of DrmPlugin.cpp, there is a possible double free. This could lead to local escalation of privilege in a privileged process with no additional execution privileges needed. User interaction is not needed for exploitation.Pr…
- CVE-2021-29627HIGHCVSS 7.8EG 7.82021-04-07
In FreeBSD 13.0-STABLE before n245050, 12.2-STABLE before r369525, 13.0-RC4 before p0, and 12.2-RELEASE before p6, listening socket accept filters implementing the accf_create callback incorrectly freed a process supplied argument string. …
- CVE-2021-0392HIGHCVSS 7.8EG 7.82021-03-10
In main of main.cpp, there is a possible memory corruption due to a double free. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersio…
- CVE-2021-3403HIGHCVSS 7.8EG 7.82021-03-04
In ytnef 1.9.3, the TNEFSubjectHandler function in lib/ytnef.c allows remote attackers to cause a denial-of-service (and potentially code execution) due to a double free which can be triggered via a crafted file.
- CVE-2019-19005HIGHCVSS 7.8EG 7.82021-02-11
A bitmap double free in main.c in autotrace 0.31.1 allows attackers to cause an unspecified impact via a malformed bitmap image. This may occur after the use-after-free in CVE-2017-9182.
- CVE-2020-11217HIGHCVSS 7.8EG 7.82021-01-21
A possible double free or invalid memory access in audio driver while reading Speaker Protection parameters in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile
- CVE-2020-17019HIGHCVSS 7.8EG 7.82020-11-11
Microsoft Excel Remote Code Execution Vulnerability
- CVE-2020-9747HIGHCVSS 7.8EG 7.82020-10-21
Adobe Animate version 20.5 (and earlier) is affected by a double free vulnerability when parsing a crafted .fla file, which could result in arbitrary code execution in the context of the current user. This vulnerability requires user inter…
- CVE-2020-25773HIGHCVSS 7.8EG 7.82020-09-29
A vulnerability in the Trend Micro Apex One ServerMigrationTool component could allow an attacker to execute arbitrary code on affected products. User interaction is required to exploit this vulnerability in that the target must import a c…
- CVE-2020-0392HIGHCVSS 7.8EG 7.82020-09-17
In getLayerDebugInfo of SurfaceFlinger.cpp, there is a possible code execution due to a double free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploi…
- CVE-2020-25559HIGHCVSS 7.8EG 7.82020-09-16
gnuplot 5.5 is affected by double free when executing print_set_output. This may result in context-dependent arbitrary code execution.
- CVE-2019-14065HIGHCVSS 7.8EG 7.82020-09-08
u'Pointer double free in HavenSvc due to not setting the pointer to NULL after freeing it' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon …
- CVE-2020-0241HIGHCVSS 7.8EG 7.82020-08-11
In NuPlayerStreamListener of NuPlayerStreamListener.cpp, there is possible memory corruption due to a double free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not nee…
- CVE-2020-16217HIGHCVSS 7.8EG 7.82020-08-06
Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. A double free vulnerability caused by processing specially crafted project files may allow remote code execution, disclosure/modification of information, or cause the applicati…
- CVE-2020-3613HIGHCVSS 7.8EG 7.82020-06-22
Double free issue in kernel memory mapping due to lack of memory protection mechanism in Snapdragon Compute, Snapdragon Mobile, Snapdragon Voice & Music in SM8150
- CVE-2019-14091HIGHCVSS 7.8EG 7.82020-06-22
Double free issue in NPU due to lack of resource locking mechanism to avoid race condition in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in MDM9607, …
- CVE-2020-3610HIGHCVSS 7.8EG 7.82020-06-02
Possibility of double free of the drawobj that is added to the drawqueue array of the context during IOCTL commands as there is no refcount taken for this object in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Conne…
- CVE-2020-0081HIGHCVSS 7.8EG 7.82020-04-17
In finalize of AssetManager.java, there is possible memory corruption due to a double free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Pr…
- CVE-2019-5184HIGHCVSS 7.8EG 7.82020-03-23
An exploitable double free vulnerability exists in the iocheckd service "I/O-Check" functionality of WAGO PFC 200. A specially crafted XML cache file written to a specific location on the device can cause a heap pointer to be freed twice, …
- CVE-2018-11838HIGHCVSS 7.8EG 7.82020-03-05
Possible double free issue in WLAN due to lack of checking memory free condition. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, …
- CVE-2019-14055HIGHCVSS 7.8EG 7.82020-02-07
Possibility of use-after-free and double free because of not marking buffer as NULL after freeing can lead to dangling pointer access in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer…
- CVE-2019-9468HIGHCVSS 7.8EG 7.82020-01-06
In export_key_der of export_key.cpp, there is possible memory corruption due to a double free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation…
Map vulnerabilities like CWE-415 to your infrastructure
EchelonGraph correlates every CVE — across CWE-415 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →