Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.

Threats Tagged 'cwe-415'

View all threats tagged with 'cwe-415'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cwe-415

Threats Tagged 'cwe-415'

Click on any threat for detailed analysis and mitigation recommendations

CVE-2026-65780: CWE-415: Double Free in Microsoft Windows 11 Version 24H2CVE-2026-65780
0

Double free in Windows Autopilot allows an authorized attacker to elevate privileges locally.

Join the discussion
CVE-2026-62889: CWE-415: Double Free in Microsoft Windows 10 Version 1607CVE-2026-62889
0

Double free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unauthorized attacker to execute code over a network.

Join the discussion
CVE-2026-62766: CWE-415: Double Free in Microsoft Windows 11 Version 24H2CVE-2026-62766
0

Double free in Windows Kerberos allows an authorized attacker to elevate privileges locally.

Join the discussion
CVE-2026-61366: CWE-415: Double Free in Microsoft Windows 10 Version 1607CVE-2026-61366
0

Double free in Windows Network Connection Broker allows an authorized attacker to elevate privileges locally.

Join the discussion
CVE-2026-43622: Mismatched Memory Management Routines in ggml-org llama.cppCVE-2026-43622
0

llama.cpp builds b1886 through b7445 contain a double free vulnerability in the LLaMA-Android JNI wrapper where new_1batch() allocates memory using malloc() while free_1batch() deallocates it using the C++ delete operator, causing heap metadata corruption. Attackers can trigger this memory management mismatch to cause denial of service through process crashes or potentially achieve arbitrary code execution depending on allocator state.

Join the discussion
CVE-2026-17573: CWE-415 Double free in The HDF Group HDF5CVE-2026-17573
0

A double free vulnerability was discovered in the HDF5 library. Processing a crafted HDF5 file containing an oversized chunk size field via h5repack may cause the application to abort due to a double free.

Join the discussion
CVE-2026-14164: Double Free in Red Hat Red Hat Enterprise Linux 10CVE-2026-14164
0

A double free vulnerability exists in libarchive's RAR5 reader that can cause applications using the library to crash, resulting in denial of service. This occurs when the filtered_buf pointer is freed twice during processing of specially crafted RAR5 archives. The vulnerability affects libarchive versions starting from 3.4.0, which introduced RAR5 support. Red Hat has assigned a CVSS score of 7.5 (high severity) based on typical deployment scenarios where libarchive is embedded in automated, network-facing services. A security update addressing this issue is available in libarchive version 3.8.8-2.hum1 for Red Hat Hardened Images. No known exploits are reported in the wild.

Join the discussion
CVE-2026-13713: CWE-416 Use After Free in TODDR YAML::SyckCVE-2026-13713
0

YAML::Syck versions prior to 1.47 for Perl contain a use-after-free and double-free vulnerability triggered by redefinition or removal of anchor nodes during YAML parsing. This flaw causes the interpreter to crash, resulting in a denial of service when processing untrusted documents that redefine anchors mid-parse.

Join the discussion
CVE-2026-55132: CWE-415: Double Free in Microsoft Microsoft 365 Apps for EnterpriseCVE-2026-55132
0

Double free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

Join the discussion
CVE-2026-50685: CWE-415: Double Free in Microsoft Windows 10 Version 1607CVE-2026-50685
0

Double free in Windows DHCP Server allows an authorized attacker to execute code over a network.

Join the discussion

Showing 1 to 10 of 13 results

Filters:Tag: cwe-415
Page 1 of 2
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses