Threats Tagged 'cwe-416'
View all threats tagged with 'cwe-416'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cwe-416'
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-6653: CWE-416 Use after free in GNOME libxml2CVE-2026-6653 0 Use After Free in libxml2's xmlParseInternalSubset from GNOME libxml2 version 2.9.11 to 2.11.0 allows a remote attacker to cause a denial-of-service via maliciously crafted XML input with improper entity resolution handling. Join the discussion | CVE Database V5 | 06/22/2026, 12:40:31 UTC Added: 06/22/2026, 13:54:18 UTC |
CVE-2026-56412: CWE-416 Use After Free in libexpat project libexpatCVE-2026-56412 0 libexpat before 2.8.2 does not consider XML_TOK_DATA_CHARS in doCdataSection and thus lacks handler call depth tracking for various calls from within handlers in cases of a policy violation. Thus, a use-after-free can occur. NOTE: this issue exists because of an incomplete fix for CVE-2026-50219. Join the discussion | CVE Database V5 | 06/21/2026, 15:58:59 UTC Added: 06/21/2026, 16:39:44 UTC |
CVE-2026-11941: CWE-416 Use after free in Cloudflare QuicheCVE-2026-11941 0 Cloudflare Quiche was affected by 2 use-after-free vulnerabilities in the connection ID iterator FFI functions. The “quiche_connection_id_iter_next” and “quiche_conn_retired_scid_next” functions would return a pointer to a “ConnectionId” to the applications via function arguments, but the owned “ConnectionId” would be dropped at the end of those functions' scope. Only applications using those FFI functions are affected. The FFI API is disabled by default by a build-time feature flag. Impact If unpatched, an application calling the affected FFI functions will dereference freed memory. The most likely outcome is undefined behavior leading to a process crash (denial of service). Depending on allocator state, the read may also return adjacent heap contents, resulting in limited information disclosure or incorrect connection identifier handling. Mitigation Users are requested to upgrade to quiche 0.29.2 which is the earliest version containing the fix for this issue. Join the discussion | CVE Database V5 | 06/19/2026, 09:55:54 UTC Added: 06/19/2026, 11:20:21 UTC |
CVE-2026-41156: CWE-416: Use After Free (4.15) in Imagination Technologies Graphics DDKCVE-2026-41156 0 Software installed and run as a non-privileged user may conduct improper GPU system calls to cause mismanagement of resources creating a write use after free scenario. A shared resource (memory page) managed by a CPU thread of control (driver) and accessed by a GPU thread of control (Firmware) can cause a write UAF when the CPU thread frees the resource before the GPU FW has finished accessing it. Join the discussion | CVE Database V5 | 06/19/2026, 09:28:53 UTC Added: 06/19/2026, 09:50:06 UTC |
CVE-2026-34192: CWE-416: Use After Free (4.15) in Imagination Technologies Graphics DDKCVE-2026-34192 0 Software installed and run as a non-privileged user may conduct improper GPU system calls to cause an error path leading to UAF of GPU page tables. The vulnerability allows physical memory allocated for MMU page tables to be used after being freed. This was caused by an error path that would not cleanup properly before freeing the physical allocation. Join the discussion | CVE Database V5 | 06/19/2026, 09:23:33 UTC Added: 06/19/2026, 09:50:06 UTC |
CVE-2026-56131: CWE-416 Use After Free in libexpat project libexpatCVE-2026-56131 0 libexpat before 2.8.2 lacks handler call depth tracking for calls to XML_ResumeParser from within handlers in cases of a policy violation. Thus, a use-after-free can occur (similar to the CVE-2026-50219 situation). Join the discussion | CVE Database V5 | 06/19/2026, 02:56:36 UTC Added: 06/19/2026, 04:35:47 UTC |
CVE-2026-9158: CWE-416 Use after free in Eclipse Foundation Eclipse 4diacCVE-2026-9158 0 In Eclipse 4diac FORTE versions 3.0.0 to 3.1.0, a specially crafted DELETE connection command to the management interface can lead to a dangling pointer. This allows subsequent commands to access freed memory (use-after-free). Join the discussion | CVE Database V5 | 06/18/2026, 14:10:18 UTC Added: 06/18/2026, 14:21:52 UTC |
CVE-2026-42530: CWE-416 Use After Free in F5 NGINX Open SourceCVE-2026-42530 0 NGINX Open Source has a vulnerability in the ngx_http_v3_module module. When NGINX Open Source is configured to use the HTTP/3 QUIC module, a remote unauthenticated attacker along with conditions beyond their control can use a specially crafted HTTP/3 session to reopen a QPACK encoder stream. This may cause a Use-after-Free in the NGINX worker process leading to a restart. Additionally, attackers can execute code on systems with Address Space Layout Randomization (ASLR) disabled or when the attacker can bypass ASLR. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated. Join the discussion | CVE Database V5 | 06/17/2026, 14:04:32 UTC Added: 06/17/2026, 15:07:24 UTC |
CVE-2026-6040: CWE-416 Use After Free in The Document Foundation LibreOfficeCVE-2026-6040 0 A heap use-after-free existed when importing the blank-width characters of an ODF number format. A position value read from the document was not checked against the length of the format-code string, so a malformed number format could be processed against memory outside that string. In fixed versions the position is bounds-checked before use. Join the discussion | CVE Database V5 | 06/15/2026, 16:21:53 UTC Added: 06/15/2026, 18:00:22 UTC |
CVE-2026-41158: CWE-416: Use After Free in Imagination Technologies Graphics DDKCVE-2026-41158 0 Software installed and run as a non-privileged user may conduct GPU system calls to write to arbitrary freed physical pages. Physical memory allocated and freed, without the deferred free mechanism can lead to those resources being used for read/write by the GPU after the kernel module has freed the resource. Join the discussion | CVE Database V5 | 06/12/2026, 21:57:29 UTC Added: 06/12/2026, 22:24:30 UTC |
Showing 1 to 10 of 87 results