Threats Tagged 'cwe-590'
View all threats tagged with 'cwe-590'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cwe-590'
Click on any threat for detailed analysis and mitigation recommendations
In PCRE2 before 10.48, pcre2_jit_match mishandles a previously copied subject being passed in as a context. An incorrect free operation can occur. Join the discussion | CVE Database V5 | 09/11/2026, 04:11:51 UTC Added: 09/11/2026, 04:17:24 UTC |
Use of stack memory after free vulnerability in Avast Antivirus when scanning a malformed Windows PE file may allow Denial-of-Service of the antivirus process. This issue affects Avast Antivirus, AVG Antivirus, Norton Antivirus, Avast One, and Avast Business Antivirus on Windows, macOS, and Linux for virus definition builds before VPS 25022500. The affected scanning logic is delivered through a shared Gen Digital virus definition update stream. The same stream feeds the consumer antivirus products listed in this advisory and other Gen Digital products that embed the same engine. Mitigation flows through this update channel; installations at or above the listed build are not vulnerable regardless of which product consumes the stream. Join the discussion | CVE Database V5 | 06/12/2026, 22:08:57 UTC Added: 06/12/2026, 22:24:26 UTC |
Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which incorrectly attempt to free a pointer which was not previously kmalloc()d, while at the same time leaking allocated memory. The bug can be triggered by an unprivileged local user and can result in the corruption of slab metadata and could lead to resource exhaustion. Join the discussion | CVE Database V5 | 05/28/2026, 18:27:33 UTC Added: 05/28/2026, 18:48:40 UTC |
0 Free of memory not on the heap in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. Join the discussion | CVE Database V5 | 01/13/2026, 17:56:10 UTC Added: 01/13/2026, 18:11:38 UTC |
0 Free of memory not on the heap in Microsoft Office Excel allows an unauthorized attacker to execute code locally. Join the discussion | CVE Database V5 | 09/09/2025, 17:00:54 UTC Added: 09/09/2025, 18:28:51 UTC |
SAP MDM Server allows an attacker to gain control of existing client sessions and execute certain functions without having to re-authenticate giving the ability to access or modify non-sensitive information or consume sufficient resources which could degrade the performance of the server causing low impact on confidentiality, integrity and availibility of the application. Join the discussion | CVE Database V5 | 06/10/2025, 00:13:57 UTC Added: 06/10/2025, 18:54:13 UTC |
SAP MDM Server Read function allows an attacker to send specially crafted packets which could trigger a memory read access violation in the server process that would then fail and exit unexpectedly causing high impact on availability with no impact on confidentiality and integrity of the application. Join the discussion | CVE Database V5 | 06/10/2025, 00:13:44 UTC Added: 06/10/2025, 18:54:13 UTC |
SAP MDM Server ReadString function allows an attacker to send specially crafted packets which could trigger a memory read access violation in the server process that would then fail and exit unexpectedly causing high impact on availability with no impact on confidentiality and integrity of the application. Join the discussion | CVE Database V5 | 06/10/2025, 00:13:29 UTC Added: 06/10/2025, 18:54:13 UTC |
Showing 1 to 8 of 8 results