Vulnerabilities (CVE)

Filtered by CWE-416
Total 8686 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-23697 1 Google 1 Android 2026-06-17 N/A 7.8 HIGH
In RGXCreateHWRTData_aux of rgxta3d.c, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2024-23696 1 Google 1 Android 2026-06-17 N/A 7.8 HIGH
In RGXCreateZSBufferKM of rgxta3d.c, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2024-23658 2 Google, Unisoc 14 Android, S8000, Sc7731e and 11 more 2026-06-17 N/A 4.4 MEDIUM
In camera driver, there is a possible use after free due to a logic error. This could lead to local denial of service with System execution privileges needed
CVE-2024-23384 1 Qualcomm 208 Fastconnect 6200, Fastconnect 6200 Firmware, Fastconnect 6700 and 205 more 2026-06-17 N/A 8.4 HIGH
Memory corruption when the mapped pages in VBO are still mapped after reclaiming by shrinker.
CVE-2024-23383 1 Qualcomm 142 Fastconnect 6200, Fastconnect 6200 Firmware, Fastconnect 6700 and 139 more 2026-06-17 N/A 8.4 HIGH
Memory corruption when kernel driver attempts to trigger hardware fences.
CVE-2024-23382 1 Qualcomm 208 Fastconnect 6200, Fastconnect 6200 Firmware, Fastconnect 6700 and 205 more 2026-06-17 N/A 8.4 HIGH
Memory corruption while processing graphics kernel driver request to create DMA fence.
CVE-2024-23381 1 Qualcomm 144 Fastconnect 6200, Fastconnect 6200 Firmware, Fastconnect 6700 and 141 more 2026-06-17 N/A 8.4 HIGH
Memory corruption when memory mapped in a VBO is not unmapped by the GPU SMMU.
CVE-2024-23380 1 Qualcomm 212 Fastconnect 6200, Fastconnect 6200 Firmware, Fastconnect 6700 and 209 more 2026-06-17 N/A 8.4 HIGH
Memory corruption while handling user packets during VBO bind operation.
CVE-2024-23376 1 Qualcomm 42 Fastconnect 6900, Fastconnect 6900 Firmware, Fastconnect 7800 and 39 more 2026-06-17 N/A 6.7 MEDIUM
Memory corruption while sending the persist buffer command packet from the user-space to the kernel space through the IOCTL call.
CVE-2024-23373 1 Qualcomm 444 205 Mobile Platform, 205 Mobile Platform Firmware, 215 Mobile Platform and 441 more 2026-06-17 N/A 8.4 HIGH
Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.
CVE-2024-23370 1 Qualcomm 22 Qca6584au, Qca6584au Firmware, Qca6698aq and 19 more 2026-06-17 N/A 6.7 MEDIUM
Memory corruption when a process invokes IOCTL calls from user-space to create a HAB virtual channel and another process invokes IOCTL calls to destroy the same.
CVE-2024-23365 1 Qualcomm 96 Fastconnect 7800, Fastconnect 7800 Firmware, Qam8255p and 93 more 2026-06-17 N/A 8.4 HIGH
Memory corruption while releasing shared resources in MinkSocket listener thread.
CVE-2024-23354 1 Qualcomm 152 Fastconnect 6700, Fastconnect 6700 Firmware, Fastconnect 6900 and 149 more 2026-06-17 N/A 8.4 HIGH
Memory corruption when the IOCTL call is interrupted by a signal.
CVE-2024-23322 1 Envoyproxy 1 Envoy 2026-06-17 N/A 7.5 HIGH
Envoy is a high-performance edge/middle/service proxy. Envoy will crash when certain timeouts happen within the same interval. The crash occurs when the following are true: 1. hedge_on_per_try_timeout is enabled, 2. per_try_idle_timeout is enabled (it can only be done in configuration), 3. per-try-timeout is enabled, either through headers or configuration and its value is equal, or within the backoff interval of the per_try_idle_timeout. This issue has been addressed in released 1.29.1, 1.28.1, 1.27.3, and 1.26.7. Users are advised to upgrade. There are no known workarounds for this vulnerability.
CVE-2024-23310 2 Fedoraproject, Libbiosig Project 2 Fedora, Libbiosig 2026-06-17 N/A 9.8 CRITICAL
A use-after-free vulnerability exists in the sopen_FAMOS_read functionality of The Biosig Project libbiosig 2.5.0 and Master Branch (ab0ee111). A specially crafted .famos file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.
CVE-2024-23300 1 Apple 1 Garageband 2026-06-17 N/A 7.8 HIGH
A use-after-free issue was addressed with improved memory management. This issue is fixed in GarageBand 10.4.11. Processing a maliciously crafted file may lead to unexpected app termination or arbitrary code execution.
CVE-2024-23158 1 Autodesk 9 Advance Steel, Autocad, Autocad Architecture and 6 more 2026-06-17 N/A 7.8 HIGH
A maliciously crafted IGES file, when parsed in ASMImport229A.dll through Autodesk applications, can be used to cause a use-after-free vulnerability. A malicious actor can leverage this vulnerability to cause a crash or execute arbitrary code in the context of the current process.
CVE-2024-23142 1 Autodesk 9 Advance Steel, Autocad, Autocad Architecture and 6 more 2026-06-17 N/A 7.8 HIGH
A maliciously crafted CATPART, STP, and MODEL file, when parsed in atf_dwg_consumer.dll, rose_x64_vc15.dll and libodxdll through Autodesk applications, can cause a use-after-free vulnerability. This vulnerability, along with other vulnerabilities, can lead to code execution in the current process.
CVE-2024-23135 1 Autodesk 9 Advance Steel, Autocad, Autocad Architecture and 6 more 2026-06-17 N/A 7.8 HIGH
A maliciously crafted SLDPRT file in ASMkern228A.dll when parsed through Autodesk applications can be used in user-after-free vulnerability. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.
CVE-2024-23134 1 Autodesk 9 Advance Steel, Autocad, Autocad Architecture and 6 more 2026-06-17 N/A 7.8 HIGH
A maliciously crafted IGS file in tbb.dll when parsed through Autodesk AutoCAD can be used in user-after-free vulnerability. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.