CVE-2019-25162
In the Linux kernel, the following vulnerability has been resolved: i2c: Fix a potential use after free Free the adap structure only after
CVSS
7.8
High
EPSS
0.4%
p32
KEV
—
Exploit Today
10
0-100
Published: Feb 26, 2024 · Last modified: Aug 4, 2026 · CWE-416
0.4%EPSS · 30 days0.4%
2026-08-232026-09-20
In the Linux kernel, the following vulnerability has been resolved: i2c: Fix a potential use after free Free the adap structure only after we are done using it. This patch just moves the put_device() down a bit to avoid the use after free. [wsa: added comment to the code, added Fixes tag]
- git.kernel.orghttps://git.kernel.org/stable/c/12b0606000d0828630c033bf0c74c748464fe87d
- git.kernel.orghttps://git.kernel.org/stable/c/23a191b132cd87f746c62f3dc27da33683d85829
- git.kernel.orghttps://git.kernel.org/stable/c/35927d7509ab9bf41896b7e44f639504eae08af7
- git.kernel.orghttps://git.kernel.org/stable/c/81cb31756888bb062e92d2dca21cd629d77a46a9
- git.kernel.orghttps://git.kernel.org/stable/c/871a1e94929a27bf6e2cd99523865c840bbc2d87
- git.kernel.orghttps://git.kernel.org/stable/c/e4c72c06c367758a14f227c847f9d623f1994ecf
- git.kernel.orghttps://git.kernel.org/stable/c/e6412ba3b6508bdf9c074d310bf4144afa6aec1a
- git.kernel.orghttps://git.kernel.org/stable/c/e8e1a046cf87c8b1363e5de835114f2779e2aaf4
- git.kernel.orghttps://git.kernel.org/stable/c/12b0606000d0828630c033bf0c74c748464fe87d
- git.kernel.orghttps://git.kernel.org/stable/c/23a191b132cd87f746c62f3dc27da33683d85829
- git.kernel.orghttps://git.kernel.org/stable/c/35927d7509ab9bf41896b7e44f639504eae08af7
- git.kernel.orghttps://git.kernel.org/stable/c/81cb31756888bb062e92d2dca21cd629d77a46a9
- git.kernel.orghttps://git.kernel.org/stable/c/871a1e94929a27bf6e2cd99523865c840bbc2d87
- git.kernel.orghttps://git.kernel.org/stable/c/e4c72c06c367758a14f227c847f9d623f1994ecf
- git.kernel.orghttps://git.kernel.org/stable/c/e6412ba3b6508bdf9c074d310bf4144afa6aec1a
- git.kernel.orghttps://git.kernel.org/stable/c/e8e1a046cf87c8b1363e5de835114f2779e2aaf4
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-940849.4 CRI34.2%
——10Suricata before 8.0.7 has an Http2ThreadMultiBuf use-after-free when a transaction is inspected by rules that use http.response_header with and without a transform.2dCVE-2026-940553.7 LOW24.4%
——7Exim before 4.100.1, when certain non-default TLS settings are used with GnuTLS, has a use-after-free.2dCVE-2026-880978.1 HIG12.7%
——4Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges locally.1dCVE-2026-935862.9 LOW1.7%
——1ImageMagick before 7.1.2-31 and before 6.9.13-56 contains a use-after-free vulnerability in the ImagesToBlob method, caused by a pointer that is not updated correctly. Exploitation may result in a limited availability impact (e.g., a crash of the affected process). The issue is fixed in versions 7.1.2-31 and 6.9.13-56.3dCVE-2026-933828.8 HIG31.2%
——9Use after free in PDFium in Google Chrome prior to 153.0.8010.52 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)2dCVE-2026-933749.6 CRI29.2%
——9Use after free in Dawn in Google Chrome on on Android prior to 153.0.8010.52 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)2d