CVE-2021-47048
In the Linux kernel, the following vulnerability has been resolved: spi: spi-zynqmp-gqspi: fix use-after-free in zynqmp_qspi_exec_op When
CVSS
7.8
High
EPSS
0.2%
p15
KEV
—
Exploit Today
4
0-100
Published: Feb 28, 2024 · Last modified: Aug 4, 2026 · CWE-416
0.2%EPSS · 30 days0.2%
2026-07-292026-08-26
In the Linux kernel, the following vulnerability has been resolved: spi: spi-zynqmp-gqspi: fix use-after-free in zynqmp_qspi_exec_op When handling op->addr, it is using the buffer "tmpbuf" which has been freed. This will trigger a use-after-free KASAN warning. Let's use temporary variables to store op->addr.val and op->cmd.opcode to fix this issue.
- git.kernel.orghttps://git.kernel.org/stable/c/1231279389b5e638bc3b66b9741c94077aed4b5a
- git.kernel.orghttps://git.kernel.org/stable/c/23269ac9f123eca3aea7682d3345c02e71ed696c
- git.kernel.orghttps://git.kernel.org/stable/c/a2c5bedb2d55dd27c642c7b9fb6886d7ad7bdb58
- git.kernel.orghttps://git.kernel.org/stable/c/d67e0d6bd92ebbb0294e7062bbf5cdc773764e62
- git.kernel.orghttps://git.kernel.org/stable/c/1231279389b5e638bc3b66b9741c94077aed4b5a
- git.kernel.orghttps://git.kernel.org/stable/c/23269ac9f123eca3aea7682d3345c02e71ed696c
- git.kernel.orghttps://git.kernel.org/stable/c/a2c5bedb2d55dd27c642c7b9fb6886d7ad7bdb58
- git.kernel.orghttps://git.kernel.org/stable/c/d67e0d6bd92ebbb0294e7062bbf5cdc773764e62
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2025-369408.8 HIG11.9%
——4Use-After-Free vulnerability in a zircon kernel pager proxy (Fuchsia), which could lead to a Privilege Escalation from Userspace to Kernel (AP)3dCVE-2026-783768.8 HIG19.6%
——6A flaw was found in WebKitGTK. Processing malicious web content can cause a use-after-free issue due to improper memory handling and result in memory corruption.2dCVE-2026-772357.3 HIG1.4%
——0Missing privilege verification in the secure context cleanup handler in FreeRTOS-Kernel before 11.3.1 might allow local users to cause a use-after-free condition in secure-world memory via the SVC handler for secure context deallocation. To remediate this issue, users should upgrade to version 11.3.1 or later.2dCVE-2026-399098.1 HIG52.9%
——16llama.cpp before b8585 contains a use-after-free vulnerability in the RPC server's GRAPH_RECOMPUTE handler that allows unauthenticated remote attackers to achieve arbitrary read and write access by storing a computation graph, freeing referenced buffers, and reclaiming freed memory with attacker-controlled content. Attackers can send RPC requests to trigger re-execution of stored graphs with dangling pointers, enabling full remote code execution without requiring authentication or user interaction.3dCVE-2026-206794.3 MED11.3%
——3The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 14.8.5, macOS Tahoe 26.4. Processing a maliciously crafted file may lead to unexpected app termination.3dCVE-2026-171189.8 CRI36.8%
——11IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a use-after-free vulnerability.2d