CVE-2024-35792
In the Linux kernel, the following vulnerability has been resolved: crypto: rk3288 - Fix use after free in unprepare The unprepare call mu
CVSS
7.8
Alto
EPSS
0.2%
p13
KEV
—
Exploit Today
4
0-100
Publicado: 17 may 2024 · Última mod.: 4 ago 2026 · CWE-416
0.2%EPSS · 30 días0.2%
2026-07-252026-08-21
In the Linux kernel, the following vulnerability has been resolved: crypto: rk3288 - Fix use after free in unprepare The unprepare call must be carried out before the finalize call as the latter can free the request.
- git.kernel.orghttps://git.kernel.org/stable/c/48dd260fdb728eda4a246f635d1325e82f0d3555
- git.kernel.orghttps://git.kernel.org/stable/c/c0afb6b88fbbc177fa322a835f874be217bffe45
- git.kernel.orghttps://git.kernel.org/stable/c/eb2a41a8ae8c8c4f68aef3bd94665c0cf23e04be
- git.kernel.orghttps://git.kernel.org/stable/c/48dd260fdb728eda4a246f635d1325e82f0d3555
- git.kernel.orghttps://git.kernel.org/stable/c/c0afb6b88fbbc177fa322a835f874be217bffe45
- git.kernel.orghttps://git.kernel.org/stable/c/eb2a41a8ae8c8c4f68aef3bd94665c0cf23e04be
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-772357.3 ALT—
——0Missing privilege verification in the secure context cleanup handler in FreeRTOS-Kernel before 11.3.1 might allow local users to cause a use-after-free condition in secure-world memory via the SVC handler for secure context deallocation. To remediate this issue, users should upgrade to version 11.3.1 or later.2dCVE-2026-399098.1 ALT—
——0llama.cpp before b8585 contains a use-after-free vulnerability in the RPC server's GRAPH_RECOMPUTE handler that allows unauthenticated remote attackers to achieve arbitrary read and write access by storing a computation graph, freeing referenced buffers, and reclaiming freed memory with attacker-controlled content. Attackers can send RPC requests to trigger re-execution of stored graphs with dangling pointers, enabling full remote code execution without requiring authentication or user interaction.2dCVE-2026-206794.3 MED4.7%
——1The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.5, macOS Sonoma 14.8.5, macOS Tahoe 26.4. Processing a maliciously crafted file may lead to unexpected app termination.2dCVE-2026-171189.8 CRÍ53.7%
——16IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to a use-after-free vulnerability.2dCVE-2026-760218.8 ALT30.9%
——9Use after free in DOM in Google Chrome prior to 151.0.7922.173 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)1dCVE-2026-760178.8 ALT29.1%
——9Use after free in Chromoting in Google Chrome prior to 151.0.7922.173 allowed a remote attacker to execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: Critical)2d