CWE-476
5,441 CVEs • Abstraction: Base • Likelihood of Exploit: Medium
NULL Pointer Dereference
The product dereferences a pointer that it expects to be valid but is NULL.
CVEs (5,441)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Toybox v0.8.7 was discovered to contain a NULL pointer dereference via the component httpd.c. This vulnerability can lead to a Denial of Service (DoS) via unspecified vectors. |
1Schneider Electric 2Opc Ua Module For M580 Firmware X80 Advanced Rtu Module FirmwareJun 17, 2026 Jul 13, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 A CWE-476: NULL Pointer Dereference vulnerability exists that could cause a denial of service of the webserver when parsing JSON content type. Affected Products: X80 advanced RTU Communication Module (BMENOR2200H) (V2.01...Show more |
The frame scheduling module has a null pointer dereference vulnerability. Successful exploitation of this vulnerability will affect the kernel availability. |
The frame scheduling module has a null pointer dereference vulnerability. Successful exploitation of this vulnerability will affect the kernel availability. |
NULL Pointer Dereference allows attackers to cause a denial of service (or application crash). This only applies when lxml is used together with libxml2 2.9.10 through 2.9.14. libxml2 2.9.9 and earlier are not affected....Show more |
NULL Pointer Dereference in GitHub repository bfabiszewski/libmobi prior to 0.11. |
2Linux Redhat2Enterprise Linux Linux KernelJun 17, 2026 Jun 30, 2022 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 A NULL pointer dereference flaw was found in the Linux kernel’s KVM module, which can lead to a denial of service in the x86_emulate_insn in arch/x86/kvm/emulate.c. This flaw occurs while executing an illegal instruction...Show more |
NULL Pointer Dereference in GitHub repository vim/vim prior to 8.2. |
DCMTK through 3.6.6 does not handle string copy properly. Sending specific requests to the dcmqrdb program, it would query its database and copy the result even if the result is null, which can incur a head-based overflo...Show more |
In GPAC MP4Box 1.1.0, there is a Null pointer reference in the function gf_filter_pid_get_packet function in src/filter_core/filter_pid.c:5394, as demonstrated by GPAC. This can cause a denial of service (DOS). |
In Bento4 1.6.0-638, there is a null pointer reference in the function AP4_DescriptorListInspector::Action function in Ap4Descriptor.h:124 , as demonstrated by GPAC. This can cause a denial of service (DOS). |
KubeEdge is built upon Kubernetes and extends native containerized application orchestration and device management to hosts at the Edge. In affected versions a malicious message response from KubeEdge can crash the CSI D...Show more |
KubeEdge is built upon Kubernetes and extends native containerized application orchestration and device management to hosts at the Edge. In affected versions a malicious message can crash CloudCore by triggering a nil-po...Show more |
NULL Pointer Dereference in GitHub repository vim/vim prior to 8.2.5163. |
OFFIS DCMTK's (All versions prior to 3.6.7) has a NULL pointer dereference vulnerability while processing DICOM files, which may result in a denial-of-service condition. |
2Artifex Fedoraproject2Fedora GhostscriptJun 17, 2026 Jun 16, 2022 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 A NULL pointer dereference vulnerability was found in Ghostscript, which occurs when it tries to render a large number of bits in memory. When allocating a buffer device, it relies on an init_device_procs defined for the...Show more |
1Microsoft 3Windows 10 Windows 11Windows Server 2019Jun 17, 2026 Jun 14, 2022 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 Microsoft Windows SMBv3 suffers from a null pointer dereference in versions of Windows prior to the April, 2022 patch set. By sending a malformed FileNormalizedNameInformation SMBv3 request over a named pipe, an attacker...Show more |
1Qualcomm 41Ar8035 Firmware Qca6390 FirmwareQca6391 Firmware+38 moreJun 17, 2026 Jun 14, 2022 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 Possible null pointer access due to improper validation of system information message to be processed in Snapdragon Industrial IOT, Snapdragon Mobile |
1Qualcomm 57Ar8035 Firmware Qca6390 FirmwareQca6391 Firmware+54 moreJun 17, 2026 Jun 14, 2022 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 Possible null pointer dereference due to improper validation of RRC connection reconfiguration message in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile |
The kernel module has the null pointer and out-of-bounds array vulnerabilities. Successful exploitation of this vulnerability may affect system availability. |