CWE-476
5,437 CVEs • Abstraction: Base • Likelihood of Exploit: Medium
NULL Pointer Dereference
The product dereferences a pointer that it expects to be valid but is NULL.
CVEs (5,437)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
5Canonical DebianLinux+2 more9Active Iq Unified Manager Data Availability ServicesDebian Linux+6 moreJun 17, 2026 Aug 19, 2019 N/A· v4 4.6 MEDIUM· v3 4.9 MEDIUM· v2 An issue was discovered in the Linux kernel before 5.1.17. There is a NULL pointer dereference caused by a malicious USB device in the sound/usb/line6/pcm.c driver. |
5Canonical DebianLinux+2 more9Active Iq Unified Manager Data Availability ServicesDebian Linux+6 moreJun 17, 2026 Aug 19, 2019 N/A· v4 4.6 MEDIUM· v3 4.9 MEDIUM· v2 An issue was discovered in the Linux kernel before 5.1.8. There is a NULL pointer dereference caused by a malicious USB device in the drivers/usb/misc/sisusbvga/sisusb.c driver. |
6Canonical DebianLinux+3 more10Active Iq Unified Manager Data Availability ServicesDebian Linux+7 moreJun 17, 2026 Aug 19, 2019 N/A· v4 4.6 MEDIUM· v3 4.9 MEDIUM· v2 An issue was discovered in the Linux kernel before 5.1.8. There is a NULL pointer dereference caused by a malicious USB device in the drivers/media/usb/siano/smsusb.c driver. |
5Canonical DebianLinux+2 more9Active Iq Unified Manager Data Availability ServicesDebian Linux+6 moreJun 17, 2026 Aug 19, 2019 N/A· v4 4.6 MEDIUM· v3 4.9 MEDIUM· v2 An issue was discovered in the Linux kernel before 5.2.3. There is a NULL pointer dereference caused by a malicious USB device in the drivers/media/usb/zr364xx/zr364xx.c driver. |
5Canonical DebianLinux+2 more9Active Iq Unified Manager Data Availability ServicesDebian Linux+6 moreJun 17, 2026 Aug 19, 2019 N/A· v4 4.6 MEDIUM· v3 4.9 MEDIUM· v2 An issue was discovered in the Linux kernel before 5.0.14. There is a NULL pointer dereference caused by a malicious USB device in the drivers/usb/misc/yurex.c driver. |
2Canonical Linux2Linux Kernel Ubuntu LinuxJun 17, 2026 Aug 16, 2019 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 drivers/net/wireless/ath/ath10k/usb.c in the Linux kernel through 5.2.8 has a NULL pointer dereference via an incomplete address in an endpoint descriptor. |
5Canonical DebianLinux+2 more8Active Iq Performance Analytics Services Active Iq Unified ManagerData Availability Services+5 moreJun 17, 2026 Aug 16, 2019 N/A· v4 4.6 MEDIUM· v3 4.9 MEDIUM· v2 drivers/net/wireless/ath/ath6kl/usb.c in the Linux kernel through 5.2.9 has a NULL pointer dereference via an incomplete address in an endpoint descriptor. |
2Debian Stb Vorbis Project2Debian Linux Stb VorbisJun 17, 2026 Aug 15, 2019 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 A NULL pointer dereference in the get_window function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service by opening a crafted Ogg Vorbis file. |
2Linux Redhat2Enterprise Linux Linux KernelJun 17, 2026 Aug 15, 2019 N/A· v4 5.5 MEDIUM· v3 4.9 MEDIUM· v2 A vulnerability was found in Linux kernel's, versions up to 3.10, implementation of overlayfs. An attacker with local access can create a denial of service situation via NULL pointer dereference in ovl_posix_acl_create f...Show more |
4Belden SiemensSonicwall+1 more119410 Power Meter Firmware 9810 Power Meter FirmwareGarrettcom Magnum Dx940e Firmware+8 moreJun 17, 2026 Aug 9, 2019 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Wind River VxWorks 6.6, 6.7, 6.8, 6.9 and vx7 has an array index error in the IGMPv3 client component. There is an IPNET security vulnerability: DoS via NULL dereference in IGMP parsing. |
2Debian Opencv2Debian Linux OpencvJun 17, 2026 Aug 1, 2019 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An issue was discovered in OpenCV before 4.1.1. There is a NULL pointer dereference in the function cv::XMLParser::parse at modules/core/src/persistence.cpp. |
3Linux NetappRedhat20Cloud Backup Developer ToolsEnterprise Linux+17 moreNov 21, 2024 Jul 30, 2019 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A flaw was found in the Linux kernel's NFS implementation, all versions 3.x and all versions 4.x up to 4.20. An attacker, who is able to mount an exported NFS filesystem, is able to trigger a null pointer dereference by...Show more |
libopenmpt before 0.4.3 allows a crash due to a NULL pointer dereference when doing a portamento from an OPL instrument to an empty instrument note map slot. |
1Qualcomm 44Mdm9150 Firmware Mdm9206 FirmwareMdm9607 Firmware+41 moreJun 17, 2026 Jul 25, 2019 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 Null pointer dereferencing can happen when playing the clip with wrong block group id in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdra...Show more |
1Qualcomm 38Ipq8074 Firmware Mdm9206 FirmwareMdm9607 Firmware+35 moreJun 17, 2026 Jul 25, 2019 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 Null pointer dereference during secure application termination using specific application ids. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Con...Show more |
In libnasm.a in Netwide Assembler (NASM) 2.14.xx, asm/pragma.c allows a NULL pointer dereference in process_pragma, search_pragma_list, and nasm_set_limit when "%pragma limit" is mishandled. |
Jsish 2.4.83 2.0483 is affected by: Nullpointer dereference. The impact is: denial of service. The component is: function jsi_DumpFunctions (jsiEval.c:567). The attack vector is: executing crafted javascript code. The fi...Show more |
jsish 2.4.74 2.0474 is affected by: CWE-476: NULL Pointer Dereference. The impact is: denial of service. The component is: function Jsi_StrcmpDict (jsiChar.c:121). The attack vector is: The victim must execute crafted ja...Show more |
1Qualcomm 26Mdm9607 Firmware Mdm9640 FirmwareMsm8909w Firmware+23 moreJun 17, 2026 Jul 22, 2019 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 Null pointer dereference occurs for channel context while opening glink channel in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9607, MDM9640, MSM8909W...Show more |
An issue was discovered in Foxit PhantomPDF before 8.3.11. The application could crash when calling certain XFA JavaScript due to the use of, or access to, a NULL pointer without proper validation on the object. |