CWE-476
5,612 CVEs • Abstraction: Base • Likelihood of Exploit: Medium
NULL Pointer Dereference
The product dereferences a pointer that it expects to be valid but is NULL.
CVEs (5,612)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Apache DebianFedoraproject3Debian Linux FedoraHttp ServerApr 23, 2026 Sep 8, 2009 N/A· v4 N/A· v3 2.6 LOW· v2 The ap_proxy_ftp_handler function in modules/proxy/proxy_ftp.c in the mod_proxy_ftp module in the Apache HTTP Server 2.0.63 and 2.2.13 allows remote FTP servers to cause a denial of service (NULL pointer dereference and...Show more |
6Canonical FedoraprojectLinux+3 more12Enterprise Linux Desktop Enterprise Linux EusEnterprise Linux Server+9 moreApr 23, 2026 Aug 27, 2009 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 The udp_sendmsg function in the UDP implementation in (1) net/ipv4/udp.c and (2) net/ipv6/udp.c in the Linux kernel before 2.6.19 allows local users to gain privileges or cause a denial of service (NULL pointer dereferen...Show more |
The load_flat_shared_library function in fs/binfmt_flat.c in the flat subsystem in the Linux kernel before 2.6.31-rc6 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibl...Show more |
3Canonical DebianLinux3Debian Linux Linux KernelUbuntu LinuxApr 23, 2026 Jul 1, 2009 N/A· v4 N/A· v3 4.9 MEDIUM· v2 The kvm_arch_vcpu_ioctl_set_sregs function in the KVM in Linux kernel 2.6 before 2.6.30, when running on x86 systems, does not validate the page table root in a KVM_SET_SREGS call, which allows local users to cause a den...Show more |
3Canonical OpensslRedhat3Openssl OpensslUbuntu LinuxApr 23, 2026 Jun 4, 2009 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The dtls1_retrieve_buffered_fragment function in ssl/d1_both.c in OpenSSL before 1.0.0 Beta 2 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an out-of-sequence DTLS h...Show more |
3Canonical OpensslRedhat3Openssl OpensslUbuntu LinuxApr 23, 2026 Jun 4, 2009 N/A· v4 N/A· v3 5.0 MEDIUM· v2 ssl/s3_pkt.c in OpenSSL before 0.9.8i allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a DTLS ChangeCipherSpec packet that occurs before ClientHello. |
2Fedoraproject Trustwave2Fedora ModsecurityApr 23, 2026 Jun 3, 2009 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The multipart processor in ModSecurity before 2.5.9 allows remote attackers to cause a denial of service (crash) via a multipart form datapost request with a missing part header name, which triggers a NULL pointer derefe...Show more |
3Apple DebianOpensuse5Cups Debian LinuxMac Os X+2 moreApr 23, 2026 Nov 21, 2008 N/A· v4 7.5 HIGH· v3 4.3 MEDIUM· v2 cupsd in CUPS 1.3.9 and earlier allows local users, and possibly remote attackers, to cause a denial of service (daemon crash) by adding a large number of RSS Subscriptions, which triggers a NULL pointer dereference. NO...Show more |
Skulltag before 0.97d2-RC6 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) by sending a "command 29" packet when the player is not in the game. |
7Avaya CanonicalDebian+4 more15Communication Manager Debian LinuxExpanded Meet Me Conferencing+12 moreApr 23, 2026 Jul 9, 2008 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 The Linux kernel before 2.6.25.10 does not properly perform tty operations, which allows local users to cause a denial of service (system crash) or possibly gain privileges via vectors involving NULL pointer dereference...Show more |
2Canonical Openssl2Openssl Ubuntu LinuxApr 23, 2026 May 29, 2008 N/A· v4 N/A· v3 4.3 MEDIUM· v2 OpenSSL 0.9.8f and 0.9.8g allows remote attackers to cause a denial of service (crash) via a TLS handshake that omits the Server Key Exchange message and uses "particular cipher suites," which triggers a NULL pointer der...Show more |
The Exchange Collaboration Data Objects (EXCDO) functionality in Microsoft Exchange Server 2000 SP3, 2003 SP1 and SP2, and 2007 allows remote attackers to cause a denial of service (crash) via an Internet Calendar (iCal)...Show more |
The SILC_SERVER_CMD_FUNC function in apps/silcd/command.c in silc-server 1.0.2 allows remote attackers to cause a denial of service (NULL dereference and daemon crash) via a request without a cipher algorithm and an inva...Show more |
1Gecad Technologies 1Axigen Mail Server Apr 23, 2026 Feb 12, 2007 N/A· v4 N/A· v3 7.8 HIGH· v2 axigen 1.2.6 through 2.0.0b1 does not properly parse login credentials, which allows remote attackers to cause a denial of service (NULL dereference and application crash) via a base64-encoded "*\x00" sequence on the ima...Show more |
2Apple Omnigroup4Mac Os X OmniwebSafari+1 moreApr 23, 2026 Jan 18, 2007 N/A· v4 7.5 HIGH· v3 4.3 MEDIUM· v2 WebCore in Apple WebKit build 18794 allows remote attackers to cause a denial of service (null dereference and application crash) via a TD element with a large number in the ROWSPAN attribute, as demonstrated by a crash...Show more |
1Filezilla Project 1Filezilla Server Apr 23, 2026 Dec 15, 2006 N/A· v4 N/A· v3 4.0 MEDIUM· v2 FileZilla Server before 0.9.22 allows remote attackers to cause a denial of service (crash) via a wildcard argument to the (1) LIST or (2) NLST commands, which results in a NULL pointer dereference, a different set of ve...Show more |
3Canonical DebianOpenssl3Debian Linux OpensslUbuntu LinuxApr 23, 2026 Sep 28, 2006 N/A· v4 N/A· v3 4.3 MEDIUM· v2 The get_server_hello function in the SSLv2 client code in OpenSSL 0.9.7 before 0.9.7l, 0.9.8 before 0.9.8d, and earlier versions allows remote servers to cause a denial of service (client crash) via unknown vectors that...Show more |
3Canonical DebianFreetype3Debian Linux FreetypeUbuntu LinuxApr 16, 2026 May 30, 2006 N/A· v4 N/A· v3 5.0 MEDIUM· v2 ftutil.c in Freetype before 2.2 allows remote attackers to cause a denial of service (crash) via a crafted font file that triggers a null dereference. |
2Debian Linux2Debian Linux Linux KernelApr 16, 2026 Oct 21, 2005 N/A· v4 4.7 MEDIUM· v3 1.2 LOW· v2 Race condition in ip_vs_conn_flush in Linux 2.6 before 2.6.13 and 2.4 before 2.4.32-pre2, when running on SMP systems, allows local users to cause a denial of service (null dereference) by causing a connection timer to e...Show more |
2Debian Linux2Debian Linux Linux KernelApr 16, 2026 Aug 23, 2005 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The huft_build function in inflate.c in the zlib routines in the Linux kernel before 2.6.12.5 returns the wrong value, which allows remote attackers to cause a denial of service (kernel crash) via a certain compressed fi...Show more |