CWE-822
212 CVEs • Abstraction: Base
Untrusted Pointer Dereference
The product obtains a value from an untrusted source, converts this value to a pointer, and dereferences the resulting pointer.
CVEs (212)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 20Qam8295p Firmware Qca6584au FirmwareQca6595 Firmware+17 moreJun 17, 2026 Oct 7, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption when a compat IOCTL call is followed by another IOCTL call from userspace to a driver. |
Untrusted pointer dereference in UEFI firmware for some Intel(R) reference processors may allow a privileged user to potentially enable escalation of privilege via local access. |
1Microsoft 5Sql 2016 Azure Connect Feature Pack Sql Server 2016Sql Server 2017+2 moreJun 17, 2026 Sep 10, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability |
1Microsoft 5Sql 2016 Azure Connect Feature Pack Sql Server 2016Sql Server 2017+2 moreJun 17, 2026 Sep 10, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability |
1Qualcomm 43Fastconnect 6700 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+40 moreJun 17, 2026 Sep 2, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while passing untrusted/corrupted pointers from DSP to EVA. |
1Microsoft 11Windows 10 1607 Windows 10 1809Windows 10 21h2+8 moreJun 17, 2026 Aug 13, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Windows Kernel-Mode Driver Elevation of Privilege Vulnerability |
1Microsoft 11Windows 10 1607 Windows 10 1809Windows 10 21h2+8 moreJun 17, 2026 Aug 13, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Windows Kernel-Mode Driver Elevation of Privilege Vulnerability |
Within Zabbix, users have the ability to directly modify memory pointers in the JavaScript engine. |
There is an elevation of privilege vulnerability in server and client components of Absolute Secure Access prior to version 13.07. Attackers with local access and valid desktop user credentials can elevate their privileg...Show more |
1Microsoft 14Windows 10 1507 Windows 10 1607Windows 10 1809+11 moreJun 17, 2026 Jul 9, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Windows Fax Service Remote Code Execution Vulnerability |
1Microsoft 13Windows 10 1507 Windows 10 1607Windows 10 1809+10 moreJun 17, 2026 Jul 9, 2024 N/A· v4 8.0 HIGH· v3 N/A· v2 Secure Boot Security Feature Bypass Vulnerability |
1Nvidia 3Cloud Gaming Gpu Display DriverVirtual GpuJun 17, 2026 Jun 13, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability where a user can cause an untrusted pointer dereference by executing a driver API. A successful exploit of this vulnerability might lead to denial...Show more |
1Microsoft 14Windows 10 1507 Windows 10 1607Windows 10 1809+11 moreJul 20, 2026 Jun 11, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Windows Kernel-Mode Driver Elevation of Privilege Vulnerability |
1Microsoft 14Windows 10 1507 Windows 10 1607Windows 10 1809+11 moreJul 20, 2026 Jun 11, 2024 N/A· v4 7.0 HIGH· v3 N/A· v2 Microsoft Streaming Service Elevation of Privilege Vulnerability |
A memory corruption vulnerability in SdHost and SdMmcDevice in Insyde InsydeH2O kernel 5.2 before 05.29.09, kernel 5.3 before 05.38.09, kernel 5.4 before 05.46.09, kernel 5.5 before 05.54.09, and kernel 5.6 before 05.61....Show more |
A memory corruption vulnerability in StorageSecurityCommandDxe in Insyde InsydeH2O before kernel 5.2: IB19130163 in 05.29.07, kernel 5.3: IB19130163 in 05.38.07, kernel 5.4: IB19130163 in 05.46.07, kernel 5.5: IB19130163...Show more |
1Pdf Xchange 2Pdf Tools Pdf Xchange EditorJun 17, 2026 May 3, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 PDF-XChange Editor JavaScript String Untrusted Pointer Dereference Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor...Show more |
1Pdf Xchange 2Pdf Tools Pdf Xchange EditorJun 17, 2026 May 3, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 PDF-XChange Editor App Untrusted Pointer Dereference Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interac...Show more |
1Pdf Xchange 2Pdf Tools Pdf Xchange EditorJun 17, 2026 May 3, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 PDF-XChange Editor OXPS File Parsing Untrusted Pointer Dereference Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor...Show more |
Ashlar-Vellum Cobalt XE File Parsing Untrusted Pointer Dereference Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Coba...Show more |