CWE-822
212 CVEs • Abstraction: Base
Untrusted Pointer Dereference
The product obtains a value from an untrusted source, converts this value to a pointer, and dereferences the resulting pointer.
CVEs (212)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Autodesk 10Autocad Autocad Advance SteelAutocad Architecture+7 moreJun 17, 2026 Nov 23, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 A maliciously crafted STP file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to dereference an untrusted pointer. This vulnerability, along with other vulnerabilities, could lead to code execution in the...Show more |
1Microsoft 3365 Apps OfficeOffice Long Term Servicing ChannelJun 17, 2026 Nov 14, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Microsoft Office Graphics Remote Code Execution Vulnerability |
1Microsoft 9Windows 10 1809 Windows 10 21h2Windows 10 22h2+6 moreJun 17, 2026 Nov 14, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Windows DWM Core Library Elevation of Privilege Vulnerability |
NVIDIA Display Driver for Windows contains a vulnerability where an attacker may cause a pointer dereference of an untrusted value, which may lead to denial of service. |
1Motorola 2Mtm5400 Firmware Mtm5500 FirmwareJun 17, 2026 Oct 19, 2023 N/A· v4 8.2 HIGH· v3 N/A· v2 The Motorola MTM5000 series firmwares lack pointer validation on arguments passed to trusted execution environment (TEE) modules. Two modules are used, one responsible for KVL key management and the other for TETRA crypt...Show more |
1Microsoft 10Windows 10 1507 Windows 10 1809Windows 10 21h1+7 moreJun 17, 2026 Oct 10, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Remote Procedure Call Information Disclosure Vulnerability |
1Microsoft 2Visual Studio 2019 Visual Studio 2022Jun 17, 2026 Sep 12, 2023 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Visual Studio Elevation of Privilege Vulnerability |
1Qualcomm 24Apq8064au Firmware Apq8096au FirmwareMsm8996au Firmware+21 moreJun 17, 2026 Aug 8, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption due to untrusted pointer dereference in automotive during system call. |
All versions prior to 9.1.4 of Advantech WebAccess/SCADA are vulnerable to use of untrusted pointers. The RPC arguments the client sent could contain raw memory pointers for the server to use as-is. This could allow an a...Show more |
1Microsoft 11Windows 10 1507 Windows 10 1607Windows 10 1809+8 moreJun 17, 2026 Jul 11, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability |
1Nvidia 3Cloud Gaming Gpu Display DriverVirtual GpuJun 17, 2026 Jun 23, 2023 N/A· v4 7.6 HIGH· v3 N/A· v2 NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability where unexpected untrusted data is parsed, which may lead to code execution, denial of service, escalation of privileges, data tampering, or inf...Show more |
1Microsoft 9Windows 10 1607 Windows 10 1809Windows 10 21h2+6 moreJun 17, 2026 Jun 14, 2023 N/A· v4 8.4 HIGH· v3 N/A· v2 Microsoft Streaming Service Elevation of Privilege Vulnerability |
1Qualcomm 110Csra6620 Firmware Csra6640 FirmwareFlight Rb5 5g Platform Firmware+107 moreJun 17, 2026 Jun 6, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Transient DOS due to untrusted Pointer Dereference in core while sending USB QMI request. |
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer handler which may lead to denial of service, escalation of privileges, information disclosure, and data tampering. |
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer handler which may lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. |
1Microsoft 13Windows 10 1507 Windows 10 1607Windows 10 1809+10 moreJun 17, 2026 Mar 14, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Client Server Run-Time Subsystem (CSRSS) Information Disclosure Vulnerability |
This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious p...Show more |
This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious p...Show more |
1Microsoft 2Windows 11 Windows Server 2022Jun 17, 2026 Jan 10, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability |
1Microsoft 11Windows 10 1607 Windows 10 1809Windows 10 20h2+8 moreJun 17, 2026 Jan 10, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability |