CWE-822
212 CVEs • Abstraction: Base
Untrusted Pointer Dereference
The product obtains a value from an untrusted source, converts this value to a pointer, and dereferences the resulting pointer.
CVEs (212)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Microsoft 14Windows 10 1607 Windows 10 1809Windows 10 21h2+11 moreJun 17, 2026 Nov 11, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Untrusted pointer dereference in Windows Remote Desktop allows an authorized attacker to elevate privileges locally. |
1Intel 1Quickassist Technology Jun 17, 2026 Nov 11, 2025 6.8 MEDIUM· v4 5.5 MEDIUM· v3 N/A· v2 Untrusted pointer dereference for some Intel QuickAssist Technology software before version 2.6.0 within Ring 3: User Applications may allow an escalation of privilege. System software adversary with an authenticated use...Show more |
1Intel 1Quickassist Technology Jun 17, 2026 Nov 11, 2025 6.8 MEDIUM· v4 5.5 MEDIUM· v3 N/A· v2 Untrusted pointer dereference for some Intel(R) QAT Windows software before version 2.6.0. within Ring 3: User Applications may allow an information disclosure. System software adversary with an authenticated user combin...Show more |
An issue was discovered in NPU in Samsung Mobile Processor Exynos 1380 through July 2025. There is an Untrusted Pointer Dereference of src_hdr in the copy_ncp_header function. |
1Microsoft 11Windows 10 1809 Windows 10 21h2Windows 10 22h2+8 moreJun 17, 2026 Oct 14, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Untrusted pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally. |
1Microsoft 16Windows 10 1507 Windows 10 1607Windows 10 1809+13 moreJun 17, 2026 Oct 14, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Improper input validation in Windows Kernel allows an authorized attacker to elevate privileges locally. |
1Microsoft 11Windows 10 1809 Windows 10 21h2Windows 10 22h2+8 moreJun 17, 2026 Oct 14, 2025 N/A· v4 7.0 HIGH· v3 N/A· v2 Time-of-check time-of-use (toctou) race condition in NtQueryInformation Token function (ntifs.h) allows an authorized attacker to elevate privileges locally. |
1Microsoft 11Windows 10 1809 Windows 10 21h2Windows 10 22h2+8 moreJun 17, 2026 Oct 14, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Out-of-bounds read in Windows DWM allows an authorized attacker to elevate privileges locally. |
1Microsoft 3Windows 11 24h2 Windows 11 25h2Windows Server 2025Jun 17, 2026 Oct 14, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Untrusted pointer dereference in Windows Device Association Broker service allows an authorized attacker to elevate privileges locally. |
1Microsoft 16Windows 10 1507 Windows 10 1607Windows 10 1809+13 moreJun 17, 2026 Oct 14, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Microsoft is aware of vulnerabilities in the third party Agere Modem driver that ships natively with supported Windows operating systems. This is an announcement of the upcoming removal of ltmdm64.sys driver. The drive...Show more |
1Qualcomm 18Fastconnect 6900 Firmware Fastconnect 7800 FirmwareQcc2072 Firmware+15 moreJun 17, 2026 Oct 9, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing escape commands from userspace. |
1Qualcomm 25Immersive Home 214 Platform Firmware Immersive Home 216 Platform FirmwareImmersive Home 316 Platform Firmware+22 moreJun 17, 2026 Oct 9, 2025 N/A· v4 8.8 HIGH· v3 N/A· v2 Memory corruption while performing SCM call with malformed inputs. |
1Qualcomm 18Fastconnect 6900 Firmware Fastconnect 7800 FirmwareQcc2072 Firmware+15 moreJun 17, 2026 Oct 9, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while processing camera platform driver IOCTL calls. |
Untrusted Pointer Dereference vulnerability in RTI Connext Professional (Core Libraries) allows Pointer Manipulation.This issue affects Connext Professional: from 7.4.0 before 7.6.0, from 7.0.0 before 7.3.0.10, from 6.1....Show more |
Untrusted Pointer Dereference vulnerability in RTI Connext Professional (Core Libraries) allows Pointer Manipulation.This issue affects Connext Professional: from 7.4.0 before 7.6.0, from 7.2.0 before 7.3.0.9. |
1Bytecodealliance 1Webassembly Micro Runtime Jun 17, 2026 Sep 16, 2025 2.1 LOW· v4 5.3 MEDIUM· v3 N/A· v2 WebAssembly Micro Runtime (WAMR) is a lightweight standalone WebAssembly (Wasm) runtime. In WAMR versions prior to 2.4.2, when running in LLVM-JIT mode, the runtime cannot exit normally when executing WebAssembly program...Show more |
1Microsoft 6365 Apps OfficeOffice Long Term Servicing Channel+3 moreJun 17, 2026 Sep 9, 2025 N/A· v4 7.1 HIGH· v3 N/A· v2 Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to disclose information locally. |
1Microsoft 10Windows 10 1607 Windows 10 21h2Windows 10 22h2+7 moreJun 17, 2026 Sep 9, 2025 N/A· v4 7.0 HIGH· v3 N/A· v2 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Connected Devices Platform Service allows an authorized attacker to elevate privileges locally. |
1Microsoft 11Windows 10 1507 Windows 10 1607Windows 10 1809+8 moreJun 17, 2026 Sep 9, 2025 N/A· v4 7.8 HIGH· v3 N/A· v2 Untrusted pointer dereference in Windows DWM allows an authorized attacker to elevate privileges locally. |
Improper input validation in the AMD Graphics Driver could allow an attacker to supply a specially crafted pointer, potentially leading to arbitrary writes or denial of service. |