VYPR

CWE-476

NULL Pointer Dereference

BaseStableLikelihood: Medium

Description

The product dereferences a pointer that it expects to be valid but is NULL.

Hierarchy (View 1000)

Children

none

CVEs mapped to this weakness (5,534)

page 178 of 277
  • CVE-2020-23911MedJul 18, 2023
    risk 0.36cvss 5.5epss 0.00

    An issue was discovered in asn1c through v0.9.28. A NULL pointer dereference exists in the function _default_error_logger() located in asn1fix.c. It allows an attacker to cause Denial of Service.

  • CVE-2022-48445MedJun 6, 2023
    risk 0.36cvss 5.5epss 0.00

    In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.

  • CVE-2022-48444MedJun 6, 2023
    risk 0.36cvss 5.5epss 0.00

    In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.

  • CVE-2022-48443MedJun 6, 2023
    risk 0.36cvss 5.5epss 0.00

    In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.

  • CVE-2022-48442MedJun 6, 2023
    risk 0.36cvss 5.5epss 0.00

    In dialer service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.

  • CVE-2023-33461MedJun 1, 2023
    risk 0.36cvss 5.5epss 0.00

    iniparser v4.1 is vulnerable to NULL Pointer Dereference in function iniparser_getlongint which misses check NULL for function iniparser_getstring's return.

  • CVE-2023-2875MedMay 24, 2023
    risk 0.36cvss 5.5epss 0.00

    A vulnerability, which was classified as problematic, was found in eScan Antivirus 22.0.1400.2443. Affected is the function 0x22E008u in the library PROCOBSRVESX.SYS of the component IoControlCode Handler. The manipulation leads to null pointer dereference. It is possible to…

  • CVE-2023-2872MedMay 24, 2023
    risk 0.36cvss 5.5epss 0.00

    A vulnerability classified as problematic has been found in FlexiHub 5.5.14691.0. This affects the function 0x220088 in the library fusbhub.sys of the component IoControlCode Handler. The manipulation leads to null pointer dereference. An attack has to be approached locally. The…

  • CVE-2023-2609MedMay 9, 2023
    risk 0.36cvss 5.5epss 0.00

    NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.1531.

  • CVE-2022-48241MedMay 9, 2023
    risk 0.36cvss 5.5epss 0.00

    In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.

  • CVE-2022-48231MedMay 9, 2023
    risk 0.36cvss 5.5epss 0.00

    In soter service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.

  • CVE-2023-31081MedApr 24, 2023
    risk 0.36cvss 5.5epss 0.00

    An issue was discovered in drivers/media/test-drivers/vidtv/vidtv_bridge.c in the Linux kernel 6.2. There is a NULL pointer dereference in vidtv_mux_stop_thread. In vidtv_stop_streaming, after dvb->mux=NULL occurs, it executes vidtv_mux_stop_thread(dvb->mux).

  • CVE-2023-0190MedApr 22, 2023
    risk 0.36cvss 5.5epss 0.00

    NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer, where a NULL pointer dereference may lead to denial of service.

  • CVE-2023-2166MedApr 19, 2023
    risk 0.36cvss 5.5epss 0.00

    A null pointer dereference issue was found in can protocol in net/can/af_can.c in the Linux before Linux. ml_priv may not be initialized in the receive path of CAN frames. A local user could use this flaw to crash the system or potentially cause a denial of service.

  • CVE-2023-28328MedApr 19, 2023
    risk 0.36cvss 5.5epss 0.00

    A NULL pointer dereference flaw was found in the az6027 driver in drivers/media/usb/dev-usb/az6027.c in the Linux Kernel. The message from user space is not checked properly before transferring into the device. This flaw allows a local user to crash the system or potentially…

  • CVE-2023-28327MedApr 19, 2023
    risk 0.36cvss 5.5epss 0.00

    A NULL pointer dereference flaw was found in the UNIX protocol in net/unix/diag.c In unix_diag_get_exact in the Linux Kernel. The newly allocated skb does not have sk, leading to a NULL pointer. This flaw allows a local user to crash or potentially cause a denial of service.

  • CVE-2023-29569MedApr 14, 2023
    risk 0.36cvss 5.5epss 0.00

    Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via ffi_cb_impl_wpwwwww at src/mjs_ffi.c. This vulnerability can lead to a Denial of Service (DoS).

  • CVE-2022-47468MedApr 11, 2023
    risk 0.36cvss 5.5epss 0.00

    In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.

  • CVE-2022-47467MedApr 11, 2023
    risk 0.36cvss 5.5epss 0.00

    In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.

  • CVE-2022-47466MedApr 11, 2023
    risk 0.36cvss 5.5epss 0.00

    In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.