CWE-476
NULL Pointer Dereference
Description
The product dereferences a pointer that it expects to be valid but is NULL.
Hierarchy (View 1000)
CVEs mapped to this weakness (5,534)
page 178 of 277| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-23911 | Med | 0.36 | 5.5 | 0.00 | Jul 18, 2023 | An issue was discovered in asn1c through v0.9.28. A NULL pointer dereference exists in the function _default_error_logger() located in asn1fix.c. It allows an attacker to cause Denial of Service. | ||
| CVE-2022-48445 | Med | 0.36 | 5.5 | 0.00 | Jun 6, 2023 | In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. | ||
| CVE-2022-48444 | Med | 0.36 | 5.5 | 0.00 | Jun 6, 2023 | In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. | ||
| CVE-2022-48443 | Med | 0.36 | 5.5 | 0.00 | Jun 6, 2023 | In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. | ||
| CVE-2022-48442 | Med | 0.36 | 5.5 | 0.00 | Jun 6, 2023 | In dialer service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. | ||
| CVE-2023-33461 | Med | 0.36 | 5.5 | 0.00 | Jun 1, 2023 | iniparser v4.1 is vulnerable to NULL Pointer Dereference in function iniparser_getlongint which misses check NULL for function iniparser_getstring's return. | ||
| CVE-2023-2875 | Med | 0.36 | 5.5 | 0.00 | May 24, 2023 | A vulnerability, which was classified as problematic, was found in eScan Antivirus 22.0.1400.2443. Affected is the function 0x22E008u in the library PROCOBSRVESX.SYS of the component IoControlCode Handler. The manipulation leads to null pointer dereference. It is possible to… | ||
| CVE-2023-2872 | Med | 0.36 | 5.5 | 0.00 | May 24, 2023 | A vulnerability classified as problematic has been found in FlexiHub 5.5.14691.0. This affects the function 0x220088 in the library fusbhub.sys of the component IoControlCode Handler. The manipulation leads to null pointer dereference. An attack has to be approached locally. The… | ||
| CVE-2023-2609 | Med | 0.36 | 5.5 | 0.00 | May 9, 2023 | NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.1531. | ||
| CVE-2022-48241 | Med | 0.36 | 5.5 | 0.00 | May 9, 2023 | In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. | ||
| CVE-2022-48231 | Med | 0.36 | 5.5 | 0.00 | May 9, 2023 | In soter service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. | ||
| CVE-2023-31081 | Med | 0.36 | 5.5 | 0.00 | Apr 24, 2023 | An issue was discovered in drivers/media/test-drivers/vidtv/vidtv_bridge.c in the Linux kernel 6.2. There is a NULL pointer dereference in vidtv_mux_stop_thread. In vidtv_stop_streaming, after dvb->mux=NULL occurs, it executes vidtv_mux_stop_thread(dvb->mux). | ||
| CVE-2023-0190 | Med | 0.36 | 5.5 | 0.00 | Apr 22, 2023 | NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer, where a NULL pointer dereference may lead to denial of service. | ||
| CVE-2023-2166 | Med | 0.36 | 5.5 | 0.00 | Apr 19, 2023 | A null pointer dereference issue was found in can protocol in net/can/af_can.c in the Linux before Linux. ml_priv may not be initialized in the receive path of CAN frames. A local user could use this flaw to crash the system or potentially cause a denial of service. | ||
| CVE-2023-28328 | Med | 0.36 | 5.5 | 0.00 | Apr 19, 2023 | A NULL pointer dereference flaw was found in the az6027 driver in drivers/media/usb/dev-usb/az6027.c in the Linux Kernel. The message from user space is not checked properly before transferring into the device. This flaw allows a local user to crash the system or potentially… | ||
| CVE-2023-28327 | Med | 0.36 | 5.5 | 0.00 | Apr 19, 2023 | A NULL pointer dereference flaw was found in the UNIX protocol in net/unix/diag.c In unix_diag_get_exact in the Linux Kernel. The newly allocated skb does not have sk, leading to a NULL pointer. This flaw allows a local user to crash or potentially cause a denial of service. | ||
| CVE-2023-29569 | Med | 0.36 | 5.5 | 0.00 | Apr 14, 2023 | Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via ffi_cb_impl_wpwwwww at src/mjs_ffi.c. This vulnerability can lead to a Denial of Service (DoS). | ||
| CVE-2022-47468 | Med | 0.36 | 5.5 | 0.00 | Apr 11, 2023 | In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service. | ||
| CVE-2022-47467 | Med | 0.36 | 5.5 | 0.00 | Apr 11, 2023 | In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service. | ||
| CVE-2022-47466 | Med | 0.36 | 5.5 | 0.00 | Apr 11, 2023 | In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service. |
- risk 0.36cvss 5.5epss 0.00
An issue was discovered in asn1c through v0.9.28. A NULL pointer dereference exists in the function _default_error_logger() located in asn1fix.c. It allows an attacker to cause Denial of Service.
- risk 0.36cvss 5.5epss 0.00
In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.
- risk 0.36cvss 5.5epss 0.00
In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.
- risk 0.36cvss 5.5epss 0.00
In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.
- risk 0.36cvss 5.5epss 0.00
In dialer service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.
- risk 0.36cvss 5.5epss 0.00
iniparser v4.1 is vulnerable to NULL Pointer Dereference in function iniparser_getlongint which misses check NULL for function iniparser_getstring's return.
- risk 0.36cvss 5.5epss 0.00
A vulnerability, which was classified as problematic, was found in eScan Antivirus 22.0.1400.2443. Affected is the function 0x22E008u in the library PROCOBSRVESX.SYS of the component IoControlCode Handler. The manipulation leads to null pointer dereference. It is possible to…
- risk 0.36cvss 5.5epss 0.00
A vulnerability classified as problematic has been found in FlexiHub 5.5.14691.0. This affects the function 0x220088 in the library fusbhub.sys of the component IoControlCode Handler. The manipulation leads to null pointer dereference. An attack has to be approached locally. The…
- risk 0.36cvss 5.5epss 0.00
NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.1531.
- risk 0.36cvss 5.5epss 0.00
In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.
- risk 0.36cvss 5.5epss 0.00
In soter service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges.
- risk 0.36cvss 5.5epss 0.00
An issue was discovered in drivers/media/test-drivers/vidtv/vidtv_bridge.c in the Linux kernel 6.2. There is a NULL pointer dereference in vidtv_mux_stop_thread. In vidtv_stop_streaming, after dvb->mux=NULL occurs, it executes vidtv_mux_stop_thread(dvb->mux).
- risk 0.36cvss 5.5epss 0.00
NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer, where a NULL pointer dereference may lead to denial of service.
- risk 0.36cvss 5.5epss 0.00
A null pointer dereference issue was found in can protocol in net/can/af_can.c in the Linux before Linux. ml_priv may not be initialized in the receive path of CAN frames. A local user could use this flaw to crash the system or potentially cause a denial of service.
- risk 0.36cvss 5.5epss 0.00
A NULL pointer dereference flaw was found in the az6027 driver in drivers/media/usb/dev-usb/az6027.c in the Linux Kernel. The message from user space is not checked properly before transferring into the device. This flaw allows a local user to crash the system or potentially…
- risk 0.36cvss 5.5epss 0.00
A NULL pointer dereference flaw was found in the UNIX protocol in net/unix/diag.c In unix_diag_get_exact in the Linux Kernel. The newly allocated skb does not have sk, leading to a NULL pointer. This flaw allows a local user to crash or potentially cause a denial of service.
- risk 0.36cvss 5.5epss 0.00
Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via ffi_cb_impl_wpwwwww at src/mjs_ffi.c. This vulnerability can lead to a Denial of Service (DoS).
- risk 0.36cvss 5.5epss 0.00
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
- risk 0.36cvss 5.5epss 0.00
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.
- risk 0.36cvss 5.5epss 0.00
In telecom service, there is a missing permission check. This could lead to local denial of service in telecom service.