VYPR

CWE-476

NULL Pointer Dereference

BaseStableLikelihood: Medium

Description

The product dereferences a pointer that it expects to be valid but is NULL.

Hierarchy (View 1000)

Children

none

CVEs mapped to this weakness (5,669)

page 192 of 284
  • CVE-2021-40575MedJan 13, 2022
    risk 0.36cvss 5.5epss 0.01

    The binary MP4Box in Gpac 1.0.1 has a null pointer dereference vulnerability in the mpgviddmx_process function in reframe_mpgvid.c, which allows attackers to cause a denial of service. This vulnerability is possibly due to an incomplete fix for CVE-2021-40566.

  • CVE-2021-40565MedJan 12, 2022
    risk 0.36cvss 5.5epss 0.01

    A Segmentation fault caused by a null pointer dereference vulnerability exists in Gpac through 1.0.1 via the gf_avc_parse_nalu function in av_parsers.c when using mp4box, which causes a denial of service.

  • CVE-2021-40564MedJan 12, 2022
    risk 0.36cvss 5.5epss 0.01

    A Segmentation fault caused by null pointer dereference vulnerability eists in Gpac through 1.0.2 via the avc_parse_slice function in av_parsers.c when using mp4box, which causes a denial of service.

  • CVE-2021-40563MedJan 12, 2022
    risk 0.36cvss 5.5epss 0.01

    A Segmentation fault exists casued by null pointer dereference exists in Gpac through 1.0.1 via the naludmx_create_avc_decoder_config function in reframe_nalu.c when using mp4box, which causes a denial of service.

  • CVE-2021-40559MedJan 12, 2022
    risk 0.36cvss 5.5epss 0.01

    A null pointer deference vulnerability exists in gpac through 1.0.1 via the naludmx_parse_nal_avc function in reframe_nalu, which allows a denail of service.

  • CVE-2020-25427MedJan 10, 2022
    risk 0.36cvss 5.5epss 0.01

    A Null pointer dereference vulnerability exits in MP4Box - GPAC version 0.8.0-rev177-g51a8ef874-master via the gf_isom_get_track_id function, which causes a denial of service.

  • CVE-2021-46051MedJan 10, 2022
    risk 0.36cvss 5.5epss 0.01

    A Pointer Dereference Vulnerability exists in GPAC 1.0.1 via the Media_IsSelfContained function, which could cause a Denial of Service. .

  • CVE-2021-46049MedJan 10, 2022
    risk 0.36cvss 5.5epss 0.01

    A Pointer Dereference Vulnerability exists in GPAC 1.0.1 via the gf_fileio_check function, which could cause a Denial of Service.

  • CVE-2021-46047MedJan 10, 2022
    risk 0.36cvss 5.5epss 0.01

    A Pointer Dereference Vulnerability exists in GPAC 1.0.1 via the gf_hinter_finalize function.

  • CVE-2021-46046MedJan 10, 2022
    risk 0.36cvss 5.5epss 0.01

    A Pointer Derefernce Vulnerbility exists GPAC 1.0.1 the gf_isom_box_size function, which could cause a Denial of Service (context-dependent).

  • CVE-2021-46044MedJan 6, 2022
    risk 0.36cvss 5.5epss 0.01

    A Pointer Dereference Vulnerabilty exists in GPAC 1.0.1via ShiftMetaOffset.isra, which causes a Denial of Service (context-dependent).

  • CVE-2021-46043MedJan 6, 2022
    risk 0.36cvss 5.5epss 0.01

    A Pointer Dereference Vulnerability exits in GPAC 1.0.1 in the gf_list_count function, which causes a Denial of Service.

  • CVE-2021-46042MedJan 6, 2022
    risk 0.36cvss 5.5epss 0.01

    A Pointer Dereference Vulnerability exists in GPAC 1.0.1 via the _fseeko function, which causes a Denial of Service.

  • CVE-2021-46040MedJan 6, 2022
    risk 0.36cvss 5.5epss 0.01

    A Pointer Dereference Vulnerabilty exists in GPAC 1.0.1 via the finplace_shift_moov_meta_offsets function, which causes a Denial of Servie (context-dependent).

  • CVE-2021-46039MedJan 6, 2022
    risk 0.36cvss 5.5epss 0.01

    A Pointer Dereference Vulnerabilty exists in GPAC 1.0.1 via the shift_chunk_offsets.part function, which causes a Denial of Service (context-dependent).

  • CVE-2021-46038MedJan 5, 2022
    risk 0.36cvss 5.5epss 0.01

    A Pointer Dereference vulnerability exists in GPAC 1.0.1 in unlink_chunk.isra, which causes a Denial of Service (context-dependent).

  • CVE-2021-45831MedJan 5, 2022
    risk 0.36cvss 5.5epss 0.01

    A Null Pointer Dereference vulnerability exitgs in GPAC 1.0.1 in MP4Box via __strlen_avx2, which causes a Denial of Service.

  • CVE-2021-45267MedDec 22, 2021
    risk 0.36cvss 5.5epss 0.01

    An invalid memory address dereference vulnerability exists in gpac 1.1.0 via the svg_node_start function, which causes a segmentation fault and application crash.

  • CVE-2021-45260MedDec 22, 2021
    risk 0.36cvss 5.5epss 0.01

    A null pointer dereference vulnerability exists in gpac 1.1.0 in the lsr_read_id.part function, which causes a segmentation fault and application crash.

  • CVE-2021-45259MedDec 22, 2021
    risk 0.36cvss 5.5epss 0.01

    An Invalid pointer reference vulnerability exists in gpac 1.1.0 via the gf_svg_node_del function, which causes a segmentation fault and application crash.