VYPR

CWE-476

NULL Pointer Dereference

BaseStableLikelihood: Medium

Description

The product dereferences a pointer that it expects to be valid but is NULL.

Hierarchy (View 1000)

Children

none

CVEs mapped to this weakness (5,669)

page 198 of 284
  • CVE-2021-22318MedJul 14, 2021
    risk 0.36cvss 5.5epss 0.00

    A component of the HarmonyOS 2.0 has a Null Pointer Dereference Vulnerability. Local attackers may exploit this vulnerability to cause system denial of service.

  • CVE-2021-33715MedJul 13, 2021
    risk 0.36cvss 5.5epss 0.00

    A vulnerability has been identified in JT Utilities (All versions < V13.0.2.0). When parsing specially crafted JT files, a race condition could cause an object to be released before being operated on, leading to NULL pointer deference condition and causing the application to…

  • CVE-2021-33714MedJul 13, 2021
    risk 0.36cvss 5.5epss 0.00

    A vulnerability has been identified in JT Utilities (All versions < V13.0.2.0). When parsing specially crafted JT files, a missing check for the validity of an iterator leads to NULL pointer deference condition, causing the application to crash. An attacker could leverage this…

  • CVE-2021-27345MedJun 10, 2021
    risk 0.36cvss 5.5epss 0.01

    A null pointer dereference was discovered in ucompthread in stream.c in Irzip 0.631 which allows attackers to cause a denial of service (DOS) via a crafted compressed file.

  • CVE-2020-25467MedJun 10, 2021
    risk 0.36cvss 5.5epss 0.01

    A null pointer dereference was discovered lzo_decompress_buf in stream.c in Irzip 0.621 which allows an attacker to cause a denial of service (DOS) via a crafted compressed file.

  • CVE-2020-27830MedMay 13, 2021
    risk 0.36cvss 5.5epss 0.00

    A vulnerability was found in Linux Kernel where in the spk_ttyio_receive_buf2() function, it would dereference spk_ttyio_synth without checking whether it is NULL or not, and may lead to a NULL-ptr deref crash.

  • CVE-2021-30219MedApr 29, 2021
    risk 0.36cvss 5.5epss 0.01

    samurai 1.2 has a NULL pointer dereference in printstatus() function in build.c via a crafted build file.

  • CVE-2021-30218MedApr 29, 2021
    risk 0.36cvss 5.5epss 0.01

    samurai 1.2 has a NULL pointer dereference in writefile() in util.c via a crafted build file.

  • CVE-2021-1078MedApr 21, 2021
    risk 0.36cvss 5.5epss 0.00

    NVIDIA Windows GPU Display Driver for Windows, all versions, contains a vulnerability in the kernel driver (nvlddmkm.sys) where a NULL pointer dereference may lead to system crash.

  • CVE-2020-23932MedApr 21, 2021
    risk 0.36cvss 5.5epss 0.01

    An issue was discovered in gpac before 1.0.1. A NULL pointer dereference exists in the function dump_isom_sdp located in filedump.c. It allows an attacker to cause Denial of Service.

  • CVE-2020-23930MedApr 21, 2021
    risk 0.36cvss 5.5epss 0.01

    An issue was discovered in gpac through 20200801. A NULL pointer dereference exists in the function nhmldump_send_header located in write_nhml.c. It allows an attacker to cause Denial of Service.

  • CVE-2020-23914MedApr 21, 2021
    risk 0.36cvss 5.5epss 0.01

    An issue was discovered in cpp-peglib through v0.1.12. A NULL pointer dereference exists in the peg::AstOptimizer::optimize() located in peglib.h. It allows an attacker to cause Denial of Service.

  • CVE-2020-23912MedApr 21, 2021
    risk 0.36cvss 5.5epss 0.01

    An issue was discovered in Bento4 through v1.6.0-637. A NULL pointer dereference exists in the function AP4_StszAtom::GetSampleSize() located in Ap4StszAtom.cpp. It allows an attacker to cause Denial of Service.

  • CVE-2021-30199MedApr 19, 2021
    risk 0.36cvss 5.5epss 0.01

    In filters/reframe_latm.c in GPAC 1.0.1 there is a Null Pointer Dereference, when gf_filter_pck_get_data is called. The first arg pck may be null with a crafted mp4 file,which results in a crash.

  • CVE-2021-30015MedApr 19, 2021
    risk 0.36cvss 5.5epss 0.01

    There is a Null Pointer Dereference in function filter_core/filter_pck.c:gf_filter_pck_new_alloc_internal in GPAC 1.0.1. The pid comes from function av1dmx_parse_flush_sample, the ctx.opid maybe NULL. The result is a crash in gf_filter_pck_new_alloc_internal.

  • CVE-2021-31262MedApr 19, 2021
    risk 0.36cvss 5.5epss 0.01

    The AV1_DuplicateConfig function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.

  • CVE-2021-31260MedApr 19, 2021
    risk 0.36cvss 5.5epss 0.01

    The MergeTrack function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.

  • CVE-2021-31259MedApr 19, 2021
    risk 0.36cvss 5.5epss 0.01

    The gf_isom_cenc_get_default_info_internal function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.

  • CVE-2021-31258MedApr 19, 2021
    risk 0.36cvss 5.5epss 0.01

    The gf_isom_set_extraction_slc function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.

  • CVE-2021-31257MedApr 19, 2021
    risk 0.36cvss 5.5epss 0.01

    The HintFile function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.