VYPR

CWE-476

NULL Pointer Dereference

BaseStableLikelihood: Medium

Description

The product dereferences a pointer that it expects to be valid but is NULL.

Hierarchy (View 1000)

Children

none

CVEs mapped to this weakness (5,667)

page 42 of 284
  • CVE-2023-43522HigFeb 6, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL.

  • CVE-2023-46838HigJan 29, 2024
    risk 0.49cvss 7.5epss 0.01

    Transmit requests in Xen's virtual network protocol can consist of multiple parts. While not really useful, except for the initial part any of them may be of zero length, i.e. carry no data at all. Besides a certain initial portion of the to be transferred data, these parts…

  • CVE-2024-21602HigJan 12, 2024
    risk 0.49cvss 7.5epss 0.01

    A NULL Pointer Dereference vulnerability in Juniper Networks Junos OS Evolved on ACX7024, ACX7100-32C and ACX7100-48L allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS). If a specific IPv4 UDP packet is received and sent to the Routing Engine…

  • CVE-2024-20661HigJan 9, 2024
    risk 0.49cvss 7.5epss 0.03

    Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability

  • CVE-2023-33109HigJan 2, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host.

  • CVE-2023-38321HigDec 25, 2023
    risk 0.49cvss 7.5epss 0.01

    OpenNDS, as used in Sierra Wireless ALEOS before 4.17.0.12 and other products, allows remote attackers to cause a denial of service (NULL pointer dereference, daemon crash, and Captive Portal outage) via a GET request to /opennds_auth/ that lacks a custom query string parameter…

  • CVE-2023-50472HigDec 14, 2023
    risk 0.49cvss 7.5epss 0.01

    cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_SetValuestring at cJSON.c.

  • CVE-2023-50471HigDec 14, 2023
    risk 0.49cvss 7.5epss 0.02

    cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_InsertItemInArray at cJSON.c.

  • CVE-2023-49936HigDec 14, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. A NULL pointer dereference leads to denial of service. The fixed versions are 22.05.11, 23.02.7, and 23.11.1.

  • CVE-2023-48416HigDec 8, 2023
    risk 0.49cvss 7.5epss 0.00

    In multiple locations, there is a possible null dereference due to a missing null check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2023-33089HigDec 5, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS when processing a NULL buffer while parsing WLAN vdev.

  • CVE-2023-40459HigDec 4, 2023
    risk 0.49cvss 7.5epss 0.02

    The ACEManager component of ALEOS 4.16 and earlier does not adequately perform input sanitization during authentication, which could potentially result in a Denial of Service (DoS) condition for ACEManager without impairing other router functions. ACEManager recovers…

  • CVE-2023-33056HigNov 7, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in WLAN Firmware when firmware receives beacon including T2LM IE.

  • CVE-2023-46345HigOct 26, 2023
    risk 0.49cvss 7.5epss 0.01

    Catdoc v0.95 was discovered to contain a NULL pointer dereference via the component xls2csv at src/xlsparse.c.

  • CVE-2023-36709HigOct 10, 2023
    risk 0.49cvss 7.5epss 0.03

    Microsoft AllJoyn API Denial of Service Vulnerability

  • CVE-2023-36603HigOct 10, 2023
    risk 0.49cvss 7.5epss 0.02

    Windows TCP/IP Denial of Service Vulnerability

  • CVE-2023-36602HigOct 10, 2023
    risk 0.49cvss 7.5epss 0.02

    Windows TCP/IP Denial of Service Vulnerability

  • CVE-2023-24847HigOct 3, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in Modem while allocating DSM items.

  • CVE-2022-48606HigSep 27, 2023
    risk 0.49cvss 7.5epss 0.00

    Stability-related vulnerability in the binder background management and control module. Successful exploitation of this vulnerability may affect availability.

  • CVE-2023-36199HigAug 25, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue in skalenetwork sgxwallet v.1.9.0 and below allows an attacker to cause a denial of service via the trustedGenerateEcdsaKey component.