VYPR

CWE-476

NULL Pointer Dereference

BaseStableLikelihood: Medium

Description

The product dereferences a pointer that it expects to be valid but is NULL.

Hierarchy (View 1000)

Children

none

CVEs mapped to this weakness (5,530)

page 42 of 277
  • CVE-2023-34164HigJul 6, 2023
    risk 0.49cvss 7.5epss 0.00

    Vulnerability of incomplete input parameter verification in the communication framework module. Successful exploitation of this vulnerability may affect availability.

  • CVE-2023-2953HigMay 30, 2023
    risk 0.49cvss 7.5epss 0.02

    A vulnerability was found in openldap. This security flaw causes a null pointer dereference in ber_memalloc_x() function.

  • CVE-2023-24940HigMay 9, 2023
    risk 0.49cvss 7.5epss 0.05

    Windows Pragmatic General Multicast (PGM) Denial of Service Vulnerability

  • CVE-2023-29996HigMay 4, 2023
    risk 0.49cvss 7.5epss 0.01

    In NanoMQ v0.15.0-0, segment fault with Null Pointer Dereference occurs in the process of decoding subinfo_decode and unsubinfo_decode.

  • CVE-2022-33305HigMay 2, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to NULL pointer dereference in Modem while sending invalid messages in DCCH.

  • CVE-2022-33304HigMay 2, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to NULL pointer dereference in Modem while performing pullup for received TCP/UDP packet.

  • CVE-2022-33294HigApr 13, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in Modem due to NULL pointer dereference while receiving response of lwm2m registration/update/bootstrap request message.

  • CVE-2022-33223HigApr 13, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in Modem due to null pointer dereference while processing the incoming packet with http chunked encoding.

  • CVE-2022-25739HigApr 13, 2023
    risk 0.49cvss 7.5epss 0.00

    Denial of service in modem due to missing null check while processing the ipv6 packet received during ECM call

  • CVE-2023-26917HigApr 11, 2023
    risk 0.49cvss 7.5epss 0.01

    libyang from v2.0.164 to v2.1.30 was discovered to contain a NULL pointer dereference via the function lysp_stmt_validate_value at lys_parse_mem.c.

  • CVE-2023-28766HigApr 11, 2023
    risk 0.49cvss 7.5epss 0.01

    A vulnerability has been identified in SIPROTEC 5 6MD85 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 6MD86 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 6MD89 (CP300) (All versions >= V7.80 < V9.64), SIPROTEC 5 6MU85 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC…

  • CVE-2020-23259HigApr 4, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue found in Jsish v.3.0.11 and before allows an attacker to cause a denial of service via the Jsi_Strlen function in the src/jsiChar.c file.

  • CVE-2022-3116HigMar 27, 2023
    risk 0.49cvss 7.5epss 0.01

    The Heimdal Software Kerberos 5 implementation is vulnerable to a null pointer dereferance. An attacker with network access to an application that depends on the vulnerable code path can cause the application to crash.

  • CVE-2023-1444HigMar 17, 2023
    risk 0.49cvss 7.5epss 0.01

    A vulnerability was found in Filseclab Twister Antivirus 8. It has been rated as critical. This issue affects the function 0x8011206B in the library fildds.sys of the component IoControlCode Handler. The manipulation leads to denial of service. The attack may be initiated…

  • CVE-2023-27787HigMar 16, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the parse_list function at the list.c:81 endpoint.

  • CVE-2023-27785HigMar 16, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue found in TCPreplay TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the parse endpoints function.

  • CVE-2023-27784HigMar 16, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue found in TCPReplay v.4.4.3 allows a remote attacker to cause a denial of service via the read_hexstring function at the utils.c:309 endpoint.

  • CVE-2023-24859HigMar 14, 2023
    risk 0.49cvss 7.5epss 0.02

    Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability

  • CVE-2023-21700HigFeb 14, 2023
    risk 0.49cvss 7.5epss 0.02

    Windows iSCSI Discovery Service Denial of Service Vulnerability

  • CVE-2022-25735HigFeb 12, 2023
    risk 0.49cvss 7.5epss 0.00

    Denial of service in modem due to missing null check while processing TCP or UDP packets from server