VYPR

CWE-476

NULL Pointer Dereference

BaseStableLikelihood: Medium

Description

The product dereferences a pointer that it expects to be valid but is NULL.

Hierarchy (View 1000)

Children

none

CVEs mapped to this weakness (5,667)

page 43 of 284
  • CVE-2023-36199HigAug 25, 2023
    risk 0.49cvss 7.5epss 0.01

    An issue in skalenetwork sgxwallet v.1.9.0 and below allows an attacker to cause a denial of service via the trustedGenerateEcdsaKey component.

  • CVE-2023-39669HigAug 18, 2023
    risk 0.49cvss 7.5epss 0.01

    D-Link DIR-880 A1_FW107WWb08 was discovered to contain a NULL pointer dereference in the function FUN_00010824.

  • CVE-2023-39397HigAug 13, 2023
    risk 0.49cvss 7.5epss 0.00

    Input parameter verification vulnerability in the communication system. Successful exploitation of this vulnerability may affect availability.

  • CVE-2023-32252HigJul 24, 2023
    risk 0.49cvss 7.5epss 0.04

    A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the handling of SMB2_LOGOFF commands. The issue results from the lack of proper validation of a pointer prior to accessing it. An attacker can leverage this…

  • CVE-2023-32248HigJul 24, 2023
    risk 0.49cvss 7.5epss 0.04

    A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the handling of SMB2_TREE_CONNECT and SMB2_QUERY_INFO commands. The issue results from the lack of proper validation of a pointer prior to accessing it. An…

  • CVE-2023-29984HigJul 11, 2023
    risk 0.49cvss 7.5epss 0.01

    Null pointer dereference vulnerability exists in multiple vendors MFPs and printers which implement Debut web server 1.2 or 1.3. Processing a specially crafted request may lead an affected product to a denial-of-service (DoS) condition. As for the affected…

  • CVE-2023-35338HigJul 11, 2023
    risk 0.49cvss 7.5epss 0.02

    Windows Peer Name Resolution Protocol Denial of Service Vulnerability

  • CVE-2023-32084HigJul 11, 2023
    risk 0.49cvss 7.5epss 0.02

    HTTP.sys Denial of Service Vulnerability

  • CVE-2023-3354HigJul 11, 2023
    risk 0.49cvss 7.5epss 0.02

    A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection. If the previous connection happens to be in the handshake…

  • CVE-2023-34164HigJul 6, 2023
    risk 0.49cvss 7.5epss 0.00

    Vulnerability of incomplete input parameter verification in the communication framework module. Successful exploitation of this vulnerability may affect availability.

  • CVE-2023-2953HigMay 30, 2023
    risk 0.49cvss 7.5epss 0.02

    A vulnerability was found in openldap. This security flaw causes a null pointer dereference in ber_memalloc_x() function.

  • CVE-2023-24940HigMay 9, 2023
    risk 0.49cvss 7.5epss 0.05

    Windows Pragmatic General Multicast (PGM) Denial of Service Vulnerability

  • CVE-2023-29996HigMay 4, 2023
    risk 0.49cvss 7.5epss 0.01

    In NanoMQ v0.15.0-0, segment fault with Null Pointer Dereference occurs in the process of decoding subinfo_decode and unsubinfo_decode.

  • CVE-2022-33305HigMay 2, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to NULL pointer dereference in Modem while sending invalid messages in DCCH.

  • CVE-2022-33304HigMay 2, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to NULL pointer dereference in Modem while performing pullup for received TCP/UDP packet.

  • CVE-2022-33294HigApr 13, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in Modem due to NULL pointer dereference while receiving response of lwm2m registration/update/bootstrap request message.

  • CVE-2022-33223HigApr 13, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in Modem due to null pointer dereference while processing the incoming packet with http chunked encoding.

  • CVE-2022-25739HigApr 13, 2023
    risk 0.49cvss 7.5epss 0.00

    Denial of service in modem due to missing null check while processing the ipv6 packet received during ECM call

  • CVE-2023-26917HigApr 11, 2023
    risk 0.49cvss 7.5epss 0.01

    libyang from v2.0.164 to v2.1.30 was discovered to contain a NULL pointer dereference via the function lysp_stmt_validate_value at lys_parse_mem.c.

  • CVE-2023-28766HigApr 11, 2023
    risk 0.49cvss 7.5epss 0.01

    A vulnerability has been identified in SIPROTEC 5 6MD85 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 6MD86 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 6MD89 (CP300) (All versions >= V7.80 < V9.64), SIPROTEC 5 6MU85 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC…