CWE-476
NULL Pointer Dereference
Description
The product dereferences a pointer that it expects to be valid but is NULL.
Hierarchy (View 1000)
CVEs mapped to this weakness (5,667)
page 43 of 284| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-36199 | Hig | 0.49 | 7.5 | 0.01 | Aug 25, 2023 | An issue in skalenetwork sgxwallet v.1.9.0 and below allows an attacker to cause a denial of service via the trustedGenerateEcdsaKey component. | ||
| CVE-2023-39669 | Hig | 0.49 | 7.5 | 0.01 | Aug 18, 2023 | D-Link DIR-880 A1_FW107WWb08 was discovered to contain a NULL pointer dereference in the function FUN_00010824. | ||
| CVE-2023-39397 | Hig | 0.49 | 7.5 | 0.00 | Aug 13, 2023 | Input parameter verification vulnerability in the communication system. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2023-32252 | Hig | 0.49 | 7.5 | 0.04 | Jul 24, 2023 | A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the handling of SMB2_LOGOFF commands. The issue results from the lack of proper validation of a pointer prior to accessing it. An attacker can leverage this… | ||
| CVE-2023-32248 | Hig | 0.49 | 7.5 | 0.04 | Jul 24, 2023 | A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the handling of SMB2_TREE_CONNECT and SMB2_QUERY_INFO commands. The issue results from the lack of proper validation of a pointer prior to accessing it. An… | ||
| CVE-2023-29984 | Hig | 0.49 | 7.5 | 0.01 | Jul 11, 2023 | Null pointer dereference vulnerability exists in multiple vendors MFPs and printers which implement Debut web server 1.2 or 1.3. Processing a specially crafted request may lead an affected product to a denial-of-service (DoS) condition. As for the affected… | ||
| CVE-2023-35338 | Hig | 0.49 | 7.5 | 0.02 | Jul 11, 2023 | Windows Peer Name Resolution Protocol Denial of Service Vulnerability | ||
| CVE-2023-32084 | Hig | 0.49 | 7.5 | 0.02 | Jul 11, 2023 | HTTP.sys Denial of Service Vulnerability | ||
| CVE-2023-3354 | Hig | 0.49 | 7.5 | 0.02 | Jul 11, 2023 | A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection. If the previous connection happens to be in the handshake… | ||
| CVE-2023-34164 | Hig | 0.49 | 7.5 | 0.00 | Jul 6, 2023 | Vulnerability of incomplete input parameter verification in the communication framework module. Successful exploitation of this vulnerability may affect availability. | ||
| CVE-2023-2953 | Hig | 0.49 | 7.5 | 0.02 | May 30, 2023 | A vulnerability was found in openldap. This security flaw causes a null pointer dereference in ber_memalloc_x() function. | ||
| CVE-2023-24940 | Hig | 0.49 | 7.5 | 0.05 | May 9, 2023 | Windows Pragmatic General Multicast (PGM) Denial of Service Vulnerability | ||
| CVE-2023-29996 | Hig | 0.49 | 7.5 | 0.01 | May 4, 2023 | In NanoMQ v0.15.0-0, segment fault with Null Pointer Dereference occurs in the process of decoding subinfo_decode and unsubinfo_decode. | ||
| CVE-2022-33305 | Hig | 0.49 | 7.5 | 0.00 | May 2, 2023 | Transient DOS due to NULL pointer dereference in Modem while sending invalid messages in DCCH. | ||
| CVE-2022-33304 | Hig | 0.49 | 7.5 | 0.00 | May 2, 2023 | Transient DOS due to NULL pointer dereference in Modem while performing pullup for received TCP/UDP packet. | ||
| CVE-2022-33294 | Hig | 0.49 | 7.5 | 0.00 | Apr 13, 2023 | Transient DOS in Modem due to NULL pointer dereference while receiving response of lwm2m registration/update/bootstrap request message. | ||
| CVE-2022-33223 | Hig | 0.49 | 7.5 | 0.00 | Apr 13, 2023 | Transient DOS in Modem due to null pointer dereference while processing the incoming packet with http chunked encoding. | ||
| CVE-2022-25739 | Hig | 0.49 | 7.5 | 0.00 | Apr 13, 2023 | Denial of service in modem due to missing null check while processing the ipv6 packet received during ECM call | ||
| CVE-2023-26917 | Hig | 0.49 | 7.5 | 0.01 | Apr 11, 2023 | libyang from v2.0.164 to v2.1.30 was discovered to contain a NULL pointer dereference via the function lysp_stmt_validate_value at lys_parse_mem.c. | ||
| CVE-2023-28766 | Hig | 0.49 | 7.5 | 0.01 | Apr 11, 2023 | A vulnerability has been identified in SIPROTEC 5 6MD85 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 6MD86 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 6MD89 (CP300) (All versions >= V7.80 < V9.64), SIPROTEC 5 6MU85 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC… |
- risk 0.49cvss 7.5epss 0.01
An issue in skalenetwork sgxwallet v.1.9.0 and below allows an attacker to cause a denial of service via the trustedGenerateEcdsaKey component.
- risk 0.49cvss 7.5epss 0.01
D-Link DIR-880 A1_FW107WWb08 was discovered to contain a NULL pointer dereference in the function FUN_00010824.
- risk 0.49cvss 7.5epss 0.00
Input parameter verification vulnerability in the communication system. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.04
A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the handling of SMB2_LOGOFF commands. The issue results from the lack of proper validation of a pointer prior to accessing it. An attacker can leverage this…
- risk 0.49cvss 7.5epss 0.04
A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the handling of SMB2_TREE_CONNECT and SMB2_QUERY_INFO commands. The issue results from the lack of proper validation of a pointer prior to accessing it. An…
- risk 0.49cvss 7.5epss 0.01
Null pointer dereference vulnerability exists in multiple vendors MFPs and printers which implement Debut web server 1.2 or 1.3. Processing a specially crafted request may lead an affected product to a denial-of-service (DoS) condition. As for the affected…
- risk 0.49cvss 7.5epss 0.02
Windows Peer Name Resolution Protocol Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
HTTP.sys Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection. If the previous connection happens to be in the handshake…
- risk 0.49cvss 7.5epss 0.00
Vulnerability of incomplete input parameter verification in the communication framework module. Successful exploitation of this vulnerability may affect availability.
- risk 0.49cvss 7.5epss 0.02
A vulnerability was found in openldap. This security flaw causes a null pointer dereference in ber_memalloc_x() function.
- risk 0.49cvss 7.5epss 0.05
Windows Pragmatic General Multicast (PGM) Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.01
In NanoMQ v0.15.0-0, segment fault with Null Pointer Dereference occurs in the process of decoding subinfo_decode and unsubinfo_decode.
- risk 0.49cvss 7.5epss 0.00
Transient DOS due to NULL pointer dereference in Modem while sending invalid messages in DCCH.
- risk 0.49cvss 7.5epss 0.00
Transient DOS due to NULL pointer dereference in Modem while performing pullup for received TCP/UDP packet.
- risk 0.49cvss 7.5epss 0.00
Transient DOS in Modem due to NULL pointer dereference while receiving response of lwm2m registration/update/bootstrap request message.
- risk 0.49cvss 7.5epss 0.00
Transient DOS in Modem due to null pointer dereference while processing the incoming packet with http chunked encoding.
- risk 0.49cvss 7.5epss 0.00
Denial of service in modem due to missing null check while processing the ipv6 packet received during ECM call
- risk 0.49cvss 7.5epss 0.01
libyang from v2.0.164 to v2.1.30 was discovered to contain a NULL pointer dereference via the function lysp_stmt_validate_value at lys_parse_mem.c.
- risk 0.49cvss 7.5epss 0.01
A vulnerability has been identified in SIPROTEC 5 6MD85 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 6MD86 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 6MD89 (CP300) (All versions >= V7.80 < V9.64), SIPROTEC 5 6MU85 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC…