Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Linux Kernel HIGH 7.5
CVE-2023-46838

Transmit requests in Xen's virtual network protocol can consist of multiple parts. While not really useful, except for the initial part any of them …

Fix: 4.19.306 / 5.4.268+
Fix from $1,950 2024-01-29
Linux Kernel HIGH 7.8
CVE-2024-0841

A null pointer dereference flaw was found in the hugetlbfs_fill_super function in the Linux kernel hugetlbfs (HugeTLB pages) functionality. This issu…

Fix: 5.4.271 / 5.10.212+
Fix from $1,950 2024-01-28
OpenSSL MEDIUM 5.5
CVE-2024-0727

Issue summary: Processing a maliciously formatted PKCS12 file may lead OpenSSL to crash leading to a potential Denial of Service attack Impact summa…

Fix: 1.0.2zj / 1.1.1x+
Fix from $1,600 2024-01-26
Linux Kernel MEDIUM 5.5
CVE-2024-22099

NULL Pointer Dereference vulnerability in Linux Linux kernel kernel on Linux, x86, ARM (net, bluetooth modules) allows Overflow Buffers. This vulnera…

Mitigation only
Fix from $1,600 2024-01-25
Linux Kernel MEDIUM 5.5
CVE-2023-46343

In the Linux kernel before 6.5.9, there is a NULL pointer dereference in send_acknowledge in net/nfc/nci/spi.c.

Fix: 6.5.9+
Fix from $1,600 2024-01-23
Malware Fighter MEDIUM 5.5
CVE-2024-0430

IObit Malware Fighter v11.0.0.1274 is vulnerable to a Denial of Service vulnerability by triggering the 0x8001E00C IOCTL code of the ImfHpRegFilter.s…

No fix yet
Fix from $1,600 2024-01-22
Openeuler MEDIUM 5.5
CVE-2021-33630

NULL Pointer Dereference vulnerability in openEuler kernel on Linux (network modules) allows Pointer Manipulation. This vulnerability is associated w…

Fix: 4.19.90-2401.3+
Fix from $1,600 2024-01-18
Linux Kernel MEDIUM 5.5
CVE-2023-6915

A Null pointer dereference problem was found in ida_free in lib/idr.c in the Linux Kernel. This issue may allow an attacker using this library to cau…

Fix: 6.7+
Fix from $1,600 2024-01-15
Enterprise Linux MEDIUM 6.5
CVE-2023-6683

A flaw was found in the QEMU built-in VNC server while processing ClientCutText messages. The qemu_clipboard_request() function can be reached before…

Fix: 8.2.2+
Fix from $1,600 2024-01-12
Junos Os Evolved HIGH 7.5
CVE-2024-21602

A NULL Pointer Dereference vulnerability in Juniper Networks Junos OS Evolved on ACX7024, ACX7100-32C and ACX7100-48L allows an unauthenticated, netw…

Mitigation only
Fix from $1,950 2024-01-12
Jwx HIGH 7.5
CVE-2024-21664

jwx is a Go module implementing various JWx (JWA/JWE/JWK/JWS/JWT, otherwise known as JOSE) technologies. Calling `jws.Parse` with a JSON serialized p…

Fix: 2.0.19+
Fix from $1,950 2024-01-09
Windows 10 1507 HIGH 7.5
CVE-2024-20661

Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability

Fix: 10.0.10240.20402 / 10.0.14393.6614+
Fix from $1,950 2024-01-09
Jt2go MEDIUM 5.5
CVE-2023-51744

A vulnerability has been identified in JT2Go (All versions < V14.3.0.6), Teamcenter Visualization V13.3 (All versions < V13.3.0.13), Teamcenter Visua…

Fix: 13.3.0.13 / 14.1.0.12+
Fix from $1,600 2024-01-09
Xen MEDIUM 5.5
CVE-2023-34323

When a transaction is committed, C Xenstored will first check the quota is correct before attempting to commit any nodes. It would be possible that …

Fix: 4.17.0+
Fix from $1,600 2024-01-05
Paddlepaddle HIGH 7.5
CVE-2023-52312

Nullptr dereference in paddle.crop in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of service.

Fix: after 2.6.0
Fix from $1,950 2024-01-03
Paddlepaddle HIGH 7.5
CVE-2023-52302

Nullptr in paddle.nextafter in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of service.

Fix: 2.6.0+
Fix from $1,950 2024-01-03
Paddlepaddle HIGH 7.5
CVE-2023-52303

Nullptr in paddle.put_along_axis in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of service.

Fix: 2.6.0+
Fix from $1,950 2024-01-03
Paddlepaddle HIGH 7.5
CVE-2023-38676

Nullptr in paddle.dot in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of service.

Fix: 2.6.0+
Fix from $1,950 2024-01-03
Wireshark HIGH 7.5
CVE-2024-0209

IEEE 1609.2 dissector crash in Wireshark 4.2.0, 4.0.0 to 4.0.11, and 3.6.0 to 3.6.19 allows denial of service via packet injection or crafted capture…

Fix: after 4.0.11
Fix from $1,950 2024-01-03
315 5g Iot Modem Firmware HIGH 7.5
CVE-2023-33109

Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host.

No fix yet
Fix from $1,950 2024-01-02
Aqt1000 Firmware MEDIUM 5.5
CVE-2023-33036

Permanent DOS in Hypervisor while untrusted VM without PSCI support makes a PSCI call.

Mitigation only
Fix from $1,600 2024-01-02
Aleos HIGH 7.5
CVE-2023-38321

OpenNDS, as used in Sierra Wireless ALEOS before 4.17.0.12 and other products, allows remote attackers to cause a denial of service (NULL pointer der…

Fix: 4.17.0.12+
Fix from $1,950 2023-12-25
C Blosc2 HIGH 7.5
CVE-2023-37187

C-blosc2 before 2.9.3 was discovered to contain a NULL pointer dereference via the zfp/blosc2-zfp.c zfp_acc_decompress. function.

Fix: 2.9.3+
Fix from $1,950 2023-12-25
C Blosc2 HIGH 7.5
CVE-2023-37188

C-blosc2 before 2.9.3 was discovered to contain a NULL pointer dereference via the function zfp_rate_decompress at zfp/blosc2-zfp.c.

Fix: 2.9.3+
Fix from $1,950 2023-12-25
C Blosc2 HIGH 7.5
CVE-2023-37185

C-blosc2 before 2.9.3 was discovered to contain a NULL pointer dereference via the function zfp_prec_decompress at zfp/blosc2-zfp.c.

Fix: 2.9.3+
Fix from $1,950 2023-12-25
C Blosc2 HIGH 7.5
CVE-2023-37186

C-blosc2 before 2.9.3 was discovered to contain a NULL pointer dereference in ndlz/ndlz8x8.c via a NULL pointer to memset.

Fix: 2.9.3+
Fix from $1,950 2023-12-25
Linux Kernel MEDIUM 5.5
CVE-2023-7042

A null pointer dereference vulnerability was found in ath10k_wmi_tlv_op_pull_mgmt_tx_compl_ev() in drivers/net/wireless/ath/ath10k/wmi-tlv.c in the L…

Patch available
Fix from $1,600 2023-12-21
Cjson HIGH 7.5
CVE-2023-50471

cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_InsertItemInArray at cJSON.c.

Patch available
Fix from $1,950 2023-12-14
Cjson HIGH 7.5
CVE-2023-50472

cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_SetValuestring at cJSON.c.

Patch available
Fix from $1,950 2023-12-14
Slurm HIGH 7.5
CVE-2023-49936

An issue was discovered in SchedMD Slurm 22.05.x, 23.02.x, and 23.11.x. A NULL pointer dereference leads to denial of service. The fixed versions are…

Fix: 22.05.12 / 23.02.7+
Fix from $1,950 2023-12-14