Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Indesign MEDIUM 5.5
CVE-2023-47076

Adobe InDesign versions 19.0 (and earlier) and 17.4.2 (and earlier) are affected by a NULL Pointer Dereference vulnerability. An unauthenticated atta…

Fix: after 17.4.2
Fix from $1,600 2023-12-13
Linux Kernel MEDIUM 5.5
CVE-2023-6679

A null pointer dereference vulnerability was found in dpll_pin_parent_pin_set() in drivers/dpll/dpll_netlink.c in the Digital Phase Locked Loop (DPLL…

Patch available
Fix from $1,600 2023-12-11
Fedora MEDIUM 5.5
CVE-2023-6622

A null pointer dereference vulnerability was found in nft_dynset_init() in net/netfilter/nft_dynset.c in nf_tables in the Linux kernel. This issue ma…

Fix: after 6.6
Fix from $1,600 2023-12-08
Android HIGH 7.5
CVE-2023-48416

In multiple locations, there is a possible null dereference due to a missing null check. This could lead to remote denial of service with no addition…

No fix yet
Fix from $1,950 2023-12-08
315 5g Iot Modem Firmware HIGH 7.8
CVE-2023-33088

Memory corruption when processing cmd parameters while parsing vdev.

No fix yet
Fix from $1,950 2023-12-05
315 5g Iot Modem Firmware HIGH 7.5
CVE-2023-33089

Transient DOS when processing a NULL buffer while parsing WLAN vdev.

Mitigation only
Fix from $1,950 2023-12-05
Threadx Usbx CRITICAL 9.8
CVE-2023-48697

Azure RTOS USBX is a USB host, device, and on-the-go (OTG) embedded stack, that is fully integrated with Azure RTOS ThreadX. An attacker can cause re…

Fix: 6.3.0+
Fix from $2,300 2023-12-05
Aleos HIGH 7.5
CVE-2023-40459

The ACEManager component of ALEOS 4.16 and earlier does not adequately perform input sanitization during authentication, which could potentially resu…

Fix: after 4.16.0
Fix from $1,950 2023-12-04
Cryptography HIGH 7.5
CVE-2023-49083

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Calling `load_pem_pkcs7_certificates` or `loa…

Fix: 41.0.6+
Fix from $1,950 2023-11-29
Linux Kernel HIGH 7.8
CVE-2023-5972

A null pointer dereference flaw was found in the nft_inner.c functionality of netfilter in the Linux kernel. This issue could allow a local user to c…

Fix: after 6.5.10
Fix from $1,950 2023-11-23
Captive Portal HIGH 7.5
CVE-2023-38313

An issue was discovered in OpenNDS Captive Portal before 10.1.2. it has a do_binauth NULL pointer dereference that can be triggered with a crafted GE…

Fix: 10.1.2+
Fix from $1,950 2023-11-17
Captive Portal MEDIUM 6.5
CVE-2023-38314

An issue was discovered in OpenNDS Captive Portal before version 10.1.2. It has a NULL pointer dereference in preauthenticated() that can be triggere…

Fix: 10.1.2+
Fix from $1,600 2023-11-17
Captive Portal HIGH 7.5
CVE-2023-38315

An issue was discovered in OpenNDS Captive Portal before version 10.1.2. It has a try_to_authenticate NULL pointer dereference that can be triggered …

Fix: 10.1.2+
Fix from $1,950 2023-11-17
Captive Portal HIGH 7.5
CVE-2023-38320

An issue was discovered in OpenNDS Captive Portal before version 10.1.2. It has a show_preauthpage NULL pointer dereference that can be triggered wit…

Fix: 10.1.2+
Fix from $1,950 2023-11-17
Captive Portal HIGH 7.5
CVE-2023-38322

An issue was discovered in OpenNDS Captive Portal before version 10.1.2. It has a do_binauth NULL pointer dereference that be triggered with a crafte…

Fix: 10.1.2+
Fix from $1,950 2023-11-17
Redisgraph CRITICAL 9.8
CVE-2023-47003

An issue in RedisGraph v.2.12.10 allows an attacker to execute arbitrary code and cause a denial of service via a crafted string in DataBlock_ItemIsD…

No fix yet
Fix from $2,300 2023-11-16
Iris Xe Graphics MEDIUM 5.5
CVE-2023-25071

NULL pointer dereference in some Intel(R) Arc(TM) & Iris(R) Xe Graphics - WHQL - Windows Drviers before version 31.0.101.4255 may allow authenticated…

Fix: 31.0.101.4255+
Fix from $1,600 2023-11-14
Graphics Driver MEDIUM 5.5
CVE-2022-42879

NULL pointer dereference in some Intel(R) Arc(TM) Control software before version 1.73.5335.2 may allow an authenticated user to potentially enable d…

Fix: 31.0.101.4255+
Fix from $1,600 2023-11-14
Ar8035 Firmware HIGH 7.5
CVE-2023-33056

Transient DOS in WLAN Firmware when firmware receives beacon including T2LM IE.

Mitigation only
Fix from $1,950 2023-11-07
Squid HIGH 7.5
CVE-2023-46728EPSS 6%

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to a NULL pointer dereference bug Squid is vulnerable to a Denial of …

Fix: 6.0.1+
Fix from $1,950 2023-11-06
Virtual Gpu MEDIUM 5.5
CVE-2023-31018

NVIDIA GPU Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an unprivileged regular user can cause a NULL-pointe…

Fix: 13.9 / 15.4+
Fix from $1,600 2023-11-02
Virtual Gpu MEDIUM 5.5
CVE-2023-31021

NVIDIA vGPU software for Windows and Linux contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where a malicious user in the guest VM …

Fix: 13.9 / 15.4+
Fix from $1,600 2023-11-02
Virtual Gpu MEDIUM 5.5
CVE-2023-31022

NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where a NULL-pointer dereference may lead to denia…

Fix: 13.9 / 15.4+
Fix from $1,600 2023-11-02
Virtual Gpu MEDIUM 5.5
CVE-2023-31026

NVIDIA vGPU software for Windows and Linux contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where a NULL-pointer dereference may le…

Fix: 13.9 / 15.4+
Fix from $1,600 2023-11-02
Quic Go HIGH 7.5
CVE-2023-46239

quic-go is an implementation of the QUIC protocol in Go. Starting in version 0.37.0 and prior to version 0.37.3, by serializing an ACK frame after th…

Fix: 0.37.3+
Fix from $1,950 2023-10-31
Demoiccmax MEDIUM 6.5
CVE-2023-46867

In International Color Consortium DemoIccMAX 79ecb74, CIccXformMatrixTRC::GetCurve in IccCmm.cpp in libSampleICC.a has a NULL pointer dereference.

Patch available
Fix from $1,600 2023-10-30
Catdoc HIGH 7.5
CVE-2023-46345

Catdoc v0.95 was discovered to contain a NULL pointer dereference via the component xls2csv at src/xlsparse.c.

Mitigation only
Fix from $1,950 2023-10-26
Stb Image.h HIGH 7.5
CVE-2023-45667

stb_image is a single file MIT licensed library for processing images. If `stbi__load_gif_main` in `stbi_load_gif_from_memory` fails it returns a nu…

Mitigation only
Fix from $1,950 2023-10-21
Stb Vorbis.c MEDIUM 5.5
CVE-2023-45680

stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger memory allocation failure in `start_deco…

Mitigation only
Fix from $1,600 2023-10-21
Selenium HIGH 7.5
CVE-2023-5590

NULL Pointer Dereference in GitHub repository seleniumhq/selenium prior to 4.14.0.

Fix: 4.14.0+
Fix from $1,950 2023-10-15