Vulnerability index

Browse CVEs

5,193 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Linux Kernel MEDIUM 5.5
CVE-2026-45911

In the Linux kernel, the following vulnerability has been resolved: usb: cdns3: fix role switching during resume If the role change while we are su…

Fix: 5.15.203 / 6.1.167+
Fix from $1,600 2026-05-27
Linux Kernel MEDIUM 5.5
CVE-2026-45876

In the Linux kernel, the following vulnerability has been resolved: arm64/gcs: Fix error handling in arch_set_shadow_stack_status() alloc_gcs() ret…

Fix: 6.18.14 / 6.19.4+
Fix from $1,600 2026-05-27
Linux Kernel MEDIUM 5.5
CVE-2026-45877

In the Linux kernel, the following vulnerability has been resolved: HID: intel-ish-hid: fix NULL-ptr-deref in ishtp_bus_remove_all_clients During a…

Fix: 6.12.75 / 6.18.14+
Fix from $1,600 2026-05-27
Linux Kernel MEDIUM 5.5
CVE-2026-45869

In the Linux kernel, the following vulnerability has been resolved: power: supply: wm97xx: Fix NULL pointer dereference in power_supply_changed() I…

Fix: 5.10.252 / 5.15.202+
Fix from $1,600 2026-05-27
Linux Kernel MEDIUM 5.5
CVE-2026-45874

In the Linux kernel, the following vulnerability has been resolved: phy: freescale: imx8qm-hsio: fix NULL pointer dereference During the probe the …

Fix: 6.12.75 / 6.18.14+
Fix from $1,600 2026-05-27
Linux Kernel MEDIUM 5.5
CVE-2026-45857

In the Linux kernel, the following vulnerability has been resolved: scsi: csiostor: Fix dereference of null pointer rn The error exit path when rn …

Fix: 5.10.252 / 5.15.202+
Fix from $1,600 2026-05-27
Linux Kernel MEDIUM 5.5
CVE-2026-45848

In the Linux kernel, the following vulnerability has been resolved: apparmor: fix NULL sock in aa_sock_file_perm Deal with the potential that sock …

Fix: 5.10.252 / 5.15.202+
Fix from $1,600 2026-05-27
Linux Kernel MEDIUM 5.5
CVE-2025-71307

In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Fix NULL pointer dereference on panthor_fw_unplug This patch remov…

Fix: 6.19.4+
Fix from $1,600 2026-05-27
Linux Kernel MEDIUM 5.5
CVE-2025-71308

In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Fix potential NULL pointer dereference in context cleanup aie_de…

Fix: 6.19.4+
Fix from $1,600 2026-05-27
Linux Kernel MEDIUM 5.5
CVE-2026-45846

In the Linux kernel, the following vulnerability has been resolved: bareudp: fix NULL pointer dereference in bareudp_fill_metadata_dst() bareudp_fi…

Fix: 5.10.258 / 5.15.209+
Fix from $1,600 2026-05-27
Linux Kernel MEDIUM 5.5
CVE-2026-45838

In the Linux kernel, the following vulnerability has been resolved: bpf: fix end-of-list detection in cgroup_storage_get_next_key() list_next_entry…

Fix: 5.10.258 / 5.15.209+
Fix from $1,600 2026-05-27
Linux Kernel MEDIUM 5.5
CVE-2026-45842

In the Linux kernel, the following vulnerability has been resolved: slip: reject VJ receive packets on instances with no rstate array slhc_init() a…

Fix: 2.6.33 / 3.3+
Fix from $1,600 2026-05-27
Linux Kernel MEDIUM 5.5
CVE-2026-45845

In the Linux kernel, the following vulnerability has been resolved: net/sched: taprio: fix NULL pointer dereference in class dump When a TAPRIO chi…

Fix: 6.6.141 / 6.12.91+
Fix from $1,600 2026-05-27
3ds Max MEDIUM 5.5
CVE-2026-7450

A maliciously crafted PAR file, when parsed through Autodesk 3ds Max, can force a NULL Pointer Dereference vulnerability. Successful exploitation may…

Mitigation only
Fix from $1,600 2026-05-26
HTTP Server HIGH 7.5
CVE-2026-8850

IBM HTTP Server 8.5, and 9.0 is vulnerable to denial of service via the optional module mod_ibm_upload.

Fix: 8.5.5.30 / 9.0.5.29+
Fix from $1,950 2026-05-26
Linux Kernel MEDIUM 5.5
CVE-2026-45836

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_get_sndtimeo_cb() Add the sa…

Fix: 5.10.258 / 5.15.209+
Fix from $1,600 2026-05-26
Linux Kernel MEDIUM 5.5
CVE-2026-45834

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_state_change_cb() Add the sa…

Fix: 5.10.258 / 5.15.209+
Fix from $1,600 2026-05-26
Linux Kernel MEDIUM 5.5
CVE-2026-45835

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_new_connection_cb() Add the …

Fix: 5.10.258 / 5.15.209+
Fix from $1,600 2026-05-26
Unclassified MEDIUM 6.9
CVE-2026-8479

IEC 60870-5-104 used in bidirectional mode in RTU500 is vulnerable for a NULL pointer dereferencing, if a specially crafted sequence of messages is s…

Mitigation only
Fix from $1,600 2026-05-26
Unclassified HIGH 7.5
CVE-2026-48829

In GNU SASL before 2.2.3, DIGEST-MD5 has a NULL pointer dereference affecting both clients and servers, via a known token with no accompanying = char…

Mitigation only
Fix from $1,950 2026-05-24
Libheif MEDIUM 6.5
CVE-2026-41069

libheif is a HEIF and AVIF file format decoder and encoder. In versions 1.21.2 and prior, a malformed HEIF sequence file can trigger an out-of-bounds…

Fix: 1.22.0+
Fix from $1,600 2026-05-22
Crypto MEDIUM 5.3
CVE-2026-39835

SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client pr…

Fix: 0.52.0+
Fix from $1,600 2026-05-22
Linux Kernel MEDIUM 5.5
CVE-2026-43496

In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_red: Replace direct dequeue call with peek and qdisc_dequeue_peek…

Fix: 5.10.258 / 5.15.209+
Fix from $1,600 2026-05-21
Libheif MEDIUM 6.5
CVE-2026-32738

libheif is a HEIF and AVIF file format decoder and encoder. In versions 1.21.2 and below, a crafted 792-byte HEIF sequence file with samples_per_chun…

Fix: 1.22.0+
Fix from $1,600 2026-05-19
Unclassified MEDIUM 5.9
CVE-2026-32134

NanoMQ MQTT Broker (NanoMQ) is an all-around Edge Messaging Platform. In versions 0.24.10 and below, when NanoMQ handles high-concurrency reconnect t…

Patch available
Fix from $1,600 2026-05-19
Walrus HIGH 7.5
CVE-2026-47308

NULL pointer dereference vulnerability in Samsung Open Source Walrus allows Pointer Manipulation. This issue affects Walrus: f339b8ee4ea701772e8ae64…

Patch available
Fix from $1,950 2026-05-19
Walrus HIGH 7.5
CVE-2026-47307

NULL pointer dereference vulnerability in Samsung Open Source Walrus allows an attacker to cause a denial of service via a crafted WebAssembly module…

Patch available
Fix from $1,950 2026-05-19
Unclassified MEDIUM 5.5
CVE-2026-32849

NetBSD prior to commit ec8451e contains a signed integer overflow vulnerability in the cryptodev_op() function in sys/opencrypto/cryptodev.c where th…

Patch available
Fix from $1,600 2026-05-18
Unclassified MEDIUM 5.3
CVE-2026-8723

### Summary `qs.stringify` throws `TypeError` when called with `arrayFormat: 'comma'` and `encodeValuesOnly: true` on an array containing `null` o…

Patch available
Fix from $1,600 2026-05-17
Linux Kernel MEDIUM 5.5
CVE-2026-43480

In the Linux kernel, the following vulnerability has been resolved: ASoC: amd: acp3x-rt5682-max9836: Add missing error check for clock acquisition …

Fix: 5.10.253 / 5.15.203+
Fix from $1,600 2026-05-13