Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Big Ip Domain Name System HIGH 7.5
CVE-2022-41787

In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5.1, and 13.1.x before 13.1.5.1, when D…

Fix: 13.1.5.1 / 14.1.5.1+
Fix from $1,950 2022-10-19
Junos HIGH 7.5
CVE-2022-22232

A NULL Pointer Dereference vulnerability in the Packet Forwarding Engine of Juniper Networks Junos OS on SRX Series allows an unauthenticated, networ…

Mitigation only
Fix from $1,950 2022-10-18
Acrobat Dc MEDIUM 5.5
CVE-2022-35691

Adobe Acrobat Reader versions 22.002.20212 (and earlier) and 20.005.30381 (and earlier) are affected by a NULL Pointer Dereference vulnerability. An …

Fix: 20.005.30407 / 22.003.20258+
Fix from $1,600 2022-10-14
Directory Server MEDIUM 6.5
CVE-2022-2850

A flaw was found In 389-ds-base. When the Content Synchronization plugin is enabled, an authenticated user can reach a NULL pointer dereference using…

Fix: after 2.4.1
Fix from $1,600 2022-10-14
Linux Kernel MEDIUM 5.5
CVE-2022-42722

In the Linux kernel 5.8 through 5.19.x before 5.19.16, local attackers able to inject WLAN frames into the mac80211 stack could cause a NULL pointer …

Fix: 5.19.16+
Fix from $1,600 2022-10-14
OpenSSL HIGH 7.5
CVE-2022-3358

OpenSSL supports creating a custom cipher via the legacy EVP_CIPHER_meth_new() function and associated function calls. This function was deprecated i…

Fix: 3.0.6+
Fix from $1,950 2022-10-11
Cloud Foundation MEDIUM 6.5
CVE-2022-31681

VMware ESXi contains a null-pointer deference vulnerability. A malicious actor with privileges within the VMX process only, may create a denial of se…

Fix: 4.3.1.1 / 7.0+
Fix from $1,600 2022-10-07
Debian Linux MEDIUM 6.5
CVE-2022-2928

In ISC DHCP 4.4.0 -> 4.4.3, ISC DHCP 4.1-ESV-R1 -> 4.1-ESV-R16-P1, when the function option_code_hash_lookup() is called from add_option(), it increa…

Fix: after 4.4.3
Fix from $1,600 2022-10-07
Netbackup MEDIUM 5.5
CVE-2022-42306

An issue was discovered in Veritas NetBackup through 8.2 and related Veritas products. An attacker with local access can send a crafted packet to pbx…

Fix: after 8.2
Fix from $1,600 2022-10-03
Bento4 MEDIUM 5.5
CVE-2022-41841

An issue was discovered in Bento4 through 1.6.0-639. A NULL pointer dereference occurs in AP4_File::ParseStream in Core/Ap4File.cpp, which is called …

Fix: after 1.6.0-639
Fix from $1,600 2022-09-30
Xpdf MEDIUM 5.5
CVE-2022-41843

An issue was discovered in Xpdf 4.04. There is a crash in convertToType0 in fofi/FoFiType1C.cc, a different vulnerability than CVE-2022-38928.

No fix yet
Fix from $1,600 2022-09-30
Vim MEDIUM 5.5
CVE-2022-1725

NULL Pointer Dereference in GitHub repository vim/vim prior to 8.2.4959.

Fix: 8.2.4959 / 13.0+
Fix from $1,600 2022-09-29
Fedora MEDIUM 5.5
CVE-2022-3278

NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0552.

Fix: 9.0.0552+
Fix from $1,600 2022-09-23
Ipados MEDIUM 5.5
CVE-2022-32785

A null pointer dereference was addressed with improved validation. This issue is fixed in iOS 15.6 and iPadOS 15.6, Security Update 2022-005 Catalina…

Fix: 10.15.7 / 11.6.8+
Fix from $1,600 2022-09-23
Libiec61850 HIGH 7.5
CVE-2022-2973

MZ Automation's libIEC61850 (versions 1.4 and prior; version 1.5 prior to commit a3b04b7bc4872a5a39e5de3fdc5fbde52c09e10e) uses a NULL pointer in cer…

Fix: 1.5.0+
Fix from $1,950 2022-09-23
Xpdf HIGH 7.8
CVE-2022-38928

XPDF 4.04 is vulnerable to Null Pointer Dereference in FoFiType1C.cc:2393.

No fix yet
Fix from $1,950 2022-09-21
Swftools MEDIUM 5.5
CVE-2022-35087

SWFTools commit 772e55a2 was discovered to contain a segmentation violation via MovieAddFrame at /src/gif2swf.c.

No fix yet
Fix from $1,600 2022-09-21
Bento4 MEDIUM 5.5
CVE-2022-40774

An issue was discovered in Bento4 through 1.6.0-639. There is a NULL pointer dereference in AP4_StszAtom::GetSampleSize.

Fix: after 1.6.0-639
Fix from $1,600 2022-09-18
Bento4 MEDIUM 5.5
CVE-2022-40775

An issue was discovered in Bento4 through 1.6.0-639. A NULL pointer dereference occurs in AP4_StszAtom::WriteFields.

Fix: after 1.6.0-639
Fix from $1,600 2022-09-18
Tensorflow HIGH 7.5
CVE-2022-36011

TensorFlow is an open source platform for machine learning. When `mlir::tfg::ConvertGenericFunctionToFunctionDef` is given empty function attributes,…

Fix: 2.7.2 / 2.8.1+
Fix from $1,950 2022-09-16
Tensorflow HIGH 7.5
CVE-2022-36013

TensorFlow is an open source platform for machine learning. When `mlir::tfg::GraphDefImporter::ConvertNodeDef` tries to convert NodeDefs without an o…

Fix: 2.7.2 / 2.8.1+
Fix from $1,950 2022-09-16
Tensorflow HIGH 7.5
CVE-2022-36014

TensorFlow is an open source platform for machine learning. When `mlir::tfg::TFOp::nameAttr` receives null type list attributes, it crashes. We have …

Fix: 2.7.2 / 2.8.1+
Fix from $1,950 2022-09-16
Tensorflow HIGH 7.5
CVE-2022-36000

TensorFlow is an open source platform for machine learning. When `mlir::tfg::ConvertGenericFunctionToFunctionDef` is given empty function attributes,…

Fix: 2.7.2 / 2.8.1+
Fix from $1,950 2022-09-16
Mtower HIGH 7.5
CVE-2022-40759

A NULL pointer dereference issue in the TEE_MACCompareFinal function in Samsung mTower through 0.3.0 allows a trusted application to trigger a Denial…

Fix: after 0.3.0
Fix from $1,950 2022-09-16
Tensorflow HIGH 7.5
CVE-2022-35965

TensorFlow is an open source platform for machine learning. If `LowerBound` or `UpperBound` is given an empty`sorted_inputs` input, it results in a `…

Fix: 2.7.2 / 2.8.1+
Fix from $1,950 2022-09-16
Bento4 MEDIUM 6.5
CVE-2022-40738

An issue was discovered in Bento4 through 1.6.0-639. A NULL pointer dereference occurs in AP4_DescriptorListWriter::Action in Core/Ap4Descriptor.h, c…

Fix: after 1.6.0-639
Fix from $1,600 2022-09-15
Linux Kernel MEDIUM 5.5
CVE-2022-40476

A null pointer dereference issue was discovered in fs/io_uring.c in the Linux kernel before 5.15.62. A local user could use this flaw to crash the sy…

Fix: 5.15.62+
Fix from $1,600 2022-09-14
Linux Kernel HIGH 7.1
CVE-2022-3202

A NULL pointer dereference flaw in diFree in fs/jfs/inode.c in Journaled File System (JFS)in the Linux kernel. This could allow a local attacker to c…

Fix: 4.9.311 / 4.14.276+
Fix from $1,950 2022-09-14
Lief MEDIUM 5.5
CVE-2022-38307

LIEF commit 5d1d643 was discovered to contain a segmentation violation via the function LIEF::MachO::SegmentCommand::file_offset() at /MachO/SegmentC…

Fix: 0.12.1+
Fix from $1,600 2022-09-13
Lief MEDIUM 5.5
CVE-2022-38497

LIEF commit 365a16a was discovered to contain a segmentation violation via the component CoreFile.tcc:69.

Fix: after 0.12.1
Fix from $1,600 2022-09-13