Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Debian Linux HIGH 7.5
CVE-2022-37797

In lighttpd 1.4.65, mod_wstunnel does not initialize a handler function pointer if an invalid HTTP request (websocket handshake) is received. It lead…

No fix yet
Fix from $1,950 2022-09-12
Linux Kernel MEDIUM 5.5
CVE-2022-38096

A NULL pointer dereference vulnerability was found in vmwgfx driver in drivers/gpu/vmxgfx/vmxgfx_execbuf.c in GPU component of Linux kernel with devi…

Mitigation only
Fix from $1,600 2022-09-09
Vim MEDIUM 5.5
CVE-2022-3153

NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0404.

Fix: 9.0.0404+
Fix from $1,600 2022-09-08
Xhyve MEDIUM 6.5
CVE-2022-36659

xhyve commit dfbe09b was discovered to contain a NULL pointer dereference via the component vi_pci_write(). This vulnerability allows attackers to ca…

No fix yet
Fix from $1,600 2022-09-07
Xhyve MEDIUM 6.5
CVE-2022-36661

xhyve commit dfbe09b was discovered to contain a NULL pointer dereference via the component vi_pci_read(). This vulnerability allows attackers to cau…

No fix yet
Fix from $1,600 2022-09-07
Enterprise Linux MEDIUM 5.5
CVE-2022-25310

A segmentation fault (SEGV) flaw was found in the Fribidi package and affects the fribidi_remove_bidi_marks() function of the lib/fribidi.c file. Thi…

Fix: 1.0.12+
Fix from $1,600 2022-09-06
Mtower HIGH 7.5
CVE-2022-39829

There is a NULL pointer dereference in aes256_encrypt in Samsung mTower through 0.3.0 due to a missing check on the return value of EVP_CIPHER_CTX_ne…

Fix: after 0.3.0
Fix from $1,950 2022-09-05
Apq8017 Firmware MEDIUM 5.5
CVE-2021-35135

A null pointer dereference may potentially occur during RSA key import in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Co…

Mitigation only
Fix from $1,600 2022-09-02
Linux Kernel MEDIUM 5.5
CVE-2022-3078

An issue was discovered in the Linux kernel through 5.16-rc6. There is a lack of check after calling vzalloc() and lack of free after allocation in d…

Fix: 5.18+
Fix from $1,600 2022-09-01
Mtower HIGH 7.5
CVE-2022-36621

Samsung Electronics mTower v0.3.0 and earlier was discovered to contain a NULL pointer dereference via the function TEE_AllocateTransientObject.

Fix: after 0.3.0
Fix from $1,950 2022-09-01
Mtower HIGH 7.5
CVE-2022-36622

Samsung Electronics mTower v0.3.0 and earlier was discovered to contain a NULL pointer dereference via the function TEE_GetObjectInfo1.

Fix: after 0.3.0
Fix from $1,950 2022-09-01
SQLite HIGH 7.5
CVE-2020-35525

In SQlite 3.31.1, a potential null pointer derreference was found in the INTERSEC query processing.

Patch available
Fix from $1,950 2022-09-01
Linux Kernel MEDIUM 5.5
CVE-2022-2153

A flaw was found in the Linux kernel’s KVM when attempting to set a SynIC IRQ. This issue makes it possible for a misbehaving VMM to write to SYNIC/S…

Fix: 5.18+
Fix from $1,600 2022-08-31
Libjpeg Turbo MEDIUM 5.5
CVE-2020-35538

A crafted input file could cause a null pointer dereference in jcopy_sample_rows() when processed by libjpeg-turbo.

Patch available
Fix from $1,600 2022-08-31
Linux Kernel MEDIUM 5.5
CVE-2022-1263

A NULL pointer dereference issue was found in KVM when releasing a vCPU with dirty ring support enabled. This flaw allows an unprivileged local attac…

Fix: 5.18+
Fix from $1,600 2022-08-31
Debian Linux MEDIUM 6.5
CVE-2021-46837

res_pjsip_t38 in Sangoma Asterisk 16.x before 16.16.2, 17.x before 17.9.3, and 18.x before 18.2.2, and Certified Asterisk before 16.8-cert7, allows a…

Fix: 16.16.2 / 17.9.3+
Fix from $1,600 2022-08-30
Debian Linux HIGH 7.5
CVE-2022-39028

telnetd in GNU Inetutils through 2.3, MIT krb5-appl through 1.0.3, and derivative works has a NULL pointer dereference via 0xff 0xf7 or 0xff 0xf8. In…

Fix: after 2.3
Fix from $1,950 2022-08-30
Linux Kernel HIGH 7.5
CVE-2022-1199

A flaw was found in the Linux kernel. This flaw allows an attacker to crash the Linux kernel by simulating amateur radio from the user space, resulti…

Fix: after 5.17.14
Fix from $1,950 2022-08-29
Fedora MEDIUM 5.5
CVE-2022-2980

NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0259.

Fix: 9.0.0259+
Fix from $1,600 2022-08-25
Vtk HIGH 7.5
CVE-2021-42521

There is a NULL pointer dereference vulnerability in VTK before 9.2.5, and it lies in IO/Infovis/vtkXMLTreeReader.cxx. The vendor didn't check the re…

Fix: after 9.0.0
Fix from $1,950 2022-08-25
Enterprise Linux MEDIUM 6.0
CVE-2021-4158

A NULL pointer dereference issue was found in the ACPI code of QEMU. A malicious, privileged user within the guest could use this flaw to crash the Q…

Fix: 7.0.0+
Fix from $1,600 2022-08-24
Enterprise Linux MEDIUM 6.5
CVE-2021-4209

A NULL pointer dereference flaw was found in GnuTLS. As Nettle's hash update functions internally call memcpy, providing zero-length input may cause …

Fix: 3.7.3+
Fix from $1,600 2022-08-24
Fedora MEDIUM 5.5
CVE-2022-2923

NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0240.

Fix: 9.0.0240+
Fix from $1,600 2022-08-22
Linux Kernel MEDIUM 5.5
CVE-2021-3659

A NULL pointer dereference flaw was found in the Linux kernel’s IEEE 802.15.4 wireless networking subsystem in the way the user closes the LR-WPAN co…

Fix: 5.12+
Fix from $1,600 2022-08-22
Vim MEDIUM 5.5
CVE-2022-2874

NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0224.

Fix: 9.0.0224+
Fix from $1,600 2022-08-18
Edgeaggregator HIGH 7.5
CVE-2022-2337

A crafted HTTP packet with a missing HTTP URI can create a denial-of-service condition in Softing Secure Integration Server V1.22.

Mitigation only
Fix from $1,950 2022-08-17
Edgeaggregator HIGH 7.5
CVE-2022-2547

A crafted HTTP packet without a content-type header can create a denial-of-service condition in Softing Secure Integration Server V1.22.

Mitigation only
Fix from $1,950 2022-08-17
Edgeaggregator HIGH 7.5
CVE-2022-1748

Softing OPC UA C++ Server SDK, Secure Integration Server, edgeConnector, edgeAggregator, OPC Suite, and uaGate are affected by a NULL pointer derefer…

No fix yet
Fix from $1,950 2022-08-17
Gpac HIGH 7.5
CVE-2022-36186

A Null Pointer dereference vulnerability exists in GPAC 2.1-DEV-revUNKNOWN-master via the function gf_filter_pid_set_property_full () at filter_core/…

Patch available
Fix from $1,950 2022-08-17
Tifig MEDIUM 5.5
CVE-2022-36151

tifig v0.2.2 was discovered to contain a segmentation violation via getType() at /common/bbox.cpp.

No fix yet
Fix from $1,600 2022-08-16