Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
OpenBSD HIGH 7.5
CVE-2010-4816

It was found in FreeBSD 8.0, 6.3 and 4.9, and OpenBSD 4.6 that a null pointer dereference in ftpd/popen.c may lead to remote denial of service of the…

No fix yet
Fix from $1,950 2021-06-22
Android HIGH 7.5
CVE-2021-0555

In RenderStruct of protostream_objectsource.cc, there is a possible crash due to a missing null check. This could lead to remote denial of service wi…

Mitigation only
Fix from $1,950 2021-06-22
Cloud Protection For Salesforce MEDIUM 6.5
CVE-2021-33572

A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Linux Security whereby the FSAVD component used in certain F-Secure products can c…

Mitigation only
Fix from $1,600 2021-06-21
HTTP Server HIGH 7.5
CVE-2021-31618EPSS 51%

Apache HTTP Server protocol handler for the HTTP/2 protocol checks received request headers against the size limitations as configured for the server…

Patch available
Fix from $1,950 2021-06-15
Debian Linux MEDIUM 5.5
CVE-2021-27345

A null pointer dereference was discovered in ucompthread in stream.c in Irzip 0.631 which allows attackers to cause a denial of service (DOS) via a c…

Patch available
Fix from $1,600 2021-06-10
Debian Linux MEDIUM 5.5
CVE-2020-25467

A null pointer dereference was discovered lzo_decompress_buf in stream.c in Irzip 0.621 which allows an attacker to cause a denial of service (DOS) v…

Patch available
Fix from $1,600 2021-06-10
Fedora HIGH 7.5
CVE-2021-34555

OpenDMARC 1.4.1 and 1.4.1.1 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a multi-value F…

Patch available
Fix from $1,950 2021-06-10
HTTP Server HIGH 7.5
CVE-2020-13950EPSS 49%

Apache HTTP Server versions 2.4.41 to 2.4.46 mod_proxy_http can be made to crash (NULL pointer dereference) with specially crafted requests using bot…

Fix: after 2.4.46
Fix from $1,950 2021-06-10
HTTP Server HIGH 7.5
CVE-2021-26690EPSS 65%

Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Cookie header handled by mod_session can cause a NULL pointer dereference and crash, …

Fix: after 2.4.46
Fix from $1,950 2021-06-10
Netweaver As Abap HIGH 7.5
CVE-2021-27630

SAP NetWeaver ABAP Server and ABAP Platform (Enqueue Server), versions - KRNL32NUC - 7.22,7.22EXT, KRNL64NUC - 7.22,7.22EXT,7.49, KRNL64UC - 8.04,7.2…

Mitigation only
Fix from $1,950 2021-06-09
Netweaver As Abap HIGH 7.5
CVE-2021-27631

SAP NetWeaver ABAP Server and ABAP Platform (Enqueue Server), versions - KRNL32NUC - 7.22,7.22EXT, KRNL64NUC - 7.22,7.22EXT,7.49, KRNL64UC - 8.04,7.2…

Mitigation only
Fix from $1,950 2021-06-09
Netweaver As Abap HIGH 7.5
CVE-2021-27632

SAP NetWeaver ABAP Server and ABAP Platform (Enqueue Server), versions - KRNL32NUC - 7.22,7.22EXT, KRNL64NUC - 7.22,7.22EXT,7.49, KRNL64UC - 8.04,7.2…

Mitigation only
Fix from $1,950 2021-06-09
Netweaver As Abap HIGH 7.5
CVE-2021-27607

SAP NetWeaver ABAP Server and ABAP Platform (Dispatcher), versions - KRNL32NUC - 7.22,7.22EXT, KRNL32UC - 7.22,7.22EXT, KRNL64NUC - 7.22,7.22EXT,7.49…

Mitigation only
Fix from $1,950 2021-06-09
Edk2 HIGH 7.8
CVE-2019-14584

Null pointer dereference in Tianocore EDK2 may allow an authenticated user to potentially enable escalation of privilege via local access.

Fix: 2020-10-21+
Fix from $1,950 2021-06-03
Debian Linux MEDIUM 6.5
CVE-2019-12067

The ahci_commit_buf function in ide/ahci.c in QEMU allows attackers to cause a denial of service (NULL dereference) when the command header 'ad->cur_…

Patch available
Fix from $1,600 2021-06-02
Fedora MEDIUM 6.0
CVE-2020-35503

A NULL pointer dereference flaw was found in the megasas-gen2 SCSI host bus adapter emulation of QEMU in versions before and including 6.0. This issu…

Fix: after 6.0.0
Fix from $1,600 2021-06-02
Enterprise Linux MEDIUM 6.7
CVE-2021-3543

A flaw null pointer dereference in the Nitro Enclaves kernel driver was found in the way that Enclaves VMs forces closures on the enclave file descri…

Fix: 5.10.0+
Fix from $1,600 2021-06-01
Gama HIGH 7.5
CVE-2020-18395

A NULL-pointer deference issue was discovered in GNU_gama::set() in ellipsoid.h in Gama 2.04 which can lead to a denial of service (DOS) via segment …

No fix yet
Fix from $1,950 2021-05-28
389 Directory Server MEDIUM 6.5
CVE-2021-3514

When using a sync_repl client in 389-ds-base, an authenticated attacker can cause a NULL pointer dereference using a specially crafted query, causing…

Mitigation only
Fix from $1,600 2021-05-28
Fedora MEDIUM 6.0
CVE-2020-35504

A NULL pointer dereference flaw was found in the SCSI emulation support of QEMU in versions before 6.0.0. This flaw allows a privileged guest user to…

Fix: 6.0.0+
Fix from $1,600 2021-05-28
Enterprise Linux HIGH 7.8
CVE-2021-30500

Null pointer dereference was found in upx PackLinuxElf::canUnpack() in p_lx_elf.cpp,in version UPX 4.0.0. That allow attackers to execute arbitrary c…

Patch available
Fix from $1,950 2021-05-27
Debian Linux MEDIUM 6.5
CVE-2021-20196

A NULL pointer dereference flaw was found in the floppy disk emulator of QEMU. This issue occurs while processing read/write ioport commands if the s…

Patch available
Fix from $1,600 2021-05-26
Debian Linux HIGH 7.5
CVE-2020-20450

FFmpeg 4.2 is affected by null pointer dereference passed as argument to libavformat/aviobuf.c, which could cause a Denial of Service.

Mitigation only
Fix from $1,950 2021-05-25
Zephyr HIGH 7.5
CVE-2021-3320

Type Confusion in 802154 ACK Frames Handling. Zephyr versions >= v2.4.0 contain NULL Pointer Dereference (CWE-476). For more information, see https:/…

Fix: after 2.4.0
Fix from $1,950 2021-05-25
Zephyr MEDIUM 5.7
CVE-2020-10066

Incorrect Error Handling in Bluetooth HCI core. Zephyr versions >= v1.14.2, >= v2.2.0 contain NULL Pointer Dereference (CWE-476). For more informatio…

Fix: after 2.2.0
Fix from $1,600 2021-05-25
Envoy HIGH 7.5
CVE-2021-28683

An issue was discovered in Envoy through 1.71.1. There is a remotely exploitable NULL pointer dereference and crash in TLS when an unknown TLS alert …

Mitigation only
Fix from $1,950 2021-05-20
Fedora HIGH 7.5
CVE-2021-3480

A flaw was found in slapi-nis in versions before 0.56.7. A NULL pointer dereference during the parsing of the Binding DN could allow an unauthenticat…

Fix: 0.56.7+
Fix from $1,950 2021-05-20
Routeros MEDIUM 6.5
CVE-2020-20266

Mikrotik RouterOs before 6.47 (stable tree) suffers from a memory corruption vulnerability in the /nova/bin/dot1x process. An authenticated remote at…

Fix: 6.47+
Fix from $1,600 2021-05-19
Routeros MEDIUM 6.5
CVE-2020-20222

Mikrotik RouterOs 6.44.6 (long-term tree) suffers from a memory corruption vulnerability in the /nova/bin/sniffer process. An authenticated remote at…

No fix yet
Fix from $1,600 2021-05-18
Libredwg MEDIUM 6.5
CVE-2020-21834

A null pointer deference issue exists in GNU LibreDWG 0.10 via get_bmp ../../programs/dwgbmp.c:164.

Patch available
Fix from $1,600 2021-05-17