Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Libapreq2 HIGH 7.5
CVE-2019-12412

A flaw in the libapreq2 v2.07 to v2.13 multipart parser can deference a null pointer leading to a process crash. A remote attacker could send a reque…

Fix: after 2.13
Fix from $1,950 2020-11-19
Apq8009w Firmware CRITICAL 9.8
CVE-2020-11168

u'Null-pointer dereference can occur while accessing data buffer beyond its size that leads to access the buffer beyond its range' in Snapdragon Auto…

Mitigation only
Fix from $2,300 2020-11-12
Android HIGH 7.5
CVE-2020-28344

An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, 9.0, and 10 software. System services may crash because of the lack of a NULL …

Mitigation only
Fix from $1,950 2020-11-08
Android HIGH 7.5
CVE-2020-28345

An issue was discovered on LG mobile devices with Android OS 10 software. The Wi-Fi subsystem may crash because of the lack of a NULL parameter check…

Mitigation only
Fix from $1,950 2020-11-08
Teler HIGH 7.5
CVE-2020-26213

In teler before version 0.0.1, if you run teler inside a Docker container and encounter `errors.Exit` function, it will cause denial-of-service (`SIG…

Fix: 0.0.1+
Fix from $1,950 2020-11-06
Fedora HIGH 7.5
CVE-2020-26521

The JWT library in NATS nats-server before 2.1.9 allows a denial of service (a nil dereference in Go code).

Fix: 2.1.9+
Fix from $1,950 2020-11-06
Coreos HIGH 7.5
CVE-2020-5646

NULL pointer dereferences vulnerability in TCP/IP function included in the firmware of GT14 Model of GOT 1000 series (GT1455-QTBDE CoreOS version "05…

Fix: after 05.65.00.bd
Fix from $1,950 2020-11-06
Melsec Iq Rj71eip91 Firmware HIGH 7.5
CVE-2020-5655

NULL pointer dereferences vulnerability in TCP/IP function included in the firmware of MELSEC iQ-R series (RJ71EIP91 EtherNet/IP Network Interface Mo…

Mitigation only
Fix from $1,950 2020-11-02
Fedora MEDIUM 5.5
CVE-2020-14323

A null pointer dereference flaw was found in samba's Winbind service in versions before 4.11.15, before 4.12.9 and before 4.13.1. A local user could …

Fix: 4.11.15 / 4.12.9+
Fix from $1,600 2020-10-29
Airport Base Station Firmware CRITICAL 9.8
CVE-2019-8572

A null pointer dereference was addressed with improved input validation. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort B…

Fix: 7.8.1+
Fix from $2,300 2020-10-27
Airport Base Station Firmware HIGH 7.5
CVE-2019-8588

A null pointer dereference was addressed with improved input validation. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort B…

Fix: 7.8.1+
Fix from $1,950 2020-10-27
Network Security Services MEDIUM 6.5
CVE-2018-18508

In Network Security Services (NSS) before 3.36.7 and before 3.41.1, a malformed signature can cause a crash due to a null dereference, resulting in a…

Fix: 2.14.0 / 3.36.7+
Fix from $1,600 2020-10-22
Indesign MEDIUM 5.5
CVE-2020-24421

Adobe InDesign version 15.1.2 (and earlier) is affected by a NULL pointer dereference bug that occurs when handling a malformed .indd file. The impac…

Fix: after 15.1.2
Fix from $1,600 2020-10-21
Junos HIGH 8.8
CVE-2020-1656

The DHCPv6 Relay-Agent service, part of the Juniper Enhanced jdhcpd daemon shipped with Juniper Networks Junos OS has an Improper Input Validation vu…

Mitigation only
Fix from $1,950 2020-10-16
Qualcomm Mobile Access Point HIGH 7.5
CVE-2020-25858EPSS 10%

The QCMAP_Web_CLIENT binary in the Qualcomm QCMAP software suite prior to versions released in October 2020 does not validate the return value of a s…

No fix yet
Fix from $1,950 2020-10-15
Wireshark HIGH 7.5
CVE-2020-25866

In Wireshark 3.2.0 to 3.2.6 and 3.0.0 to 3.0.13, the BLIP protocol dissector has a NULL pointer dereference because a buffer was sized for compressed…

Fix: after 3.2.6
Fix from $1,950 2020-10-06
Virtual Gpu Manager MEDIUM 5.5
CVE-2020-5989

NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which it can dereference a NULL pointer, which may lead to denial of servi…

Fix: 8.5 / 10.4+
Fix from $1,600 2020-10-02
Foxit Reader MEDIUM 5.5
CVE-2020-26536

An issue was discovered in Foxit Reader and PhantomPDF before 10.1. There is a NULL pointer dereference via a crafted PDF document.

Fix: 10.1+
Fix from $1,600 2020-10-02
Tensorflow MEDIUM 5.9
CVE-2020-15209

In tensorflow-lite before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, a crafted TFLite model can force a node to have as input a tensor backed by…

Fix: 1.15.4 / 2.0.3+
Fix from $1,600 2020-09-25
Tensorflow MEDIUM 5.3
CVE-2020-15204

In eager mode, TensorFlow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1 does not set the session state. Hence, calling `tf.raw_ops.GetSession…

Fix: 1.15.4 / 2.0.3+
Fix from $1,600 2020-09-25
Tensorflow MEDIUM 5.3
CVE-2020-15190

In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, the `tf.raw_ops.Switch` operation takes as input a tensor and a boolean and outp…

Fix: 1.15.4 / 2.0.3+
Fix from $1,600 2020-09-25
Tensorflow MEDIUM 5.3
CVE-2020-15191

In Tensorflow before versions 2.2.1 and 2.3.1, if a user passes an invalid argument to `dlpack.to_dlpack` the expected validations will cause variabl…

Patch available
Fix from $1,600 2020-09-25
Wireless Lan Controller HIGH 7.4
CVE-2020-3552

A vulnerability in the Ethernet packet handling of Cisco Aironet Access Points (APs) Software could allow an unauthenticated, adjacent attacker to ca…

Fix: 8.10.105.0 / 10.1.1.0+
Fix from $1,950 2020-09-24
Ios Xe HIGH 8.6
CVE-2020-3407

A vulnerability in the RESTCONF and NETCONF-YANG access control list (ACL) function of Cisco IOS XE Software could allow an unauthenticated, remote a…

Mitigation only
Fix from $1,950 2020-09-24
Peg Markdown HIGH 7.5
CVE-2020-25821

peg-markdown 0.4.14 has a NULL pointer dereference in process_raw_blocks in markdown_lib.c. NOTE: This vulnerability only affects products that are n…

No fix yet
Fix from $1,950 2020-09-23
Chrome HIGH 8.8
CVE-2020-15964

Insufficient data validation in media in Google Chrome prior to 85.0.4183.121 allowed a remote attacker to potentially exploit heap corruption via a …

Fix: 85.0.4183.121+
Fix from $1,950 2020-09-21
Libraw MEDIUM 5.5
CVE-2020-24890

libraw 20.0 has a null pointer dereference vulnerability in parse_tiff_ifd in src/metadata/tiff.cpp, which may result in context-dependent arbitrary …

No fix yet
Fix from $1,600 2020-09-16
Linux Kernel MEDIUM 6.4
CVE-2020-25285

A race condition between hugetlb sysctl handlers in mm/hugetlb.c in the Linux kernel before 5.8.8 could be used by local attackers to corrupt memory,…

Fix: 5.8.8+
Fix from $1,600 2020-09-13
Debian Linux MEDIUM 6.5
CVE-2019-20917

An issue was discovered in InspIRCd 2 before 2.0.28 and 3 before 3.3.0. The mysql module contains a NULL pointer dereference when built against maria…

Fix: 2.0.28 / 3.3.0+
Fix from $1,600 2020-09-11
Apq8098 Firmware MEDIUM 5.5
CVE-2020-11122

u'Null Pointer exception while playing crafted mkv file as data stream get deleted on secondary invalid configuration' in Snapdragon Auto, Snapdragon…

Mitigation only
Fix from $1,600 2020-09-08