Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Iu1 1m20 D Firmware CRITICAL 9.8
CVE-2020-5544

Null Pointer Dereference vulnerability in TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 series IU1-1M20-D firmware version …

Fix: after 1.0.7
Fix from $2,300 2020-03-16
Virtual Gpu Manager MEDIUM 5.5
CVE-2020-5960

NVIDIA Virtual GPU Manager contains a vulnerability in the kernel module (nvidia.ko), where a null pointer dereference may occur, which may lead to d…

Mitigation only
Fix from $1,600 2020-03-12
Apq8009 Firmware HIGH 7.5
CVE-2019-14061

Null-pointer dereference can occur while accessing the segment element info when it is not allocated and assigned in Snapdragon Auto, Snapdragon Comp…

Mitigation only
Fix from $1,950 2020-03-05
Apq8009 Firmware HIGH 7.5
CVE-2019-10591

Null pointer dereference can happen when parsing udta atom which is non-standard and having invalid depth in Snapdragon Auto, Snapdragon Compute, Sna…

Mitigation only
Fix from $1,950 2020-03-05
Apq8009 Firmware MEDIUM 5.5
CVE-2019-10616

Possibility of null pointer access if the SPDM commands are executed in the non-standard way in TZ. in Snapdragon Auto, Snapdragon Compute, Snapdrago…

Mitigation only
Fix from $1,600 2020-03-05
Msm8905 Firmware HIGH 7.5
CVE-2019-10549

Null pointer dereference issue can happen due to improper validation of CSEQ header response received from network in Snapdragon Auto, Snapdragon Com…

Mitigation only
Fix from $1,950 2020-03-05
Utorrent HIGH 7.5
CVE-2020-8437EPSS 12%

The bencoding parser in BitTorrent uTorrent through 3.5.5 (build 45505) misparses nested bencoded dictionaries, which allows a remote attacker to cau…

Fix: after 3.5.5
Fix from $1,950 2020-03-02
Thunderbird MEDIUM 6.5
CVE-2020-6795

When processing a message that contains multiple S/MIME signatures, a bug in the MIME processing code caused a null pointer dereference, leading to a…

Fix: 68.5.0+
Fix from $1,600 2020-03-02
Pale Moon HIGH 7.5
CVE-2020-9545

Pale Moon 28.x before 28.8.4 has a segmentation fault related to module scripting, as demonstrated by a Lacoste web site.

Fix: 28.8.4+
Fix from $1,950 2020-03-02
Wireshark HIGH 7.5
CVE-2020-9429

In Wireshark 3.2.0 to 3.2.1, the WireGuard dissector could crash. This was addressed in epan/dissectors/packet-wireguard.c by handling the situation …

Fix: after 3.2.1
Fix from $1,950 2020-02-27
PHP HIGH 7.5
CVE-2020-7062

In PHP versions 7.2.x below 7.2.28, 7.3.x below 7.3.15 and 7.4.x below 7.4.3, when using file upload functionality, if upload progress tracking is en…

Fix: after 7.4.2
Fix from $1,950 2020-02-27
Zint HIGH 7.5
CVE-2020-9385

A NULL Pointer Dereference exists in libzint in Zint 2.7.1 because multiple + characters are mishandled in add_on in upcean.c, when called from eanx …

No fix yet
Fix from $1,950 2020-02-25
SQLite HIGH 7.5
CVE-2020-9327

In SQLite 3.31.1, isAuxiliaryVtabOperator allows attackers to trigger a NULL pointer dereference and segmentation fault because of generated column o…

Fix: 1.0.1.1+
Fix from $1,950 2020-02-21
Debian Linux HIGH 7.5
CVE-2020-6062EPSS 6%

An exploitable denial-of-service vulnerability exists in the way CoTURN 4.5.1.1 web server parses POST requests. A specially crafted HTTP POST reques…

No fix yet
Fix from $1,950 2020-02-19
Unified Infrastructure Management HIGH 7.5
CVE-2020-8011

CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains a null pointer dereference vulnerability in the robot (c…

Fix: 20.4.0+
Fix from $1,950 2020-02-18
Android MEDIUM 6.5
CVE-2020-0021

In removeUnusedPackagesLPw of PackageManagerService.java, there is a possible permanent denial-of-service due to a missing package dependency test. T…

Patch available
Fix from $1,600 2020-02-13
Ndis MEDIUM 5.5
CVE-2019-11867

Realtek NDIS driver rt640x64.sys, file version 10.1.505.2015, fails to do any size checking on an input buffer from user space, which the driver assu…

Mitigation only
Fix from $1,600 2020-02-12
Fedora HIGH 7.5
CVE-2018-14553

gdImageClone in gd.c in libgd 2.1.0-rc2 through 2.2.5 has a NULL pointer dereference allowing attackers to crash an application via a specific functi…

Fix: after 2.2.5
Fix from $1,950 2020-02-11
Fedora HIGH 7.5
CVE-2010-5304

A NULL pointer dereference flaw was found in the way LibVNCServer before 0.9.9 handled certain ClientCutText message. A remote attacker could use thi…

Fix: 0.9.9+
Fix from $1,950 2020-02-05
Ossec MEDIUM 5.5
CVE-2020-8448

In OSSEC-HIDS 2.7 through 3.5.0, the server component responsible for log analysis (ossec-analysisd) is vulnerable to a denial of service (NULL point…

Fix: after 3.5.0
Fix from $1,600 2020-01-30
Debian Linux MEDIUM 5.5
CVE-2020-8002

A NULL pointer dereference in vrend_renderer.c in virglrenderer through 0.8.1 allows attackers to cause a denial of service via commands that attempt…

Fix: after 0.8.1
Fix from $1,600 2020-01-27
Lustre HIGH 7.5
CVE-2019-20424

In the Lustre file system before 2.12.3, mdt_object_remote in the mdt module has a NULL pointer dereference and panic due to the lack of validation f…

Fix: 2.12.3+
Fix from $1,950 2020-01-27
Powertcp Webserver For Activex HIGH 7.5
CVE-2012-5389EPSS 7%

NULL Pointer Dereference in PowerTCP WebServer for ActiveX 1.9.2 and earlier allows remote attackers to cause a denial of service (application crash)…

Fix: after 1.9.2
Fix from $1,950 2020-01-23
Libyang MEDIUM 6.5
CVE-2019-20398

A NULL pointer dereference is present in libyang before v1.0-r3 in the function lys_extension_instances_free() due to a copy of unresolved extensions…

Patch available
Fix from $1,600 2020-01-22
Apq8009 Firmware HIGH 7.5
CVE-2019-14003

Null pointer exception can happen while parsing invalid MKV clip where cue information is parsed before segment information in Snapdragon Auto, Snapd…

Patch available
Fix from $1,950 2020-01-21
Mdm9150 Firmware HIGH 7.5
CVE-2019-14008

Possible null pointer dereference issue in location assistance data processing due to missing null check on resources before using it in Snapdragon A…

Mitigation only
Fix from $1,950 2020-01-21
Apq8009 Firmware HIGH 7.5
CVE-2019-10578

Null pointer dereference can occur while parsing the clip which is nonstandard in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapd…

Mitigation only
Fix from $1,950 2020-01-21
Unified Personal Communicator HIGH 7.5
CVE-2010-3048

Cisco Unified Personal Communicator 7.0 (1.13056) does not free allocated memory for received data and does not perform validation if memory allocati…

Mitigation only
Fix from $1,950 2020-01-16
Wireshark MEDIUM 6.5
CVE-2020-7045

In Wireshark 3.0.x before 3.0.8, the BT ATT dissector could crash. This was addressed in epan/dissectors/packet-btatt.c by validating opcodes.

Fix: 3.0.8+
Fix from $1,600 2020-01-16
Hiredis HIGH 7.5
CVE-2020-7105

async.c and dict.c in libhiredis.a in hiredis through 0.14.0 allow a NULL pointer dereference because malloc return values are unchecked.

Fix: after 0.14.0
Fix from $1,950 2020-01-16