Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Nitropdf MEDIUM 5.5
CVE-2019-19819

The JBIG2Globals library in npdf.dll in Nitro Free PDF Reader 12.0.0.112 has a CAPPDAnnotHandlerUtils::PDAnnotHandlerDestroyData2+0x90ec NULL Pointer…

No fix yet
Fix from $1,600 2020-01-10
Kies HIGH 7.5
CVE-2012-3806

Samsung Kies before 2.5.0.12094_27_11 contains a NULL pointer dereference vulnerability which could allow remote attackers to perform a denial of ser…

Fix: 2.5.0.12094_27_11+
Fix from $1,950 2020-01-09
Libming MEDIUM 6.5
CVE-2020-6629

Ming (aka libming) 0.4.8 has z NULL pointer dereference in the function decompileGETURL2() in decompile.c.

No fix yet
Fix from $1,600 2020-01-09
Gpac MEDIUM 5.5
CVE-2020-6630

An issue was discovered in GPAC version 0.8.0. There is a NULL pointer dereference in the function gf_isom_get_media_data_size() in isomedia/isom_rea…

No fix yet
Fix from $1,600 2020-01-09
Gpac MEDIUM 5.5
CVE-2020-6631

An issue was discovered in GPAC version 0.8.0. There is a NULL pointer dereference in the function gf_m2ts_stream_process_pmt() in media_tools/m2ts_m…

No fix yet
Fix from $1,600 2020-01-09
Libredwg MEDIUM 6.5
CVE-2020-6611

GNU LibreDWG 0.9.3.2564 has a NULL pointer dereference in get_next_owned_entity in dwg.c.

No fix yet
Fix from $1,600 2020-01-08
Libredwg MEDIUM 6.5
CVE-2020-6615

GNU LibreDWG 0.9.3.2564 has an invalid pointer dereference in dwg_dynapi_entity_value in dynapi.c (dynapi.c is generated by gen-dynapi.pl).

No fix yet
Fix from $1,600 2020-01-08
Ftpgetter HIGH 7.5
CVE-2020-5183

FTPGetter Professional 5.97.0.223 is vulnerable to a memory corruption bug when a user sends a specially crafted string to the application. This memo…

No fix yet
Fix from $1,950 2020-01-08
Ezxml MEDIUM 6.5
CVE-2019-20199

An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_decode, while parsing a crafted XML file, performs incorrect memory handling…

Fix: after 0.8.6
Fix from $1,600 2019-12-31
Debian Linux MEDIUM 5.5
CVE-2019-20163

An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a NULL pointer dereference in the function gf_odf_avc_cfg_writ…

No fix yet
Fix from $1,600 2019-12-31
Gpac MEDIUM 5.5
CVE-2019-20164

An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a NULL pointer dereference in the function gf_isom_box_del() i…

No fix yet
Fix from $1,600 2019-12-31
Debian Linux MEDIUM 5.5
CVE-2019-20165

An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a NULL pointer dereference in the function ilst_item_Read() in…

No fix yet
Fix from $1,600 2019-12-31
Gpac MEDIUM 5.5
CVE-2019-20166

An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a NULL pointer dereference in the function gf_isom_dump() in i…

No fix yet
Fix from $1,600 2019-12-31
Gpac MEDIUM 5.5
CVE-2019-20167

An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a NULL pointer dereference in the function senc_Parse() in iso…

No fix yet
Fix from $1,600 2019-12-31
Bento4 MEDIUM 5.5
CVE-2019-20091

An issue was discovered in Bento4 1.5.1.0. There is a NULL pointer dereference in AP4_Descriptor::GetTag in mp42ts when called from AP4_DecoderConfig…

No fix yet
Fix from $1,600 2019-12-30
Bento4 MEDIUM 5.5
CVE-2019-20092

An issue was discovered in Bento4 1.5.1.0. There is a NULL pointer dereference in AP4_Descriptor::GetTag in mp42ts when called from AP4_EsDescriptor:…

No fix yet
Fix from $1,600 2019-12-30
Fedora MEDIUM 5.5
CVE-2019-20093

The PoDoFo::PdfVariant::DelayedLoad function in PdfVariant.h in PoDoFo 0.9.6 allows remote attackers to cause a denial of service (NULL pointer deref…

No fix yet
Fix from $1,600 2019-12-30
Linux Kernel MEDIUM 5.5
CVE-2019-20054

In the Linux kernel before 5.0.6, there is a NULL pointer dereference in drop_sysctl_table() in fs/proc/proc_sysctl.c, related to put_links, aka CID-…

Fix: 5.0.6+
Fix from $1,600 2019-12-28
Ezxml MEDIUM 6.5
CVE-2019-20007

An issue was discovered in ezXML 0.8.2 through 0.8.6. The function ezxml_str2utf8, while parsing a crafted XML file, performs zero-length reallocatio…

Fix: after 0.8.6
Fix from $1,600 2019-12-26
SQLite HIGH 7.5
CVE-2019-19923EPSS 7%

flattenSubquery in select.c in SQLite 3.30.1 mishandles certain uses of SELECT DISTINCT involving a LEFT JOIN in which the right-hand side is a view.…

Fix: 1.0.1.1+
Fix from $1,950 2019-12-24
Debian Linux MEDIUM 5.5
CVE-2019-18388

A NULL pointer dereference in vrend_renderer.c in virglrenderer through 0.8.0 allows guest OS users to cause a denial of service via malformed comman…

Fix: after 0.8.0
Fix from $1,600 2019-12-23
SQLite HIGH 7.5
CVE-2019-19926EPSS 7%

multiSelect in select.c in SQLite 3.30.1 mishandles certain errors during parsing, as demonstrated by errors from sqlite3WindowRewrite() calls. NOTE:…

Fix: 1.0.1.1+
Fix from $1,950 2019-12-23
Plcwinnt MEDIUM 6.5
CVE-2019-19789

3S-Smart CODESYS SP Realtime NT before V2.3.7.28, CODESYS Runtime Toolkit 32 bit full before V2.4.7.54, and CODESYS PLCWinNT before V2.4.7.54 allow a…

Fix: 2.3.7.28 / 2.4.7.54+
Fix from $1,600 2019-12-20
Ffjpeg MEDIUM 6.5
CVE-2019-19887

bitstr_tell at bitstr.c in ffjpeg through 2019-08-21 has a NULL pointer dereference related to jfif_encode.

Fix: after 2019-08-21
Fix from $1,600 2019-12-18
Mac Os X HIGH 7.8
CVE-2019-8755

A logic issue was addressed with improved restrictions. This issue is fixed in macOS Catalina 10.15. A malicious application may be able to determine…

Fix: 10.15+
Fix from $1,950 2019-12-18
Apq8009 Firmware HIGH 7.8
CVE-2019-10600

Use of local variable as argument to netlink CB callback goes out of it scope when callback triggered lead to invalid stack memory in Snapdragon Auto…

Patch available
Fix from $1,950 2019-12-18
SQLite HIGH 7.5
CVE-2019-19880EPSS 7%

exprListAppendList in window.c in SQLite 3.30.1 allows attackers to trigger an invalid pointer dereference because constant integer values in ORDER B…

Patch available
Fix from $1,950 2019-12-18
Apq8009 Firmware MEDIUM 5.5
CVE-2019-10513

Possibility of Null pointer access if the SPDM commands are executed in the non-standard way in Trustzone in Snapdragon Auto, Snapdragon Compute, Sna…

Mitigation only
Fix from $1,600 2019-12-18
Fedora HIGH 7.5
CVE-2019-3995EPSS 29%

ELOG 3.1.4-57bea22 and below is affected by a denial of service vulnerability due to a NULL pointer dereference. A remote unauthenticated attacker ca…

Fix: after 3.1.4-57bea22
Fix from $1,950 2019-12-17
Linux Kernel MEDIUM 5.5
CVE-2019-19815

In the Linux kernel 5.0.21, mounting a crafted f2fs filesystem image can cause a NULL pointer dereference in f2fs_recover_fsync_data in fs/f2fs/recov…

Patch available
Fix from $1,600 2019-12-17