Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Quartus Prime MEDIUM 5.5
CVE-2019-14604

Null pointer dereference in the FPGA kernel driver for Intel(R) Quartus(R) Prime Pro Edition before version 19.3 may allow an authenticated user to p…

Fix: 19.3+
Fix from $1,600 2019-12-16
Alp Al00b Firmware MEDIUM 5.3
CVE-2019-5235

Some Huawei smart phones have a null pointer dereference vulnerability. An attacker crafts specific packets and sends to the affected product to expl…

No fix yet
Fix from $1,600 2019-12-14
Ap2000 Firmware MEDIUM 5.5
CVE-2019-5256

Certain Huawei products (AP2000;IPS Module;NGFW Module;NIP6300;NIP6600;NIP6800;S5700;SVN5600;SVN5800;SVN5800-C;SeMG9811;Secospace AntiDDoS8000;Secosp…

Mitigation only
Fix from $1,600 2019-12-13
Fedora MEDIUM 5.3
CVE-2019-19722

In Dovecot before 2.3.9.2, an attacker can crash a push-notification driver with a crafted email when push notifications are used, because of a NULL …

Fix: 2.3.9.2+
Fix from $1,600 2019-12-13
Envoy HIGH 7.5
CVE-2019-18838

An issue was discovered in Envoy 1.12.0. Upon receipt of a malformed HTTP request without a Host header, it sends an internally generated "Invalid re…

Fix: after 1.12.1
Fix from $1,950 2019-12-13
Qcs605 Firmware MEDIUM 5.5
CVE-2019-10545

Null pointer dereference issue in kernel due to missing check related to LLC support in GPU in Snapdragon Auto, Snapdragon Consumer Electronics Conne…

Patch available
Fix from $1,600 2019-12-12
Apq8009 Firmware CRITICAL 9.8
CVE-2019-10559

Accessing data buffer beyond the available data while parsing ogg clip can lead to null-pointer dereference and then memory corruption in Snapdragon …

Mitigation only
Fix from $2,300 2019-12-12
Libwav MEDIUM 6.5
CVE-2019-19698

marc-q libwav through 2017-04-20 has a NULL pointer dereference in wav_content_read() at libwav.c.

Fix: after 2017-04-20
Fix from $1,600 2019-12-10
Antivirus\+ Security 2020 CRITICAL 9.8
CVE-2019-18190

Trend Micro Security (Consumer) 2020 (v16.x) is affected by a vulnerability in where null pointer dereference errors result in the crash of applicati…

Fix: 16.0.1227+
Fix from $2,300 2019-12-09
Fedora HIGH 7.8
CVE-2019-19647

radare2 through 4.0.0 lacks validation of the content variable in the function r_asm_pseudo_incbin at libr/asm/asm.c, ultimately leading to an arbitr…

Fix: after 4.0.0
Fix from $1,950 2019-12-09
Linux Kernel MEDIUM 5.5
CVE-2019-19462

relay_open in kernel/relay.c in the Linux kernel through 5.4.1 allows local users to cause a denial of service (such as relay blockage) by triggering…

Fix: after 5.4.1
Fix from $1,600 2019-11-30
Octopus Deploy MEDIUM 6.5
CVE-2019-19376

In Octopus Deploy before 2019.10.6, an authenticated user with TeamEdit permission could send a malformed Team API request that bypasses input valida…

Fix: 2019.6.14 / 2019.9.8+
Fix from $1,600 2019-11-28
SQLite MEDIUM 5.9
CVE-2019-19242

SQLite 3.30.1 mishandles pExpr->y.pTab, as demonstrated by the TK_COLUMN case in sqlite3ExprCodeTarget in expr.c.

Fix: 1.0.1.1+
Fix from $1,600 2019-11-27
Gnome Font Viewer MEDIUM 5.5
CVE-2019-19308

In text_to_glyphs in sushi-font-widget.c in gnome-font-viewer 3.34.0, there is a NULL pointer dereference while parsing a TTF font file that lacks a …

Patch available
Fix from $1,600 2019-11-27
Proftpd HIGH 7.5
CVE-2019-19272

An issue was discovered in tls_verify_crl in ProFTPD before 1.3.6. Direct dereference of a NULL pointer (a variable initialized to NULL) leads to a c…

Fix: 1.3.6+
Fix from $1,950 2019-11-26
Thttpd MEDIUM 5.5
CVE-2012-5640

thttpd has a local DoS vulnerability via specially-crafted .htpasswd files

No fix yet
Fix from $1,600 2019-11-25
Linux Kernel MEDIUM 5.5
CVE-2019-10207

A flaw was found in the Linux kernel's Bluetooth implementation of UART, all versions kernel 3.x.x before 4.18.0 and kernel 5.x.x. An attacker with l…

Fix: 4.18.0+
Fix from $1,600 2019-11-25
Debian Linux HIGH 7.5
CVE-2019-18976EPSS 7%

An issue was discovered in res_pjsip_t38.c in Sangoma Asterisk through 13.x and Certified Asterisk through 13.21-x. If it receives a re-invite initia…

Fix: after 13.29.1
Fix from $1,950 2019-11-22
Linux Kernel MEDIUM 5.5
CVE-2019-19227

In the AppleTalk subsystem in the Linux kernel before 5.1, there is a potential NULL pointer dereference because register_snap_client may return NULL…

Fix: 5.1+
Fix from $1,600 2019-11-22
Linux Kernel MEDIUM 5.5
CVE-2019-19037

ext4_empty_dir in fs/ext4/namei.c in the Linux kernel through 5.3.12 allows a NULL pointer dereference because ext4_read_dirblock(inode,0,DIRENT_HTRE…

Fix: after 5.3.12
Fix from $1,600 2019-11-21
Linux Kernel MEDIUM 5.5
CVE-2019-19036

btrfs_root_node in fs/btrfs/ctree.c in the Linux kernel through 5.3.12 allows a NULL pointer dereference because rcu_dereference(root->node) can be z…

Fix: after 5.3.12
Fix from $1,600 2019-11-21
Ngiflib HIGH 7.5
CVE-2019-19011

MiniUPnP ngiflib 0.4 has a NULL pointer dereference in GifIndexToTrueColor in ngiflib.c via a file that lacks a palette.

No fix yet
Fix from $1,950 2019-11-17
Debian Linux HIGH 7.5
CVE-2016-5285

A Null pointer dereference vulnerability exists in Mozilla Network Security Services due to a missing NULL check in PK11_SignWithSymKey / ssl3_Comput…

Fix: 3.26+
Fix from $1,950 2019-11-15
Graphics Driver HIGH 7.8
CVE-2019-11111

Pointer corruption in the Unified Shader Compiler in Intel(R) Graphics Drivers before 10.18.14.5074 (aka 15.36.x.5074) may allow an authenticated use…

Fix: 15.36.37.5074+
Fix from $1,950 2019-11-14
Linux Kernel MEDIUM 5.5
CVE-2019-18885

fs/btrfs/volumes.c in the Linux kernel before 5.1 allows a btrfs_verify_dev_extents NULL pointer dereference via a crafted btrfs image because fs_dev…

Fix: 5.1+
Fix from $1,600 2019-11-14
Blink MEDIUM 6.5
CVE-2011-1802

WebKit in Google Chrome before Blink M11 and M12 does not properly handle counter nodes, which allows remote attackers to cause a denial of service (…

Mitigation only
Fix from $1,600 2019-11-12
Hg655m Firmware HIGH 8.8
CVE-2017-17224

Some Huawei smart phones with versions earlier than Harry-AL00C 9.1.0.206(C00E205R3P1) have a null pointer dereference vulnerability. An attacker cra…

Mitigation only
Fix from $1,950 2019-11-12
Znc HIGH 7.5
CVE-2010-2488

NULL pointer dereference vulnerability in ZNC before 0.092 caused by traffic stats when there are unauthenticated connections.

Fix: 0.092+
Fix from $1,950 2019-11-12
Gpu Driver HIGH 7.8
CVE-2019-5691

NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape in which …

Patch available
Fix from $1,950 2019-11-09
Debian Linux HIGH 7.5
CVE-2019-18804

DjVuLibre 3.5.27 has a NULL pointer dereference in the function DJVU::filter_fv at IW44EncodeCodec.cpp.

No fix yet
Fix from $1,950 2019-11-07