Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Mdm9206 Firmware CRITICAL 9.8
CVE-2019-10534

Null-pointer dereference can occur while accessing the super index entry when it is not been allocated in Snapdragon Auto, Snapdragon Compute, Snapdr…

No fix yet
Fix from $2,300 2019-11-06
Mdm9150 Firmware HIGH 7.5
CVE-2019-10488

Null pointer dereference can occur while parsing invalid chunks while playing the nonstandard clip in Snapdragon Auto, Snapdragon Compute, Snapdragon…

Mitigation only
Fix from $1,950 2019-11-06
Libsass MEDIUM 6.5
CVE-2019-18799

LibSass before 3.6.3 allows a NULL pointer dereference in Sass::Parser::parseCompoundSelector in parser_selectors.cpp.

Fix: 3.6.3+
Fix from $1,600 2019-11-06
Directory Server HIGH 7.5
CVE-2010-2222

The _ger_parse_control function in Red Hat Directory Server 8 and the 389 Directory Server allows attackers to cause a denial of service (NULL pointe…

Patch available
Fix from $1,950 2019-11-05
Linux Kernel HIGH 7.5
CVE-2019-18680

An issue was discovered in the Linux kernel 4.4.x before 4.4.195. There is a NULL pointer dereference in rds_tcp_kill_sock() in net/rds/tcp.c that wi…

Fix: 4.4.195+
Fix from $1,950 2019-11-04
Debian Linux HIGH 7.5
CVE-2013-4412

slim has NULL pointer dereference when using crypt() method from glibc 2.17

Fix: 1.3.6+
Fix from $1,950 2019-11-04
Python HIGH 7.5
CVE-2019-5010EPSS 21%

An exploitable denial-of-service vulnerability exists in the X509 certificate parser of Python.org Python 2.7.11 / 3.6.6. A specially crafted X509 ce…

Fix: 2.7.16 / 3.4.10+
Fix from $1,950 2019-10-31
Moolticute HIGH 7.5
CVE-2019-18635

An issue was discovered in Mooltipass Moolticute through v0.42.1 and v0.42.x-testing through v0.42.5-testing. There is a NULL pointer dereference in …

Fix: 0.42.1+
Fix from $1,950 2019-10-30
Xpdf MEDIUM 5.5
CVE-2010-0206

xpdf allows remote attackers to cause a denial of service (NULL pointer dereference and crash) in the way it processes JBIG2 PDF stream objects.

Mitigation only
Fix from $1,600 2019-10-30
Tightvnc HIGH 7.5
CVE-2019-15680

TightVNC code version 1.3.10 contains null pointer dereference in HandleZlibBPP function, which results Denial of System (DoS). This attack appear to…

Mitigation only
Fix from $1,950 2019-10-29
Spa112 Firmware MEDIUM 6.5
CVE-2019-15258

A vulnerability in the web-based management interface of Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, remote at…

Fix: 1.4.1+
Fix from $1,600 2019-10-16
Debian Linux CRITICAL 9.8
CVE-2019-17539

In FFmpeg before 4.2, avcodec_open2 in libavcodec/utils.c allows a NULL pointer dereference and possibly unspecified other impact when there is no va…

Fix: 3.4.7 / 4.0.5+
Fix from $2,300 2019-10-14
Hydra HIGH 7.5
CVE-2019-17502

Hydra through 0.1.8 has a NULL pointer dereference and daemon crash when processing POST requests that lack a Content-Length header. read.c, request.…

Fix: after 0.1.8
Fix from $1,950 2019-10-12
Bento4 MEDIUM 6.5
CVE-2019-17452

Bento4 1.5.1.0 has a NULL pointer dereference in AP4_DescriptorListInspector::Action in Core/Ap4Descriptor.h, related to AP4_IodsAtom::InspectFields …

No fix yet
Fix from $1,600 2019-10-10
Bento4 MEDIUM 6.5
CVE-2019-17453

Bento4 1.5.1.0 has a NULL pointer dereference in AP4_DescriptorListWriter::Action in Core/Ap4Descriptor.h, related to AP4_IodsAtom::WriteFields in Co…

No fix yet
Fix from $1,600 2019-10-10
Bento4 MEDIUM 6.5
CVE-2019-17454

Bento4 1.5.1.0 has a NULL pointer dereference in AP4_Descriptor::GetTag in Core/Ap4Descriptor.h, related to AP4_StsdAtom::GetSampleDescription in Cor…

No fix yet
Fix from $1,600 2019-10-10
Libpcap HIGH 7.5
CVE-2019-15163

rpcapd/daemon.c in libpcap before 1.9.1 allows attackers to cause a denial of service (NULL pointer dereference and daemon crash) if a crypt() call f…

Fix: 1.9.1+
Fix from $1,950 2019-10-03
Xpdfreader MEDIUM 5.5
CVE-2019-17064

Catalog.cc in Xpdf 4.02 has a NULL pointer dereference because Catalog.pageLabels is initialized too late in the Catalog constructor.

Patch available
Fix from $1,600 2019-10-01
Mdm9206 Firmware HIGH 7.5
CVE-2019-10489

Possible null-pointer dereference can occur while parsing avi clip during copy in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapd…

Mitigation only
Fix from $1,950 2019-09-30
Qcs405 Firmware HIGH 8.2
CVE-2019-10510

BT process died and BT toggled due to null pointer dereference when invalid vendor pass through command sent from remote in Snapdragon Auto, Snapdrag…

Patch available
Fix from $1,950 2019-09-30
Android HIGH 7.5
CVE-2019-9430

In Bluetooth, there is a possible null pointer dereference due to a missing null check. This could lead to remote denial of service with no additiona…

Mitigation only
Fix from $1,950 2019-09-27
Android HIGH 7.5
CVE-2019-9400

In Bluetooth, there is a possible null pointer dereference due to a missing null check. This could lead to remote denial of service with no additiona…

Mitigation only
Fix from $1,950 2019-09-27
Android MEDIUM 6.5
CVE-2019-9372

In libskia, there is a possible crash due to a missing null check. This could lead to remote denial of service with no additional execution privilege…

Mitigation only
Fix from $1,600 2019-09-27
Android HIGH 7.5
CVE-2019-9279

In the wifi hotspot service, there is a possible denial of service due to a null pointer dereference. This could lead to remote denial of service wit…

Mitigation only
Fix from $1,950 2019-09-27
Subversion HIGH 7.5
CVE-2019-0203

In Apache Subversion versions up to and including 1.9.10, 1.10.4, 1.12.0, Subversion's svnserve server process may exit when a client sends certain s…

Fix: after 1.11.1
Fix from $1,950 2019-09-26
HTTP Server HIGH 7.2
CVE-2019-10097EPSS 53%

In Apache HTTP Server 2.4.32-2.4.39, when mod_remoteip was configured to use a trusted intermediary proxy server using the "PROXY" protocol, a specia…

Fix: after 17.3
Fix from $1,950 2019-09-26
Ios Xe HIGH 7.5
CVE-2019-12654

A vulnerability in the common Session Initiation Protocol (SIP) library of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attac…

Mitigation only
Fix from $1,950 2019-09-25
Ios Xe HIGH 7.5
CVE-2019-12647

A vulnerability in the Ident protocol handler of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to cause an affected d…

Mitigation only
Fix from $1,950 2019-09-25
Riot HIGH 7.5
CVE-2019-16754

RIOT 2019.07 contains a NULL pointer dereference in the MQTT-SN implementation (asymcute), potentially allowing an attacker to crash a network node r…

Patch available
Fix from $1,950 2019-09-24
Linux MEDIUM 6.5
CVE-2019-13542

3S-Smart Software Solutions GmbH CODESYS V3 OPC UA Server, all versions 3.5.11.0 to 3.5.15.0, allows an attacker to send crafted requests from a trus…

Fix: 3.5.15.0+
Fix from $1,600 2019-09-17