Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Graphviz HIGH 8.8
CVE-2019-11023EPSS 5%

The agroot() function in cgraph\obj.c in libcgraph.a in Graphviz 2.39.20160612.1140 has a NULL pointer dereference, as demonstrated by graphml2gv.

No fix yet
Fix from $1,950 2019-04-08
Poppler MEDIUM 6.5
CVE-2019-10873

An issue was discovered in Poppler 0.74.0. There is a NULL pointer dereference in the function SplashClip::clipAALine at splash/SplashClip.cc.

No fix yet
Fix from $1,600 2019-04-05
Mac Os X HIGH 7.5
CVE-2018-4276

A null pointer dereference was addressed with improved validation. This issue affected versions prior to macOS High Sierra 10.13.6.

Fix: 10.13.6+
Fix from $1,950 2019-04-03
Debian Linux HIGH 7.5
CVE-2017-7655

In Eclipse Mosquitto version from 1.0 to 1.4.15, a Null Dereference vulnerability was found in the Mosquitto library which could lead to crashes for …

Fix: after 1.4.15
Fix from $1,950 2019-03-27
Libvirt MEDIUM 6.3
CVE-2019-3840

A NULL pointer dereference flaw was discovered in libvirt before version 5.0.0 in the way it gets interface information through the QEMU agent. An at…

Fix: 5.0.0+
Fix from $1,600 2019-03-27
Xpdf MEDIUM 5.5
CVE-2019-10022

An issue was discovered in Xpdf 4.01.01. There is a NULL pointer dereference in the function Gfx::opSetExtGState in Gfx.cc.

No fix yet
Fix from $1,600 2019-03-25
Tar HIGH 7.5
CVE-2019-9923

pax_decode_header in sparse.c in GNU Tar before 1.32 had a NULL pointer dereference when parsing certain archives that have malformed extended header…

Fix: 1.32+
Fix from $1,950 2019-03-22
SQLite HIGH 7.5
CVE-2019-9937EPSS 6%

In SQLite 3.27.2, interleaving reads and writes in a single transaction with an fts5 virtual table will lead to a NULL Pointer Dereference in fts5Chu…

Patch available
Fix from $1,950 2019-03-22
Libredwg HIGH 7.5
CVE-2019-9779

An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a NULL pointer dereference in the function dwg_dxf_LTYPE at dwg.spec (earlier than…

No fix yet
Fix from $1,950 2019-03-14
Libredwg HIGH 7.5
CVE-2019-9771

An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a NULL pointer dereference in the function bit_convert_TU at bits.c.

No fix yet
Fix from $1,950 2019-03-14
Libredwg HIGH 7.5
CVE-2019-9772

An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a NULL pointer dereference in the function dwg_dxf_LEADER at dwg.spec.

No fix yet
Fix from $1,950 2019-03-14
Libredwg HIGH 7.5
CVE-2019-9776

An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a NULL pointer dereference in the function dwg_dxf_LTYPE at dwg.spec (later than C…

No fix yet
Fix from $1,950 2019-03-14
Libwebm HIGH 7.5
CVE-2019-9746

In libwebm before 2019-03-08, a NULL pointer dereference caused by the functions OutputCluster and OutputTracks in webm_info.cc will trigger an abort…

Fix: after 1.0.0.27
Fix from $1,950 2019-03-13
Fedora MEDIUM 5.5
CVE-2019-9704

Vixie Cron before the 3.0pl1-133 Debian package allows local users to cause a denial of service (daemon crash) via a large crontab file because the c…

Fix: 3.0pl1-133+
Fix from $1,600 2019-03-12
Debian Linux HIGH 8.8
CVE-2019-9656

An issue was discovered in LibOFX 0.9.14. There is a NULL pointer dereference in the function OFXApplication::startElement in the file lib/ofx_sgml.c…

No fix yet
Fix from $1,950 2019-03-11
Dns Library HIGH 7.5
CVE-2018-17419

An issue was discovered in setTA in scan_rr.go in the Miek Gieben DNS library before 1.0.10 for Go. A dns.ParseZone() parsing error causes a segmenta…

Fix: 1.0.10+
Fix from $1,950 2019-03-07
Xpdfreader HIGH 7.8
CVE-2019-9589

There is a NULL pointer dereference vulnerability in PSOutputDev::setupResources() located in PSOutputDev.cc in Xpdf 4.01. It can be triggered by sen…

No fix yet
Fix from $1,950 2019-03-06
Linux Kernel MEDIUM 5.5
CVE-2019-9213EPSS 6%

In the Linux kernel before 4.20.14, expand_downwards in mm/mmap.c lacks a check for the mmap minimum address, which makes it easier for attackers to …

Fix: 4.9.162 / 4.14.105+
Fix from $1,600 2019-03-05
Wireshark HIGH 7.5
CVE-2019-9208

In Wireshark 2.4.0 to 2.4.12 and 2.6.0 to 2.6.6, the TCAP dissector could crash. This was addressed in epan/dissectors/asn1/tcap/tcap.cnf by avoiding…

Fix: after 2.6.6
Fix from $1,950 2019-02-28
Wireshark HIGH 7.5
CVE-2019-9214

In Wireshark 2.4.0 to 2.4.12 and 2.6.0 to 2.6.6, the RPCAP dissector could crash. This was addressed in epan/dissectors/packet-rpcap.c by avoiding an…

Fix: after 2.6.6
Fix from $1,950 2019-02-28
Gpu Driver HIGH 7.8
CVE-2019-5667

NVIDIA Windows GPU Display Driver contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiSetRootPageTable in which the a…

Patch available
Fix from $1,950 2019-02-27
Gpu Driver HIGH 7.8
CVE-2019-5668

NVIDIA Windows GPU Display Driver contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiSubmitCommandVirtual in which t…

Patch available
Fix from $1,950 2019-02-27
Fedora HIGH 8.8
CVE-2019-9199

PoDoFo::Impose::PdfTranslator::setSource() in pdftranslator.cpp in PoDoFo 0.9.6 has a NULL pointer dereference that can (for example) be triggered by…

Patch available
Fix from $1,950 2019-02-26
Ming HIGH 8.8
CVE-2019-9113

Ming (aka libming) 0.4.8 has a NULL pointer dereference in the function getString() in the decompile.c file in libutil.a.

No fix yet
Fix from $1,950 2019-02-25
Libvterm HIGH 7.5
CVE-2018-20786

libvterm through 0+bzr726, as used in Vim and other products, mishandles certain out-of-memory conditions, leading to a denial of service (applicatio…

Fix: after 0
Fix from $1,950 2019-02-24
Matio HIGH 7.5
CVE-2019-9031

An issue was discovered in libmatio.a in matio (aka MAT File I/O Library) 1.5.13. There is a NULL pointer dereference in the function Mat_VarFree() i…

No fix yet
Fix from $1,950 2019-02-23
Mi Mix 2 Firmware MEDIUM 5.5
CVE-2019-8413

On Xiaomi MIX 2 devices with the 4.4.78 kernel, a NULL pointer dereference in the ioctl interface of the device file /dev/elliptic1 or /dev/elliptic0…

No fix yet
Fix from $1,600 2019-02-17
Fedora HIGH 7.8
CVE-2019-8376

An issue was discovered in Tcpreplay 4.3.1. A NULL pointer dereference occurred in the function get_layer4_v6() located at get.c. This can be trigger…

No fix yet
Fix from $1,950 2019-02-17
Fedora HIGH 7.8
CVE-2019-8377

An issue was discovered in Tcpreplay 4.3.1. A NULL pointer dereference occurred in the function get_ipv6_l4proto() located at get.c. This can be trig…

No fix yet
Fix from $1,950 2019-02-17
Debian Linux HIGH 7.8
CVE-2019-8379

An issue was discovered in AdvanceCOMP through 2.1. A NULL pointer dereference exists in the function be_uint32_read() located in endianrw.h. It can …

Fix: 2.1+
Fix from $1,950 2019-02-17