Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Mdm9206 Firmware HIGH 7.8
CVE-2017-18298

Lack of Input Validation in SDMX API can lead to NULL pointer access in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in versions MDM9…

Mitigation only
Fix from $1,950 2018-10-23
Xpdf MEDIUM 5.5
CVE-2018-18457

The function DCTStream::readScan in Stream.cc in Xpdf 4.00 allows remote attackers to cause a denial of service (NULL pointer dereference) via a craf…

Mitigation only
Fix from $1,600 2018-10-18
Xpdf MEDIUM 5.5
CVE-2018-18458

The function DCTStream::decodeImage in Stream.cc in Xpdf 4.00 allows remote attackers to cause a denial of service (NULL pointer dereference) via a c…

Mitigation only
Fix from $1,600 2018-10-18
Xpdf MEDIUM 5.5
CVE-2018-18459

The function DCTStream::getBlock in Stream.cc in Xpdf 4.00 allows remote attackers to cause a denial of service (NULL pointer dereference) via a craf…

Mitigation only
Fix from $1,600 2018-10-18
Laquis Scada CRITICAL 9.8
CVE-2018-17893EPSS 6%

LAquis SCADA Versions 4.1.0.3870 and prior has an untrusted pointer dereference vulnerability, which may allow remote code execution.

Fix: after 4.1.0.3870
Fix from $2,300 2018-10-17
Goldengate HIGH 7.5
CVE-2018-2912

Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate (subcomponent: Manager). Supported versions that are affected are 12.1.2.1.0, 1…

Patch available
Fix from $1,950 2018-10-17
Goldengate HIGH 7.5
CVE-2018-2914

Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate (subcomponent: Manager). Supported versions that are affected are 12.1.2.1.0, 1…

Patch available
Fix from $1,950 2018-10-17
360 Mobile Phone N6 Pro Firmware HIGH 7.5
CVE-2018-18318

The /dev/block/mmcblk0rpmb driver kernel module on Qiku 360 Phone N6 Pro 1801-A01 devices allows attackers to cause a denial of service (NULL pointer…

No fix yet
Fix from $1,950 2018-10-15
Acrobat Dc HIGH 7.8
CVE-2018-15937EPSS 28%

Adobe Acrobat and Reader versions 2018.011.20063 and earlier, 2017.011.30102 and earlier, and 2015.006.30452 and earlier have an untrusted pointer de…

Fix: after 18.011.20063
Fix from $1,950 2018-10-12
Acrobat Dc HIGH 7.8
CVE-2018-15930EPSS 28%

Adobe Acrobat and Reader versions 2018.011.20063 and earlier, 2017.011.30102 and earlier, and 2015.006.30452 and earlier have an untrusted pointer de…

Fix: after 18.011.20063
Fix from $1,950 2018-10-12
Acrobat Dc HIGH 7.8
CVE-2018-15931EPSS 28%

Adobe Acrobat and Reader versions 2018.011.20063 and earlier, 2017.011.30102 and earlier, and 2015.006.30452 and earlier have an untrusted pointer de…

Fix: after 18.011.20063
Fix from $1,950 2018-10-12
Enterprise Developer HIGH 7.5
CVE-2018-12469

Incorrect handling of an invalid value for an HTTP request parameter by Directory Server (aka Enterprise Server Administration web UI) in Micro Focus…

Fix: after 2.3
Fix from $1,950 2018-10-12
Wireshark HIGH 7.5
CVE-2018-18227

In Wireshark 2.6.0 to 2.6.3 and 2.4.0 to 2.4.9, the MS-WSP protocol dissector could crash. This was addressed in epan/dissectors/packet-mswsp.c by pr…

Fix: after 2.6.3
Fix from $1,950 2018-10-12
Junos HIGH 7.5
CVE-2018-0049

A NULL Pointer Dereference vulnerability in Juniper Networks Junos OS allows an attacker to cause the Junos OS kernel to crash. Continued receipt of …

Mitigation only
Fix from $1,950 2018-10-10
Libgig MEDIUM 6.5
CVE-2018-18192

An issue was discovered in libgig 4.1.0. There is a NULL pointer dereference in the function DLS::File::GetFirstSample() in DLS.cpp.

No fix yet
Fix from $1,600 2018-10-09
Debian Linux MEDIUM 6.5
CVE-2018-18088

OpenJPEG 2.3.0 has a NULL pointer dereference for "red" in the imagetopnm function of jp2/convert.c

No fix yet
Fix from $1,600 2018-10-09
Debian Linux MEDIUM 6.5
CVE-2018-18065EPSS 17%

_set_key in agent/helpers/table_container.c in Net-SNMP before 5.8 has a NULL Pointer Exception bug that can be used by an authenticated attacker to …

Fix: 5.8+
Fix from $1,600 2018-10-08
Net Snmp HIGH 7.5
CVE-2018-18066

snmp_oid_compare in snmplib/snmp_api.c in Net-SNMP before 5.8 has a NULL Pointer Exception bug that can be used by an unauthenticated attacker to rem…

Fix: 5.8+
Fix from $1,950 2018-10-08
Binutils MEDIUM 6.5
CVE-2018-17794

An issue was discovered in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31. There is a NULL pointer dereference in work_stuff_copy_…

Mitigation only
Fix from $1,600 2018-09-30
FreeBSD MEDIUM 5.5
CVE-2018-6925

In FreeBSD before 11.2-STABLE(r338986), 11.2-RELEASE-p4, 11.1-RELEASE-p15, 10.4-STABLE(r338985), and 10.4-RELEASE-p13, due to improper maintenance of…

Fix: 11.2+
Fix from $1,600 2018-09-28
FreeBSD MEDIUM 5.5
CVE-2018-17154

In FreeBSD before 11.2-STABLE(r338987), 11.2-RELEASE-p4, and 11.1-RELEASE-p15, due to insufficient memory checking in the freebsd4_getfsstat system c…

Fix: 11.2+
Fix from $1,600 2018-09-28
V Server Firmware CRITICAL 9.8
CVE-2018-14811

Fuji Electric V-Server 4.0.3.0 and prior, Multiple untrusted pointer dereference vulnerabilities have been identified, which may allow remote code ex…

Fix: after 4.0.3.0
Fix from $2,300 2018-09-26
Hdf5 MEDIUM 6.5
CVE-2018-17432

A NULL pointer dereference in H5O_sdspace_encode() in H5Osdspace.c in the HDF HDF5 through 1.10.3 library allows attackers to cause a denial of servi…

Fix: after 1.10.3
Fix from $1,600 2018-09-24
Webassembly Virtual Machine HIGH 8.8
CVE-2018-17293

An issue was discovered in WAVM before 2018-09-16. The run function in Programs/wavm/wavm.cpp does not check whether there is Emscripten memory to st…

Fix: 2018-09-16+
Fix from $1,950 2018-09-21
Exiv2 MEDIUM 6.5
CVE-2018-17282

An issue was discovered in Exiv2 v0.26. The function Exiv2::DataValue::copy in value.cpp has a NULL pointer dereference.

No fix yet
Fix from $1,600 2018-09-20
Fsm9055 Firmware MEDIUM 5.5
CVE-2017-18301

In Small Cell SoC and Snapdragon (Automobile, Mobile, Wear) in version FSM9055, FSM9955, MDM9607, MDM9640, MDM9650, MSM8909W, SD 425, SD 427, SD 430,…

Mitigation only
Fix from $1,600 2018-09-20
Android HIGH 7.8
CVE-2018-11904

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, asynchronous callbacks received a pointer…

Patch available
Fix from $1,950 2018-09-19
Net HIGH 7.5
CVE-2018-17142

The html package (aka x/net/html) through 2018-09-17 in Go mishandles <math><template><mo><template>, leading to a "panic: runtime error" in parseCur…

Fix: after 2018-09-17
Fix from $1,950 2018-09-17
Gt Ac5300 Firmware HIGH 7.5
CVE-2018-17127

blocking_request.cgi on ASUS GT-AC5300 devices through 3.0.0.4.384_32738 allows remote attackers to cause a denial of service (NULL pointer dereferen…

Fix: after 3.0.0.4.384.32738
Fix from $1,950 2018-09-17
Bitmap HIGH 7.5
CVE-2018-17073

wernsey/bitmap before 2018-08-18 allows a NULL pointer dereference via a 4-bit image.

Fix: 2018-09-24+
Fix from $1,950 2018-09-16