Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Android MEDIUM 6.5
CVE-2017-13235

A other vulnerability in the Android media framework (n/a). Product: Android. Versions: 7.0, 7.1.1, 7.1.2, 8.0, 8.1. ID: A-68342866.

No fix yet
Fix from $1,600 2018-02-12
Carbon Black HIGH 7.5
CVE-2016-9570

cb.exe in Carbon Black 5.1.1.60603 allows attackers to cause a denial of service (out-of-bounds read, invalid pointer dereference, and application cr…

Mitigation only
Fix from $1,950 2018-02-12
Debian Linux HIGH 7.5
CVE-2018-1000027EPSS 13%

The Squid Software Foundation Squid HTTP Caching Proxy version prior to version 4.0.23 contains a NULL Pointer Dereference vulnerability in HTTP Resp…

Fix: 4.0.23+
Fix from $1,950 2018-02-09
Small Footprint Cim Broker HIGH 7.5
CVE-2018-6644

SBLIM Small Footprint CIM Broker (SFCB) 1.4.9 has a null pointer (DoS) vulnerability via a crafted POST request to the /cimom URI.

No fix yet
Fix from $1,950 2018-02-08
Ccn Lite CRITICAL 9.8
CVE-2017-12472

ccnl-ext-mgmt.c in CCN-lite before 2.00 allows context-dependent attackers to have unspecified impact by leveraging missing NULL pointer checks after…

Fix: 2.0.0+
Fix from $2,300 2018-02-07
Ccn Lite HIGH 7.5
CVE-2017-12464

ccn-lite-valid.c in CCN-lite before 2.00 allows context-dependent attackers to cause a denial of service (NULL pointer dereference) via vectors invol…

Fix: 2.0.0+
Fix from $1,950 2018-02-07
Sophos Tester MEDIUM 5.5
CVE-2018-6319

In Sophos Tester Tool 3.2.0.7 Beta, the driver accepts a special DeviceIoControl code that doesn't check its argument. This argument is a memory addr…

Mitigation only
Fix from $1,600 2018-02-02
Graphics Driver HIGH 7.8
CVE-2017-5727

Pointer dereference in subsystem in Intel Graphics Driver 15.40.x.x, 15.45.x.x, 15.46.x.x allows unprivileged user to elevate privileges via local ac…

Mitigation only
Fix from $1,950 2018-02-02
Linux Kernel MEDIUM 5.9
CVE-2017-16914

The "stub_send_ret_submit()" function (drivers/usb/usbip/stub_tx.c) in the Linux Kernel before version 4.14.8, 4.9.71, 4.1.49, and 4.4.107 allows att…

Fix: 4.1.49 / 4.4.107+
Fix from $1,600 2018-01-31
Linux Kernel HIGH 7.8
CVE-2017-18079

drivers/input/serio/i8042.c in the Linux kernel before 4.12.4 allows attackers to cause a denial of service (NULL pointer dereference and system cras…

Fix: 3.2.94 / 3.16.49+
Fix from $1,950 2018-01-29
Debian Linux HIGH 7.5
CVE-2017-12380EPSS 5%

ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of…

Fix: after 0.99.2
Fix from $1,950 2018-01-26
Ubuntu Linux HIGH 7.5
CVE-2018-6197

w3m through 0.5.3 is prone to a NULL pointer dereference flaw in formUpdateBuffer in form.c.

Fix: after 0.5.3
Fix from $1,950 2018-01-25
Debian Linux HIGH 7.5
CVE-2016-10708EPSS 16%

sshd in OpenSSH before 7.4 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an out-of-sequence NE…

Fix: 7.4+
Fix from $1,950 2018-01-21
Tinysvcmdns HIGH 7.5
CVE-2017-12130

An exploitable NULL pointer dereference vulnerability exists in the tinysvcmdns library version 2017-11-05. A specially crafted packet can make the l…

No fix yet
Fix from $1,950 2018-01-20
Kerberos MEDIUM 6.5
CVE-2018-5710

An issue was discovered in MIT Kerberos 5 (aka krb5) through 1.16. The pre-defined function "strlen" is getting a "NULL" string as a parameter value …

Fix: after 5-1.16
Fix from $1,600 2018-01-16
Linux Kernel MEDIUM 5.5
CVE-2018-5333EPSS 8%

In the Linux kernel through 4.14.13, the rds_cmsg_atomic function in net/rds/rdma.c mishandles cases where page pinning fails or an invalid address i…

Fix: after 4.14.13
Fix from $1,600 2018-01-11
Podofo HIGH 7.8
CVE-2018-5308

PoDoFo 0.9.5 does not properly validate memcpy arguments in the PdfMemoryOutputStream::Write function (base/PdfOutputStream.cpp). Remote attackers co…

No fix yet
Fix from $1,950 2018-01-09
Debian Linux CRITICAL 9.8
CVE-2018-5206

When the channel topic is set without specifying a sender, Irssi before 1.0.6 may dereference a NULL pointer.

Fix: 1.0.6+
Fix from $2,300 2018-01-06
Webaccess HIGH 7.5
CVE-2017-16728

An Untrusted Pointer Dereference issue was discovered in Advantech WebAccess versions prior to 8.3. There are multiple vulnerabilities that may allow…

Fix: 8.3+
Fix from $1,950 2018-01-05
Chrome MEDIUM 6.5
CVE-2017-1000460

In line libavcodec/h264dec.c:500 in libav(v13_dev0), ffmpeg(n3.4), chromium(56 prior Feb 13, 2017), the return value of init_get_bits is ignored and …

Fix: after 56.0.2924
Fix from $1,600 2018-01-03
Goahead CRITICAL 9.8
CVE-2017-1000471EPSS 9%

EmbedThis GoAhead Webserver version 4.0.0 is vulnerable to a NULL pointer dereference in the CGI handler resulting in memory corruption or denial of …

Patch available
Fix from $2,300 2018-01-03
Debian Linux MEDIUM 6.5
CVE-2017-1000445

ImageMagick 7.0.7-1 and older version are vulnerable to null pointer dereference in the MagickCore component and might lead to denial of service

Fix: 6.9.9-15+
Fix from $1,600 2018-01-02
Libtiff MEDIUM 6.5
CVE-2017-18013

In LibTIFF 4.0.9, there is a Null-Pointer Dereference in the tif_print.c TIFFPrintDirectory function, as demonstrated by a tiffinfo crash.

Patch available
Fix from $1,600 2018-01-01
Debian Linux MEDIUM 5.5
CVE-2017-18005

Exiv2 0.26 has a Null Pointer Dereference in the Exiv2::DataValue::toLong function in value.cpp, related to crafted metadata in a TIFF file.

No fix yet
Fix from $1,600 2017-12-31
Wireshark HIGH 7.5
CVE-2017-17997

In Wireshark before 2.2.12, the MRDISC dissector misuses a NULL pointer and crashes. This was addressed in epan/dissectors/packet-mrdisc.c by validat…

Fix: after 2.2.11
Fix from $1,950 2017-12-30
Ffmpeg MEDIUM 6.5
CVE-2017-9608

The dnxhd decoder in FFmpeg before 3.2.6, and 3.3.x before 3.3.3 allows remote attackers to cause a denial of service (NULL pointer dereference) via …

Fix: 3.2.6 / 3.3.3+
Fix from $1,600 2017-12-27
Ubuntu Linux MEDIUM 5.5
CVE-2017-17819

In Netwide Assembler (NASM) 2.14rc0, there is an illegal address access in the function find_cc() in asm/preproc.c that will cause a remote denial of…

Patch available
Fix from $1,600 2017-12-21
Antivirus CRITICAL 9.8
CVE-2017-17699

K7Sentry.sys 15.1.0.59 in K7 Antivirus 15.1.0309 has a NULL pointer dereference via a 0x950025ac DeviceIoControl request.

No fix yet
Fix from $2,300 2017-12-15
Antivirus CRITICAL 9.8
CVE-2017-17700

K7Sentry.sys 15.1.0.59 in K7 Antivirus 15.1.0309 has a NULL pointer dereference via a 0x950025a4 DeviceIoControl request.

No fix yet
Fix from $2,300 2017-12-15
Antivirus CRITICAL 9.8
CVE-2017-17701

K7Sentry.sys 15.1.0.59 in K7 Antivirus 15.1.0309 has a NULL pointer dereference via a 0x950025c8 DeviceIoControl request.

No fix yet
Fix from $2,300 2017-12-15