Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Linux Kernel MEDIUM 6.6
CVE-2017-16647

drivers/net/usb/asix_devices.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (NULL pointer dereference and syst…

Fix: after 4.13.11
Fix from $1,600 2017-11-07
Mongoose HIGH 7.5
CVE-2017-2893EPSS 25%

An exploitable NULL pointer dereference vulnerability exists in the MQTT packet parsing functionality of Cesanta Mongoose 6.8. An MQTT SUBSCRIBE pack…

No fix yet
Fix from $1,950 2017-11-07
Webaccess HIGH 7.5
CVE-2017-12719

An Untrusted Pointer Dereference issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. A remote attacker is able to execute co…

Fix: 8.2_20170817+
Fix from $1,950 2017-11-06
Linux Kernel MEDIUM 5.5
CVE-2017-15306

The kvm_vm_ioctl_check_extension function in arch/powerpc/kvm/powerpc.c in the Linux kernel before 4.13.11 allows local users to cause a denial of se…

Fix: after 4.13.10
Fix from $1,600 2017-11-06
Graphicsmagick HIGH 8.8
CVE-2017-16545

The ReadWPGImage function in coders/wpg.c in GraphicsMagick 1.3.26 does not properly validate colormapped images, which allows remote attackers to ca…

Patch available
Fix from $1,950 2017-11-05
Linux Kernel MEDIUM 6.6
CVE-2017-16532

The get_endpoints function in drivers/usb/misc/usbtest.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (NULL po…

Fix: 3.2.95 / 3.16.50+
Fix from $1,600 2017-11-04
Linux Kernel MEDIUM 6.6
CVE-2017-16536

The cx231xx_usb_probe function in drivers/media/usb/cx231xx/cx231xx-cards.c in the Linux kernel through 4.13.11 allows local users to cause a denial …

Fix: after 4.13.11
Fix from $1,600 2017-11-04
Linux Kernel MEDIUM 6.6
CVE-2017-16537

The imon_probe function in drivers/media/rc/imon.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (NULL pointer …

Fix: after 4.13.7
Fix from $1,600 2017-11-04
Radare2 MEDIUM 5.5
CVE-2017-16359

In radare 2.0.1, a pointer wraparound vulnerability exists in store_versioninfo_gnu_verdef() in libr/bin/format/elf/elf.c.

Patch available
Fix from $1,600 2017-11-01
Anti Malware HIGH 7.5
CVE-2017-15920EPSS 8%

In Watchdog Anti-Malware 2.74.186.150 and Online Security Pro 2.74.186.150, the zam32.sys driver contains a NULL pointer dereference vulnerability th…

No fix yet
Fix from $1,950 2017-10-30
Anti Malware HIGH 7.5
CVE-2017-15921EPSS 8%

In Watchdog Anti-Malware 2.74.186.150 and Online Security Pro 2.74.186.150, the zam32.sys driver contains a NULL pointer dereference vulnerability th…

No fix yet
Fix from $1,950 2017-10-30
Qemu MEDIUM 6.0
CVE-2015-7549

The MSI-X MMIO support in hw/pci/msix.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (NULL pointe…

Fix: 2.5.0+
Fix from $1,600 2017-10-30
Debian Linux MEDIUM 5.5
CVE-2017-15955

bchunk (related to BinChunker) 1.2.0 and 1.2.1 is vulnerable to an "Access violation near NULL on destination operand" and crash when processing a ma…

Patch available
Fix from $1,600 2017-10-28
Binutils MEDIUM 5.5
CVE-2017-15939

dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, mishandles NULL files in a .debug_line file t…

Patch available
Fix from $1,600 2017-10-27
Debian Linux HIGH 8.8
CVE-2017-15930

In ReadOneJNGImage in coders/png.c in GraphicsMagick 1.3.26, a Null Pointer Dereference occurs while transferring JPEG scanlines, related to a PixelP…

Patch available
Fix from $1,950 2017-10-27
Debian Linux HIGH 7.5
CVE-2017-15721

In Irssi before 1.0.5, certain incorrectly formatted DCC CTCP messages could cause a NULL pointer dereference. This is a separate, but similar, issue…

Fix: after 1.0.4
Fix from $1,950 2017-10-22
Debian Linux HIGH 7.5
CVE-2017-15723

In Irssi before 1.0.5, overlong nicks or targets may result in a NULL pointer dereference while splitting the message.

Fix: after 1.0.4
Fix from $1,950 2017-10-22
Libextractor HIGH 7.5
CVE-2017-15600

In GNU Libextractor 1.4, there is a NULL Pointer Dereference in the EXTRACTOR_nsf_extract_method function of plugins/nsf_extractor.c.

No fix yet
Fix from $1,950 2017-10-18
Android HIGH 7.5
CVE-2014-3164

cmds/servicemanager/service_manager.c in Android before commit 7d42a3c31ba78a418f9bdde0e0ab951469f321b5 allows attackers to cause a denial of service…

Fix: after 4.4.4
Fix from $1,950 2017-10-18
Debian Linux HIGH 8.8
CVE-2017-15565

In Poppler 0.59.0, a NULL Pointer Dereference exists in the GfxImageColorMap::getGrayLine() function in GfxState.cc via a crafted PDF document.

No fix yet
Fix from $1,950 2017-10-17
Linux Kernel MEDIUM 5.5
CVE-2017-15299

The KEYS subsystem in the Linux kernel through 4.13.7 mishandles use of add_key for a key that already exists but is uninstantiated, which allows loc…

Fix: after 4.13.6
Fix from $1,600 2017-10-14
SQLite HIGH 7.5
CVE-2017-15286

SQLite 3.20.1 has a NULL pointer dereference in tableColumnList in shell.c because it fails to consider certain cases where `sqlite3_step(pStmt)==SQL…

No fix yet
Fix from $1,950 2017-10-12
Linux Kernel MEDIUM 5.5
CVE-2017-12192

The keyctl_read_key function in security/keys/keyctl.c in the Key Management subcomponent in the Linux kernel before 4.13.5 does not properly conside…

Fix: after 4.13.4
Fix from $1,600 2017-10-12
Linux Kernel MEDIUM 5.5
CVE-2017-15274

security/keys/keyctl.c in the Linux kernel before 4.11.5 does not consider the case of a NULL payload in conjunction with a nonzero length value, whi…

Fix: after 4.11.4
Fix from $1,600 2017-10-12
Libextractor HIGH 7.5
CVE-2017-15267

In GNU Libextractor 1.4, there is a NULL Pointer Dereference in flac_metadata in flac_extractor.c.

No fix yet
Fix from $1,950 2017-10-11
Libjpeg Turbo MEDIUM 6.5
CVE-2017-15232

libjpeg-turbo 1.5.2 has a NULL Pointer Dereference in jdpostct.c and jquant1.c via a crafted JPEG file.

Patch available
Fix from $1,600 2017-10-11
Android MEDIUM 5.9
CVE-2017-11063

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, as a result of a race condition betwe…

Mitigation only
Fix from $1,600 2017-10-10
Libcsoap HIGH 7.5
CVE-2015-2297

nanohttp in libcsoap allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted Authorizatio…

Mitigation only
Fix from $1,950 2017-10-06
Upx HIGH 7.8
CVE-2017-15056

p_lx_elf.cpp in UPX 3.94 mishandles ELF headers, which allows remote attackers to cause a denial of service (application crash) or possibly have unsp…

Patch available
Fix from $1,950 2017-10-06
Ubuntu Linux HIGH 8.8
CVE-2017-15017

ImageMagick 7.0.7-0 Q16 has a NULL pointer dereference vulnerability in ReadOneMNGImage in coders/png.c.

Patch available
Fix from $1,950 2017-10-05