Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Xen MEDIUM 6.5
CVE-2017-14318

An issue was discovered in Xen 4.5.x through 4.9.x. The function `__gnttab_cache_flush` handles GNTTABOP_cache_flush grant table operations. It check…

Patch available
Fix from $1,600 2017-09-12
Ffmpeg HIGH 8.8
CVE-2017-14225

The av_color_primaries_name function in libavutil/pixdesc.c in FFmpeg 3.3.3 may return a NULL pointer depending on a value contained in a file, but c…

Patch available
Fix from $1,950 2017-09-09
Ubuntu Linux MEDIUM 5.5
CVE-2017-14228

In Netwide Assembler (NASM) 2.14rc0, there is an illegal address access in the function paste_tokens() in preproc.c, aka a NULL pointer dereference. …

No fix yet
Fix from $1,600 2017-09-09
Aacplusenc HIGH 7.8
CVE-2017-14181

DeleteBitBuffer in libbitbuf/bitbuffer.c in mp4tools aacplusenc 0.17.5 allows remote attackers to cause a denial of service (invalid memory write, SE…

No fix yet
Fix from $1,950 2017-09-07
Bento4 MEDIUM 5.5
CVE-2017-12474

The AP4_AtomSampleTable::GetSample function in Core/Ap4AtomSampleTable.cpp in Bento4 mp42ts before 1.5.0-616 allows remote attackers to cause a denia…

Fix: after 1.5.0-615
Fix from $1,600 2017-09-06
Bento4 MEDIUM 5.5
CVE-2017-12475

The AP4_Processor::Process function in Core/Ap4Processor.cpp in Bento4 mp4encrypt before 1.5.0-616 allows remote attackers to cause a denial of servi…

Fix: after 1.5.0-615
Fix from $1,600 2017-09-06
Bento4 MEDIUM 5.5
CVE-2017-12476

The AP4_AvccAtom::InspectFields function in Core/Ap4AvccAtom.cpp in Bento4 mp4dump before 1.5.0-616 allows remote attackers to cause a denial of serv…

Fix: after 1.5.0-615
Fix from $1,600 2017-09-06
Goahead HIGH 7.5
CVE-2017-14149EPSS 6%

GoAhead 3.4.0 through 3.6.5 has a NULL Pointer Dereference in the websDecodeUrl function in http.c, leading to a crash for a "POST / HTTP/1.1" reques…

No fix yet
Fix from $1,950 2017-09-05
Debian Linux MEDIUM 5.5
CVE-2017-14121

The DecodeNumber function in unrarlib.c in unrar 0.0.1 (aka unrar-free or unrar-gpl) suffers from a NULL pointer dereference flaw triggered by a craf…

Mitigation only
Fix from $1,600 2017-09-03
Ubuntu Linux MEDIUM 6.5
CVE-2017-14060

In ImageMagick 7.0.6-10, a NULL Pointer Dereference issue is present in the ReadCUTImage function in coders/cut.c that could allow an attacker to cau…

Patch available
Fix from $1,600 2017-08-31
Openjpeg MEDIUM 6.5
CVE-2016-10505

NULL pointer dereference vulnerabilities in the imagetopnm function in convert.c, sycc444_to_rgb function in color.c, color_esycc_to_rgb function in …

Fix: after 2.1.2
Fix from $1,600 2017-08-30
Wireshark HIGH 7.5
CVE-2017-13764

In Wireshark 2.4.0, the Modbus dissector could crash with a NULL pointer dereference. This was addressed in epan/dissectors/packet-mbtcp.c by adding …

Patch available
Fix from $1,950 2017-08-30
Debian Linux MEDIUM 6.5
CVE-2017-13768

Null Pointer Dereference in the IdentifyImage function in MagickCore/identify.c in ImageMagick through 7.0.6-10 allows an attacker to perform denial …

Fix: 6.9.9-11+
Fix from $1,600 2017-08-30
Libgig MEDIUM 6.5
CVE-2017-12950EPSS 5%

The gig::Region::Region function in gig.cpp in libgig 4.0.0 allows remote attackers to cause a denial of service (NULL pointer dereference and applic…

No fix yet
Fix from $1,600 2017-08-28
Libgig MEDIUM 6.5
CVE-2017-12952

The LoadString function in helper.h in libgig 4.0.0 allows remote attackers to cause a denial of service (NULL pointer dereference and application cr…

No fix yet
Fix from $1,600 2017-08-28
Lame HIGH 7.5
CVE-2017-13712

NULL Pointer Dereference in the id3v2AddAudioDuration function in libmp3lame/id3tag.c in LAME 3.99.5 allows attackers to perform Denial of Service by…

Mitigation only
Fix from $1,950 2017-08-28
Libfpx MEDIUM 6.5
CVE-2017-12920

CDirectory::GetDirEntry in dir.cxx in libfpx 1.3.1_p6 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted f…

Mitigation only
Fix from $1,600 2017-08-28
Libfpx MEDIUM 6.5
CVE-2017-12921

PFileFlashPixView::GetGlobalInfoProperty in f_fpxvw.cpp in libfpx 1.3.1_p6 allows remote attackers to cause a denial of service (NULL pointer derefer…

Mitigation only
Fix from $1,600 2017-08-28
Libfpx MEDIUM 6.5
CVE-2017-12922

wchar.c in libfpx 1.3.1_p6 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted fpx image.

Mitigation only
Fix from $1,600 2017-08-28
Libfpx MEDIUM 6.5
CVE-2017-12923

OLEStream::WriteVT_LPSTR in olestrm.cpp in libfpx 1.3.1_p6 allows remote attackers to cause a denial of service (NULL pointer dereference) via a craf…

Mitigation only
Fix from $1,600 2017-08-28
Libhtp HIGH 7.5
CVE-2015-0928

libhtp 0.5.15 allows remote attackers to cause a denial of service (NULL pointer dereference).

Mitigation only
Fix from $1,950 2017-08-28
Binutils HIGH 7.5
CVE-2017-13710

The setup_group function in elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attack…

Mitigation only
Fix from $1,950 2017-08-27
Linux Kernel HIGH 7.8
CVE-2017-13686

net/ipv4/route.c in the Linux kernel 4.13-rc1 through 4.13-rc6 is too late to check for a NULL fi field when RTM_F_FIB_MATCH is set, which allows loc…

Patch available
Fix from $1,950 2017-08-24
Onos HIGH 7.5
CVE-2015-7516

ONOS before 1.5.0 when using the ifwd app allows remote attackers to cause a denial of service (NULL pointer dereference and switch disconnect) by se…

Fix: after 1.4.0
Fix from $1,950 2017-08-24
Debian Linux MEDIUM 6.5
CVE-2017-12809

QEMU (aka Quick Emulator), when built with the IDE disk and CD/DVD-ROM Emulator support, allows local guest OS privileged users to cause a denial of …

Fix: after 2.9.1
Fix from $1,600 2017-08-23
Debian Linux MEDIUM 6.5
CVE-2017-13065

GraphicsMagick 1.3.26 has a NULL pointer dereference vulnerability in the function SVGStartElement in coders/svg.c.

Mitigation only
Fix from $1,600 2017-08-22
Android CRITICAL 9.8
CVE-2015-9072

In all Qualcomm products with Android releases from CAF using the Linux kernel, an untrusted pointer dereference can occur in a TrustZone syscall.

Mitigation only
Fix from $2,300 2017-08-18
Android CRITICAL 9.8
CVE-2015-9073

In all Qualcomm products with Android releases from CAF using the Linux kernel, an untrusted pointer dereference can occur in a TrustZone syscall.

Mitigation only
Fix from $2,300 2017-08-18
Android CRITICAL 9.8
CVE-2016-10344

In all Qualcomm products with Android releases from CAF using the Linux kernel, the use of an out-of-range pointer offset is potentially possible in …

No fix yet
Fix from $2,300 2017-08-18
Android CRITICAL 9.8
CVE-2015-8592

In all Qualcomm products with Android releases from CAF using the Linux kernel, a pointer is not validated prior to being dereferenced potentially re…

No fix yet
Fix from $2,300 2017-08-18