Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Android MEDIUM 5.5
CVE-2017-0686

A denial of service vulnerability in the Android media framework. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-34231231.

Mitigation only
Fix from $1,600 2017-07-06
Xen CRITICAL 9.1
CVE-2017-10917

Xen through 4.8.x does not validate the port numbers of polled event channel ports, which allows guest OS users to cause a denial of service (NULL po…

Fix: after 4.8.1
Fix from $2,300 2017-07-05
Libtasn1 HIGH 7.5
CVE-2017-10790

The _asn1_check_identifier function in GNU Libtasn1 through 4.12 causes a NULL pointer dereference and crash when reading crafted input that triggers…

Fix: after 4.12
Fix from $1,950 2017-07-02
Pspp MEDIUM 6.5
CVE-2017-10792

There is a NULL Pointer Dereference in the function ll_insert() of the libpspp library in GNU PSPP before 0.11.0. For example, a crash was observed w…

No fix yet
Fix from $1,600 2017-07-02
Debian Linux MEDIUM 6.5
CVE-2017-9988

The readEncUInt30 function in util/read.c in libming 0.4.8 mishandles memory allocation. A crafted input will lead to a remote denial of service (NUL…

No fix yet
Fix from $1,600 2017-06-28
Debian Linux MEDIUM 6.5
CVE-2017-9989

util/outputtxt.c in libming 0.4.8 mishandles memory allocation. A crafted input will lead to a remote denial of service (NULL pointer dereference) at…

No fix yet
Fix from $1,600 2017-06-28
Ubuntu Linux HIGH 7.5
CVE-2015-5180EPSS 6%

res_query in libresolv in glibc before 2.25 allows remote attackers to cause a denial of service (NULL pointer dereference and process crash).

Fix: after 2.24
Fix from $1,950 2017-06-27
Openvpn MEDIUM 6.5
CVE-2017-7522EPSS 6%

OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to denial-of-service by authenticated remote attacker via sending a certificate with a…

Fix: after 2.3.16
Fix from $1,600 2017-06-27
Ntopng HIGH 7.5
CVE-2017-7458

The NetworkInterface::getHost function in NetworkInterface.cpp in ntopng before 3.0 allows remote attackers to cause a denial of service (NULL pointe…

Fix: after 2.4
Fix from $1,950 2017-06-26
Lame MEDIUM 5.5
CVE-2015-9100

The fill_buffer_resample function in util.c in libmp3lame.a in LAME 3.99.5 allows remote attackers to cause a denial of service (NULL pointer derefer…

Mitigation only
Fix from $1,600 2017-06-25
HTTP Server CRITICAL 9.8
CVE-2017-3169EPSS 20%

In Apache httpd 2.2.x before 2.2.33 and 2.4.x before 2.4.26, mod_ssl may dereference a NULL pointer when third-party modules call ap_hook_process_con…

Mitigation only
Fix from $2,300 2017-06-20
Debian Linux MEDIUM 5.5
CVE-2017-9503

QEMU (aka Quick Emulator), when built with MegaRAID SAS 8708EM2 Host Bus Adapter emulation support, allows local guest OS privileged users to cause a…

Fix: after 2.9.1
Fix from $1,600 2017-06-16
Gnutls HIGH 7.5
CVE-2017-7507

GnuTLS version 3.5.12 and earlier is vulnerable to a NULL pointer dereference while decoding a status response TLS extension with valid contents. Thi…

Fix: after 3.5.12
Fix from $1,950 2017-06-16
Lineageos MEDIUM 6.2
CVE-2017-6899

The msm_bus_dbg_update_request_write function in drivers/platform/msm/msm_bus/msm_bus_dbg.c in android_kernel_huawei_msm8916 through 2017-06-16 in Li…

Fix: after 2017-06-16
Fix from $1,600 2017-06-16
Android HIGH 7.8
CVE-2014-9967

In all Android releases from CAF using the Linux kernel, an untrusted pointer dereference vulnerability exists in WideVine DRM.

No fix yet
Fix from $1,950 2017-06-13
Android HIGH 7.8
CVE-2015-9020

In all Android releases from CAF using the Linux kernel, an untrusted pointer dereference vulnerability exists in the unlocking of memory.

Mitigation only
Fix from $1,950 2017-06-13
Android HIGH 7.8
CVE-2015-9026

In all Android releases from CAF using the Linux kernel, an untrusted pointer dereference vulnerability exists in WideVine DRM.

Mitigation only
Fix from $1,950 2017-06-13
Android HIGH 7.8
CVE-2015-9027

In all Android releases from CAF using the Linux kernel, an untrusted pointer dereference vulnerability exists in WideVine DRM.

Mitigation only
Fix from $1,950 2017-06-13
Fedora HIGH 7.5
CVE-2016-5391

libreswan before 3.18 allows remote attackers to cause a denial of service (NULL pointer dereference and pluto daemon restart).

Fix: after 3.17
Fix from $1,950 2017-06-13
Libquicktime MEDIUM 6.5
CVE-2017-9124

The quicktime_match_32 function in util.c in libquicktime 1.2.4 allows remote attackers to cause a denial of service (NULL pointer dereference and ap…

No fix yet
Fix from $1,600 2017-06-12
Android HIGH 7.5
CVE-2014-7919

b/libs/gui/ISurfaceComposer.cpp in Android allows attackers to trigger a denial of service (null pointer dereference and process crash).

Mitigation only
Fix from $1,950 2017-06-08
Workstation Player MEDIUM 5.5
CVE-2017-4900

VMware Workstation Pro/Player 12.x before 12.5.3 contains a NULL pointer dereference vulnerability that exists in the SVGA driver. Successful exploit…

Patch available
Fix from $1,600 2017-06-07
Ytnef MEDIUM 5.5
CVE-2017-9470

In ytnef 1.9.2, the MAPIPrint function in lib/ytnef.c allows remote attackers to cause a denial of service (NULL pointer dereference and application …

No fix yet
Fix from $1,600 2017-06-07
Debian Linux HIGH 7.5
CVE-2017-9468

In Irssi before 1.0.3, when receiving a DCC message without source nick/host, it attempts to dereference a NULL pointer. Thus, remote IRC servers can…

Fix: after 1.0.2
Fix from $1,950 2017-06-07
Android HIGH 7.8
CVE-2014-9943

In Core Kernel in all Android releases from CAF using the Linux kernel, a Null Pointer Dereference vulnerability could potentially exist.

Patch available
Fix from $1,950 2017-06-06
Android HIGH 7.8
CVE-2014-9949

In TrustZone in all Android releases from CAF using the Linux kernel, an Untrusted Pointer Dereference vulnerability could potentially exist.

Patch available
Fix from $1,950 2017-06-06
Wireshark HIGH 7.5
CVE-2017-9343

In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the MSNIP dissector misuses a NULL pointer. This was addressed in epan/dissectors/packet-msnip.c by …

Fix: after 2.2.6
Fix from $1,950 2017-06-02
Wireshark HIGH 7.5
CVE-2017-9347EPSS 14%

In Wireshark 2.2.0 to 2.2.6, the ROS dissector could crash with a NULL pointer dereference. This was addressed in epan/dissectors/asn1/ros/packet-ros…

Fix: after 2.2.6
Fix from $1,950 2017-06-02
Network Security Services HIGH 7.5
CVE-2017-7502

Null pointer dereference vulnerability in NSS since 3.24.0 was found when server receives empty SSLv2 messages resulting into denial of service by re…

Patch available
Fix from $1,950 2017-05-30
Poppler MEDIUM 5.5
CVE-2017-7511

poppler since version 0.17.3 has been vulnerable to NULL pointer dereference in pdfunite triggered by specially crafted documents.

Patch available
Fix from $1,600 2017-05-30