Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Netweaver Application Server Java HIGH 7.5
CVE-2016-9562

SAP NetWeaver AS JAVA 7.4 allows remote attackers to cause a Denial of Service (null pointer exception and icman outage) via an HTTPS request to the …

Mitigation only
Fix from $1,950 2016-11-23
Linux Kernel MEDIUM 5.5
CVE-2016-7914

The assoc_array_insert_into_terminal_node function in lib/assoc_array.c in the Linux kernel before 4.5.3 does not check whether a slot is a leaf, whi…

Fix: after 4.5.2
Fix from $1,600 2016-11-16
P7zip HIGH 7.5
CVE-2016-9296EPSS 7%

A null pointer dereference bug affects the 16.02 and many old versions of p7zip. A lack of null pointer check for the variable folders.PackPositions …

Patch available
Fix from $1,950 2016-11-12
Mujs HIGH 7.5
CVE-2016-9294

Artifex Software, Inc. MuJS before 5008105780c0b0182ea6eda83ad5598f225be3ee allows context-dependent attackers to conduct "denial of service (applica…

Fix: 2016-10-26+
Fix from $1,950 2016-11-12
Gpu Driver HIGH 7.5
CVE-2016-4959

For the NVIDIA Quadro, NVS, and GeForce products, there is a Remote Desktop denial of service. A successful exploit of a vulnerable system will resul…

Fix: 341.96 / 354.99+
Fix from $1,950 2016-11-08
Samsung Mobile HIGH 7.5
CVE-2016-7160

A vulnerability on Samsung Mobile M(6.0) devices exists because external access to SystemUI activities is not properly restricted, leading to a Syste…

Mitigation only
Fix from $1,950 2016-11-03
Openjpeg MEDIUM 6.5
CVE-2016-9117

NULL Pointer Access in function imagetopnm of convert.c(jp2):1289 in OpenJPEG 2.1.2. Impact is Denial of Service. Someone must open a crafted j2k fil…

No fix yet
Fix from $1,600 2016-10-30
Openjpeg MEDIUM 6.5
CVE-2016-9116

NULL Pointer Access in function imagetopnm of convert.c:2226(jp2) in OpenJPEG 2.1.2. Impact is Denial of Service. Someone must open a crafted j2k fil…

No fix yet
Fix from $1,600 2016-10-30
Openjpeg HIGH 7.5
CVE-2016-9114

There is a NULL Pointer Access in function imagetopnm of convert.c:1943(jp2) of OpenJPEG 2.1.2. image->comps[compno].data is not assigned a value aft…

No fix yet
Fix from $1,950 2016-10-30
Openjpeg HIGH 7.5
CVE-2016-9113

There is a NULL pointer dereference in function imagetobmp of convertbmp.c:980 of OpenJPEG 2.1.2. image->comps[0].data is not assigned a value after …

No fix yet
Fix from $1,950 2016-10-30
Realplayer MEDIUM 5.5
CVE-2016-9018EPSS 8%

Improper handling of a repeating VRAT chunk in qcpfformat.dll allows attackers to cause a Null pointer dereference and crash in RealNetworks RealPlay…

No fix yet
Fix from $1,600 2016-10-28
Linux Kernel MEDIUM 5.5
CVE-2016-6327

drivers/infiniband/ulp/srpt/ib_srpt.c in the Linux kernel before 4.5.1 allows local users to cause a denial of service (NULL pointer dereference and …

Fix: after 4.5.0
Fix from $1,600 2016-10-16
Android CRITICAL 9.8
CVE-2016-6692

drivers/video/msm/mdss/mdss_mdp_pp.c in the Qualcomm MDSS driver in Android before 2016-10-05 allows attackers to cause a denial of service (invalid …

Fix: after 7.0
Fix from $2,300 2016-10-10
Linux Kernel MEDIUM 6.1
CVE-2015-8956

The rfcomm_sock_bind function in net/bluetooth/rfcomm/sock.c in the Linux kernel before 4.2 allows local users to obtain sensitive information or cau…

Fix: after 7.0
Fix from $1,600 2016-10-10
Debian Linux MEDIUM 5.5
CVE-2016-7424

The put_no_rnd_pixels8_xy2_mmx function in x86/rnd_template.c in libav 11.7 and earlier allows remote attackers to cause a denial of service (NULL po…

Fix: after 11.7
Fix from $1,600 2016-10-07
Freerdp HIGH 7.5
CVE-2013-4119

FreeRDP before 1.1.0-beta+2013071101 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) by disconn…

Fix: after 1.0.2
Fix from $1,950 2016-10-03
Freerdp HIGH 7.5
CVE-2013-4118

FreeRDP before 1.1.0-beta1 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via unspecified vect…

Fix: after 1.0.2
Fix from $1,950 2016-10-03
Openjpeg HIGH 7.5
CVE-2016-7445

convert.c in OpenJPEG before 2.1.2 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via vectors …

Fix: after 2.1.1
Fix from $1,950 2016-10-03
OpenSSL HIGH 7.5
CVE-2016-7052EPSS 30%

crypto/x509/x509_vfy.c in OpenSSL 1.0.2i allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) by tri…

Fix: 4.6.0 / 6.7.0+
Fix from $1,950 2016-09-26
Iphone Os HIGH 7.8
CVE-2016-4777

The kernel in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows attackers to execute arbitrary code in a privileged…

Fix: 3.0 / 10.0+
Fix from $1,950 2016-09-25
Iphone Os HIGH 7.8
CVE-2016-4724

IOAcceleratorFamily in Apple iOS before 10 and OS X before 10.12 allows attackers to execute arbitrary code in a privileged context or cause a denial…

Fix: after 10.11.6
Fix from $1,950 2016-09-25
Mac Os X HIGH 7.8
CVE-2016-4696

AppleEFIRuntime in Apple OS X before 10.12 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (NULL poin…

Fix: after 10.11.6
Fix from $1,950 2016-09-25
Ubuntu Linux MEDIUM 5.5
CVE-2015-8926

The archive_read_format_rar_read_data function in archive_read_support_format_rar.c in libarchive before 3.2.0 allows remote attackers to cause a den…

Fix: after 3.1.901a
Fix from $1,600 2016-09-20
Ubuntu Linux MEDIUM 5.5
CVE-2015-8922

The read_CodersInfo function in archive_read_support_format_7zip.c in libarchive before 3.2.0 allows remote attackers to cause a denial of service (N…

Fix: after 3.1.901a
Fix from $1,600 2016-09-20
Debian Linux HIGH 7.5
CVE-2015-8917

bsdtar in libarchive before 3.2.0 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via an invalid character …

Fix: after 3.1.901a
Fix from $1,950 2016-09-20
Ubuntu Linux MEDIUM 6.5
CVE-2015-8916

bsdtar in libarchive before 3.2.0 returns a success code without filling the entry when the header is a "split file in multivolume RAR," which allows…

Fix: after 3.1.901a
Fix from $1,600 2016-09-20
PHP HIGH 7.5
CVE-2016-7132EPSS 9%

ext/wddx/wddx.c in PHP before 5.6.25 and 7.x before 7.0.10 allows remote attackers to cause a denial of service (NULL pointer dereference and applica…

Fix: after 5.6.24
Fix from $1,950 2016-09-12
PHP HIGH 7.5
CVE-2016-7131EPSS 9%

ext/wddx/wddx.c in PHP before 5.6.25 and 7.x before 7.0.10 allows remote attackers to cause a denial of service (NULL pointer dereference and applica…

Fix: after 5.6.24
Fix from $1,950 2016-09-12
PHP HIGH 7.5
CVE-2016-7130EPSS 7%

The php_wddx_pop_element function in ext/wddx/wddx.c in PHP before 5.6.25 and 7.x before 7.0.10 allows remote attackers to cause a denial of service …

Fix: after 5.6.24
Fix from $1,950 2016-09-12
Rails HIGH 7.5
CVE-2016-6317

Action Record in Ruby on Rails 4.2.x before 4.2.7.1 does not properly consider differences in parameter handling between the Active Record component …

Mitigation only
Fix from $1,950 2016-09-07