Vulnerability index

Browse CVEs

5,200 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Smf HIGH 7.5
CVE-2026-26025

free5GC SMF provides Session Management Function for free5GC, an open-source project for 5th generation (5G) mobile core networks. In versions up to …

Fix: after 1.4.1
Fix from $1,950 2026-02-24
Imagemagick HIGH 7.5
CVE-2026-25795

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, in `ReadSFWI…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $1,950 2026-02-24
Imagemagick HIGH 7.5
CVE-2026-25798

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a NULL point…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $1,950 2026-02-24
Smf HIGH 7.5
CVE-2026-25501

free5GC SMF provides Session Management Function for free5GC, an open-source project for 5th generation (5G) mobile core networks. In versions up to …

Fix: after 1.4.1
Fix from $1,950 2026-02-24
Udm HIGH 7.5
CVE-2025-69252

free5gc UDM provides Unified Data Management (UDM) for free5GC, an open-source project for 5th generation (5G) mobile core networks. Versions up to a…

Fix: after 1.4.1
Fix from $1,950 2026-02-24
Libtiff MEDIUM 5.5
CVE-2025-61143

libtiff up to v4.7.1 was discovered to contain a NULL pointer dereference via the component libtiff/tif_open.c.

Fix: 4.7.1+
Fix from $1,600 2026-02-23
Ffmpeg MEDIUM 5.5
CVE-2025-10256

A NULL pointer dereference vulnerability exists in FFmpeg’s Firequalizer filter (libavfilter/af_firequalizer.c) due to a missing check on the return …

Fix: 8.0+
Fix from $1,600 2026-02-18
Unclassified HIGH 7.5
CVE-2026-2507

When BIG-IP AFM or BIG-IP DDoS is provisioned, undisclosed traffic can cause TMM to terminate.  Note: Software versions which have reached End of Tec…

Mitigation only
Fix from $1,950 2026-02-18
Linux Kernel MEDIUM 5.5
CVE-2025-71233

In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: Avoid creating sub-groups asynchronously The asynchronous creati…

Fix: 5.15.201 / 6.1.164+
Fix from $1,600 2026-02-18
Linux Kernel MEDIUM 5.5
CVE-2025-71236

In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Validate sp before freeing associated memory System crash with t…

Fix: 5.10.251 / 5.15.201+
Fix from $1,600 2026-02-18
Linux Kernel MEDIUM 5.5
CVE-2026-23218

In the Linux kernel, the following vulnerability has been resolved: gpio: loongson-64bit: Fix incorrect NULL check after devm_kcalloc() Fix incorre…

Fix: 6.18.10+
Fix from $1,600 2026-02-18
Linux Kernel MEDIUM 5.5
CVE-2026-23202

In the Linux kernel, the following vulnerability has been resolved: spi: tegra210-quad: Protect curr_xfer in tegra_qspi_combined_seq_xfer The curr_…

Fix: 5.15.200 / 6.1.163+
Fix from $1,600 2026-02-14
Linux Kernel MEDIUM 5.5
CVE-2026-23206

In the Linux kernel, the following vulnerability has been resolved: dpaa2-switch: prevent ZERO_SIZE_PTR dereference when num_ifs is zero The driver…

Fix: 5.15.200 / 6.1.163+
Fix from $1,600 2026-02-14
Linux Kernel MEDIUM 5.5
CVE-2026-23196

In the Linux kernel, the following vulnerability has been resolved: HID: Intel-thc-hid: Intel-thc: Add safety check for reading DMA buffer Add DMA …

Fix: 6.18.10+
Fix from $1,600 2026-02-14
Linux Kernel MEDIUM 5.5
CVE-2026-23197

In the Linux kernel, the following vulnerability has been resolved: i2c: imx: preserve error state in block data length handler When a block read r…

Fix: 6.18.10+
Fix from $1,600 2026-02-14
Linux Kernel MEDIUM 5.5
CVE-2026-23198

In the Linux kernel, the following vulnerability has been resolved: KVM: Don't clobber irqfd routing type when deassigning irqfd When deassigning a…

Fix: 5.10.250 / 5.15.200+
Fix from $1,600 2026-02-14
Linux Kernel MEDIUM 5.5
CVE-2026-23200

In the Linux kernel, the following vulnerability has been resolved: ipv6: Fix ECMP sibling count mismatch when clearing RTF_ADDRCONF syzbot reporte…

Fix: 6.6.124 / 6.12.70+
Fix from $1,600 2026-02-14
Linux Kernel MEDIUM 5.5
CVE-2026-23201

In the Linux kernel, the following vulnerability has been resolved: ceph: fix oops due to invalid pointer for kfree() in parse_longname() This fixe…

Fix: 6.12.70 / 6.16+
Fix from $1,600 2026-02-14
Linux Kernel MEDIUM 5.5
CVE-2026-23189

In the Linux kernel, the following vulnerability has been resolved: ceph: fix NULL pointer dereference in ceph_mds_auth_match() The CephFS kernel c…

Fix: 6.12.70 / 6.18.10+
Fix from $1,600 2026-02-14
Linux Kernel MEDIUM 5.5
CVE-2026-23173

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: TC, delete flows only for existing peers When deleting TC steering f…

Fix: 6.6.123 / 6.12.69+
Fix from $1,600 2026-02-14
Linux Kernel MEDIUM 5.5
CVE-2026-23159

In the Linux kernel, the following vulnerability has been resolved: perf: sched: Fix perf crash with new is_user_task() helper In order to do a use…

Fix: 6.6.123 / 6.12.69+
Fix from $1,600 2026-02-14
Linux Kernel MEDIUM 5.5
CVE-2026-23163

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix NULL pointer dereference in amdgpu_gmc_filter_faults_remove On …

Fix: 6.6.123 / 6.12.69+
Fix from $1,600 2026-02-14
Linux Kernel MEDIUM 5.5
CVE-2026-23166

In the Linux kernel, the following vulnerability has been resolved: ice: Fix NULL pointer dereference in ice_vsi_set_napi_queues Add NULL pointer c…

Fix: 6.11 / 6.12.69+
Fix from $1,600 2026-02-14
Linux Kernel MEDIUM 5.5
CVE-2026-23155

In the Linux kernel, the following vulnerability has been resolved: can: gs_usb: gs_usb_receive_bulk_callback(): fix error message Sinc commit 79a6…

Patch available
Fix from $1,600 2026-02-14
Linux Kernel MEDIUM 5.5
CVE-2026-23146

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_uart: fix null-ptr-deref in hci_uart_write_work hci_uart_set_pro…

Fix: 5.5 / 5.10.249+
Fix from $1,600 2026-02-14
Linux Kernel MEDIUM 5.5
CVE-2026-23148

In the Linux kernel, the following vulnerability has been resolved: nvmet: fix race in nvmet_bio_done() leading to NULL pointer dereference There i…

Fix: 6.12.69 / 6.16+
Fix from $1,600 2026-02-14
Linux Kernel MEDIUM 5.5
CVE-2026-23125

In the Linux kernel, the following vulnerability has been resolved: sctp: move SCTP_CMD_ASSOC_SHKEY right after SCTP_CMD_PEER_INIT A null-ptr-deref…

Fix: 5.10.249 / 5.15.199+
Fix from $1,600 2026-02-14
Linux Kernel MEDIUM 5.5
CVE-2026-23117

In the Linux kernel, the following vulnerability has been resolved: ice: add missing ice_deinit_hw() in devlink reinit path devlink-reload results …

Fix: 6.18.8+
Fix from $1,600 2026-02-14
Unclassified HIGH 7.5
CVE-2025-70954

A Null Pointer Dereference vulnerability exists in the TON Virtual Machine (TVM) within the TON Blockchain before v2025.06. The issue is located in t…

Patch available
Fix from $1,950 2026-02-13
Qsync Central MEDIUM 6.5
CVE-2025-54148

A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, they can then exploit …

Fix: 5.0.0.4+
Fix from $1,600 2026-02-11