Vulnerability index

Browse CVEs

5,200 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Linux Kernel MEDIUM 5.5
CVE-2026-22982

In the Linux kernel, the following vulnerability has been resolved: net: mscc: ocelot: Fix crash when adding interface under a lag Commit 15faa1f67…

Fix: 5.15.198 / 6.1.161+
Fix from $1,600 2026-01-23
Linux Kernel MEDIUM 5.5
CVE-2026-22983

In the Linux kernel, the following vulnerability has been resolved: net: do not write to msg_get_inq in callee NULL pointer dereference fix. msg_g…

Fix: 6.18.6+
Fix from $1,600 2026-01-23
Linux Kernel MEDIUM 5.5
CVE-2026-22985

In the Linux kernel, the following vulnerability has been resolved: idpf: Fix RSS LUT NULL pointer crash on early ethtool operations The RSS LUT is…

Fix: 6.18.6+
Fix from $1,600 2026-01-23
Linux Kernel MEDIUM 5.5
CVE-2026-22987

In the Linux kernel, the following vulnerability has been resolved: net/sched: act_api: avoid dereferencing ERR_PTR in tcf_idrinfo_destroy syzbot r…

Fix: 6.18.6+
Fix from $1,600 2026-01-23
Pcf HIGH 7.5
CVE-2025-66720

Null pointer dereference in free5gc pcf 1.4.0 in file internal/sbi/processor/ampolicy.go in function HandleDeletePoliciesPolAssoId.

Patch available
Fix from $1,950 2026-01-23
Unclassified HIGH 8.4
CVE-2026-0710

A flaw was found in SIPp. A remote attacker could exploit this by sending specially crafted Session Initiation Protocol (SIP) messages during an acti…

Mitigation only
Fix from $1,950 2026-01-23
Rekor MEDIUM 5.3
CVE-2026-23831

Rekor is a software supply chain transparency log. In versions 1.4.3 and below, the entry implementation can panic on attacker-controlled input when …

Fix: 1.5.0+
Fix from $1,600 2026-01-22
Imagemagick HIGH 7.5
CVE-2026-23952

ImageMagick is free and open-source software used for editing and manipulating digital images. Versions 14.10.1 and below have a NULL pointer derefer…

Fix: 6.9.13-38 / 7.1.2-13+
Fix from $1,950 2026-01-22
Everest HIGH 7.4
CVE-2025-68141

EVerest is an EV charging software stack. Prior to version 2025.10.0, during the deserialization of a `DC_ChargeLoopRes` message that includes Receip…

Fix: 2025.10.0+
Fix from $1,950 2026-01-21
Linux Kernel MEDIUM 5.5
CVE-2026-22977

In the Linux kernel, the following vulnerability has been resolved: net: sock: fix hardened usercopy panic in sock_recv_errqueue skbuff_fclone_cach…

Fix: 5.10.248 / 5.15.198+
Fix from $1,600 2026-01-21
Linux Kernel MEDIUM 5.5
CVE-2026-22976

In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_qfq: Fix NULL deref when deactivating inactive aggregate in qfq_r…

Fix: 5.10.248 / 5.15.198+
Fix from $1,600 2026-01-21
Owntone Server HIGH 7.5
CVE-2025-63647

A NULL pointer dereference in the parse_meta function (src/httpd_daap.c) of owntone-server commit 334beb allows attackers to cause a Denial of Servic…

Fix: 28.3+
Fix from $1,950 2026-01-20
Owntone Server HIGH 7.5
CVE-2025-63648

A NULL pointer dereference in the dacp_reply_playqueueedit_move function (src/httpd_dacp.c) of owntone-server commit b7e385f allows attackers to caus…

Fix: after 29.0
Fix from $1,950 2026-01-20
Owntone Server HIGH 7.5
CVE-2025-57155

NULL pointer dereference in the daap_reply_groups function in src/httpd_daap.c in owntone-server through commit 5e6f19a (newer commit after version 2…

Fix: after 28.2
Fix from $1,950 2026-01-20
Owntone Server HIGH 7.5
CVE-2025-57156

NULL pointer dereference in the dacp_reply_playqueueedit_clear function in src/httpd_dacp.c in owntone-server through commit 6d604a1 (newer commit af…

Fix: after 28.12
Fix from $1,950 2026-01-20
Harfbuzz\ HIGH 7.5
CVE-2026-0943

HarfBuzz::Shaper versions before 0.032 for Perl contains a bundled library with a null pointer dereference vulnerability.  Versions before 0.032 con…

Fix: 0.032+
Fix from $1,950 2026-01-19
Junos MEDIUM 5.5
CVE-2025-60007

A NULL Pointer Dereference vulnerability in the chassis daemon (chassisd) of Juniper Networks Junos OS on MX, SRX and EX Series allows a local attack…

Fix: 22.4+
Fix from $1,600 2026-01-15
Tl Wr841n Firmware HIGH 7.5
CVE-2025-9014

A Null Pointer Dereference vulnerability exists in the referer header check of the web portal of TP-Link TL-WR841N v14, caused by improper input vali…

Fix: 250908+
Fix from $1,950 2026-01-15
Linux Kernel MEDIUM 5.5
CVE-2025-71135

In the Linux kernel, the following vulnerability has been resolved: md/raid5: fix possible null-pointer dereferences in raid5_store_group_thread_cnt…

Fix: 6.12.64 / 6.18.4+
Fix from $1,600 2026-01-14
Linux Kernel MEDIUM 5.5
CVE-2025-71138

In the Linux kernel, the following vulnerability has been resolved: drm/msm/dpu: Add missing NULL pointer check for pingpong interface It is checke…

Fix: 6.6.120 / 6.12.64+
Fix from $1,600 2026-01-14
Linux Kernel MEDIUM 5.5
CVE-2025-71124

In the Linux kernel, the following vulnerability has been resolved: drm/msm/a6xx: move preempt_prepare_postamble after error check Move the call to…

Fix: 6.18.3+
Fix from $1,600 2026-01-14
Linux Kernel MEDIUM 5.5
CVE-2025-71125

In the Linux kernel, the following vulnerability has been resolved: tracing: Do not register unsupported perf events Synthetic events currently do …

Fix: 5.10.248 / 5.15.198+
Fix from $1,600 2026-01-14
Linux Kernel MEDIUM 5.5
CVE-2025-71130

In the Linux kernel, the following vulnerability has been resolved: drm/i915/gem: Zero-initialize the eb.vma array in i915_gem_do_execbuffer Initia…

Fix: 6.1.160 / 6.6.120+
Fix from $1,600 2026-01-14
Linux Kernel MEDIUM 5.5
CVE-2025-71118

In the Linux kernel, the following vulnerability has been resolved: ACPICA: Avoid walking the Namespace if start_node is NULL Although commit 0c999…

Fix: 5.10.248 / 5.15.198+
Fix from $1,600 2026-01-14
Linux Kernel MEDIUM 5.5
CVE-2025-71120

In the Linux kernel, the following vulnerability has been resolved: SUNRPC: svcauth_gss: avoid NULL deref on zero length gss_token in gss_read_proxy…

Fix: 4.20 / 5.5+
Fix from $1,600 2026-01-14
Linux Kernel MEDIUM 5.5
CVE-2025-71103

In the Linux kernel, the following vulnerability has been resolved: drm/msm: adreno: fix deferencing ifpc_reglist when not declared On plaforms wit…

Fix: 6.18.3+
Fix from $1,600 2026-01-14
Linux Kernel MEDIUM 5.5
CVE-2025-71107

In the Linux kernel, the following vulnerability has been resolved: f2fs: ensure node page reads complete before f2fs_put_super() finishes Xfstests…

Fix: 6.5 / 6.6.120+
Fix from $1,600 2026-01-14
Substance 3d Modeler MEDIUM 5.5
CVE-2026-21300

Substance3D - Modeler versions 1.22.4 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-s…

Fix: 1.22.5+
Fix from $1,600 2026-01-13
Substance 3d Modeler MEDIUM 5.5
CVE-2026-21301

Substance3D - Modeler versions 1.22.4 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-s…

Fix: 1.22.5+
Fix from $1,600 2026-01-13
Illustrator MEDIUM 5.5
CVE-2026-21288

Illustrator versions 29.8.3, 30.0 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-servi…

Fix: 29.8.4+
Fix from $1,600 2026-01-13