Vulnerability index

Browse CVEs

5,200 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Linux Kernel MEDIUM 5.5
CVE-2022-50501

In the Linux kernel, the following vulnerability has been resolved: media: coda: Add check for dcoda_iram_alloc As the coda_iram_alloc may return N…

Fix: 4.9.337 / 4.14.303+
Fix from $1,600 2025-10-04
Linux Kernel MEDIUM 5.5
CVE-2022-50503

In the Linux kernel, the following vulnerability has been resolved: mtd: lpddr2_nvm: Fix possible null-ptr-deref It will cause null-ptr-deref when …

Fix: 4.9.337 / 4.14.303+
Fix from $1,600 2025-10-04
Linux Kernel MEDIUM 5.5
CVE-2022-50506

In the Linux kernel, the following vulnerability has been resolved: drbd: only clone bio if we have a backing device Commit c347a787e34cb (drbd: se…

Fix: 6.0.6+
Fix from $1,600 2025-10-04
Linux Kernel MEDIUM 5.5
CVE-2022-50475

In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Make sure "ib_port" is valid when access sysfs node The "ib_port" st…

Fix: 5.15.86 / 6.0.16+
Fix from $1,600 2025-10-04
Linux Kernel MEDIUM 5.5
CVE-2022-50481

In the Linux kernel, the following vulnerability has been resolved: cxl: fix possible null-ptr-deref in cxl_guest_init_afu|adapter() If device_regi…

Fix: 4.9.337 / 4.14.303+
Fix from $1,600 2025-10-04
Linux Kernel MEDIUM 5.5
CVE-2025-39950

In the Linux kernel, the following vulnerability has been resolved: net/tcp: Fix a NULL pointer dereference when using TCP-AO with TCP_REPAIR A NUL…

Fix: 6.12.49 / 6.16.9+
Fix from $1,600 2025-10-04
Linux Kernel MEDIUM 5.5
CVE-2025-39947

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Harden uplink netdev access against device unbind The function mlx5_…

Fix: 6.6.108 / 6.12.49+
Fix from $1,600 2025-10-04
Linux Kernel MEDIUM 5.5
CVE-2025-39934

In the Linux kernel, the following vulnerability has been resolved: drm: bridge: anx7625: Fix NULL pointer dereference with early IRQ If the interr…

Fix: 5.15.194 / 6.1.154+
Fix from $1,600 2025-10-04
Linux Kernel MEDIUM 5.5
CVE-2025-39936

In the Linux kernel, the following vulnerability has been resolved: crypto: ccp - Always pass in an error pointer to __sev_platform_shutdown_locked(…

Fix: 6.16.9+
Fix from $1,600 2025-10-04
Linux Kernel MEDIUM 5.5
CVE-2025-39937

In the Linux kernel, the following vulnerability has been resolved: net: rfkill: gpio: Fix crash due to dereferencering uninitialized pointer Since…

Fix: 5.4.300 / 5.10.245+
Fix from $1,600 2025-10-04
Linux Kernel MEDIUM 5.5
CVE-2025-39938

In the Linux kernel, the following vulnerability has been resolved: ASoC: qcom: q6apm-lpass-dais: Fix NULL pointer dereference if source graph faile…

Fix: 6.1.154 / 6.6.108+
Fix from $1,600 2025-10-04
Qsync Central MEDIUM 6.5
CVE-2025-47210

A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, they can then exploit …

Fix: 5.0.0.2+
Fix from $1,600 2025-10-03
Qsync Central MEDIUM 6.5
CVE-2025-44008

A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, they can then exploit …

Fix: 5.0.0.1+
Fix from $1,600 2025-10-03
Qsync Central MEDIUM 6.5
CVE-2025-44009

A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, they can then exploit …

Fix: 5.0.0.1+
Fix from $1,600 2025-10-03
Qsync Central MEDIUM 6.5
CVE-2025-44010

A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, they can then exploit …

Fix: 5.0.0.1+
Fix from $1,600 2025-10-03
Qsync Central MEDIUM 6.5
CVE-2025-44011

A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, they can then exploit …

Fix: 5.0.0.1+
Fix from $1,600 2025-10-03
Unclassified HIGH 8.7
CVE-2025-61668

Volto is a ReactJS-based frontend for the Plone Content Management System. Versions 16.34.0 and below, 17.0.0 through 17.22.1, 18.0.0 through 18.27.1…

Patch available
Fix from $1,950 2025-10-02
Suricata HIGH 7.5
CVE-2025-59150

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Version 8.0.0'…

Patch available
Fix from $1,950 2025-10-01
Argo Cd HIGH 7.5
CVE-2025-59537

Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. Versions 1.2.0 through 1.8.7, 2.0.0-rc1 through 2.14.19, 3.0.0-rc1 through …

Fix: 2.14.20 / 3.0.19+
Fix from $1,950 2025-10-01
Suricata HIGH 7.5
CVE-2025-59148

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Versions 8.0.0…

Patch available
Fix from $1,950 2025-10-01
Linux Kernel MEDIUM 5.5
CVE-2023-53531

In the Linux kernel, the following vulnerability has been resolved: null_blk: fix poll request timeout handling When doing io_uring benchmark on /d…

Fix: 6.1.54 / 6.5.4+
Fix from $1,600 2025-10-01
Linux Kernel MEDIUM 5.5
CVE-2023-53523

In the Linux kernel, the following vulnerability has been resolved: can: gs_usb: fix time stamp counter initialization If the gs_usb device driver …

Fix: 6.4.7+
Fix from $1,600 2025-10-01
Linux Kernel MEDIUM 5.5
CVE-2023-53497

In the Linux kernel, the following vulnerability has been resolved: media: vsp1: Replace vb2_is_streaming() with vb2_start_streaming_called() The v…

Fix: 6.2.15 / 6.3.2+
Fix from $1,600 2025-10-01
Linux Kernel MEDIUM 5.5
CVE-2023-53498

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix potential null dereference The adev->dm.dc pointer can be …

Fix: 5.10.246 / 5.15.111+
Fix from $1,600 2025-10-01
Linux Kernel MEDIUM 5.5
CVE-2023-53503

In the Linux kernel, the following vulnerability has been resolved: ext4: allow ext4_get_group_info() to fail Previously, ext4_get_group_info() wou…

Fix: 5.10.181 / 5.15.113+
Fix from $1,600 2025-10-01
Linux Kernel MEDIUM 5.5
CVE-2023-53483

In the Linux kernel, the following vulnerability has been resolved: ACPI: processor: Check for null return of devm_kzalloc() in fch_misc_setup() de…

Fix: 6.1.30 / 6.3.4+
Fix from $1,600 2025-10-01
Linux Kernel MEDIUM 5.5
CVE-2023-53480

In the Linux kernel, the following vulnerability has been resolved: kobject: Add sanity check for kset->kobj.ktype in kset_register() When I regist…

Fix: 4.19.295 / 5.4.257+
Fix from $1,600 2025-10-01
Linux Kernel MEDIUM 5.5
CVE-2023-53470

In the Linux kernel, the following vulnerability has been resolved: ionic: catch failure from devlink_alloc Add a check for NULL on the alloc retur…

Fix: 5.15.112 / 6.1.29+
Fix from $1,600 2025-10-01
Linux Kernel MEDIUM 5.5
CVE-2023-53472

In the Linux kernel, the following vulnerability has been resolved: pwm: lpc32xx: Remove handling of PWM channels Because LPC32xx PWM controllers h…

Fix: 4.10 / 4.14.326+
Fix from $1,600 2025-10-01
Linux Kernel MEDIUM 5.5
CVE-2023-53476

In the Linux kernel, the following vulnerability has been resolved: iw_cxgb4: Fix potential NULL dereference in c4iw_fill_res_cm_id_entry() This co…

Fix: 5.15.99 / 6.1.16+
Fix from $1,600 2025-10-01