Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
CRITICAL 9.8 CVE-2020-5544 Null Pointer Dereference vulnerability in TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 series IU1-1M20-D firmware version … Iu1 1m20 D Firmware after 1.0.7 Fix from $2,3002020-03-16 MEDIUM 5.5 CVE-2020-5960 NVIDIA Virtual GPU Manager contains a vulnerability in the kernel module (nvidia.ko), where a null pointer dereference may occur, which may lead to d… Virtual Gpu Manager Mitigation only Fix from $1,6002020-03-12 HIGH 7.5 CVE-2019-14061 Null-pointer dereference can occur while accessing the segment element info when it is not allocated and assigned in Snapdragon Auto, Snapdragon Comp… Apq8009 Firmware Mitigation only Fix from $1,9502020-03-05 HIGH 7.5 CVE-2019-10591 Null pointer dereference can happen when parsing udta atom which is non-standard and having invalid depth in Snapdragon Auto, Snapdragon Compute, Sna… Apq8009 Firmware Mitigation only Fix from $1,9502020-03-05 MEDIUM 5.5 CVE-2019-10616 Possibility of null pointer access if the SPDM commands are executed in the non-standard way in TZ. in Snapdragon Auto, Snapdragon Compute, Snapdrago… Apq8009 Firmware Mitigation only Fix from $1,6002020-03-05 HIGH 7.5 CVE-2019-10549 Null pointer dereference issue can happen due to improper validation of CSEQ header response received from network in Snapdragon Auto, Snapdragon Com… Msm8905 Firmware Mitigation only Fix from $1,9502020-03-05 HIGH 7.5 CVE-2020-8437EPSS 12% The bencoding parser in BitTorrent uTorrent through 3.5.5 (build 45505) misparses nested bencoded dictionaries, which allows a remote attacker to cau… Utorrent after 3.5.5 Fix from $1,9502020-03-02 MEDIUM 6.5 CVE-2020-6795 When processing a message that contains multiple S/MIME signatures, a bug in the MIME processing code caused a null pointer dereference, leading to a… Thunderbird 68.5.0+ Fix from $1,6002020-03-02 HIGH 7.5 CVE-2020-9545 Pale Moon 28.x before 28.8.4 has a segmentation fault related to module scripting, as demonstrated by a Lacoste web site. Pale Moon 28.8.4+ Fix from $1,9502020-03-02 HIGH 7.5 CVE-2020-9429 In Wireshark 3.2.0 to 3.2.1, the WireGuard dissector could crash. This was addressed in epan/dissectors/packet-wireguard.c by handling the situation … Wireshark after 3.2.1 Fix from $1,9502020-02-27 HIGH 7.5 CVE-2020-7062 In PHP versions 7.2.x below 7.2.28, 7.3.x below 7.3.15 and 7.4.x below 7.4.3, when using file upload functionality, if upload progress tracking is en… PHP after 7.4.2 Fix from $1,9502020-02-27 HIGH 7.5 CVE-2020-9385 A NULL Pointer Dereference exists in libzint in Zint 2.7.1 because multiple + characters are mishandled in add_on in upcean.c, when called from eanx … Zint No fix yet Fix from $1,9502020-02-25 HIGH 7.5 CVE-2020-9327 In SQLite 3.31.1, isAuxiliaryVtabOperator allows attackers to trigger a NULL pointer dereference and segmentation fault because of generated column o… SQLite 1.0.1.1+ Fix from $1,9502020-02-21 HIGH 7.5 CVE-2020-6062EPSS 6% An exploitable denial-of-service vulnerability exists in the way CoTURN 4.5.1.1 web server parses POST requests. A specially crafted HTTP POST reques… Debian Linux No fix yet Fix from $1,9502020-02-19 HIGH 7.5 CVE-2020-8011 CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains a null pointer dereference vulnerability in the robot (c… Unified Infrastructure Management 20.4.0+ Fix from $1,9502020-02-18 MEDIUM 6.5 CVE-2020-0021 In removeUnusedPackagesLPw of PackageManagerService.java, there is a possible permanent denial-of-service due to a missing package dependency test. T… Android Patch available Fix from $1,6002020-02-13 MEDIUM 5.5 CVE-2019-11867 Realtek NDIS driver rt640x64.sys, file version 10.1.505.2015, fails to do any size checking on an input buffer from user space, which the driver assu… Ndis Mitigation only Fix from $1,6002020-02-12 HIGH 7.5 CVE-2018-14553 gdImageClone in gd.c in libgd 2.1.0-rc2 through 2.2.5 has a NULL pointer dereference allowing attackers to crash an application via a specific functi… Fedora after 2.2.5 Fix from $1,9502020-02-11 HIGH 7.5 CVE-2010-5304 A NULL pointer dereference flaw was found in the way LibVNCServer before 0.9.9 handled certain ClientCutText message. A remote attacker could use thi… Fedora 0.9.9+ Fix from $1,9502020-02-05 MEDIUM 5.5 CVE-2020-8448 In OSSEC-HIDS 2.7 through 3.5.0, the server component responsible for log analysis (ossec-analysisd) is vulnerable to a denial of service (NULL point… Ossec after 3.5.0 Fix from $1,6002020-01-30 MEDIUM 5.5 CVE-2020-8002 A NULL pointer dereference in vrend_renderer.c in virglrenderer through 0.8.1 allows attackers to cause a denial of service via commands that attempt… Debian Linux after 0.8.1 Fix from $1,6002020-01-27 HIGH 7.5 CVE-2019-20424 In the Lustre file system before 2.12.3, mdt_object_remote in the mdt module has a NULL pointer dereference and panic due to the lack of validation f… Lustre 2.12.3+ Fix from $1,9502020-01-27 HIGH 7.5 CVE-2012-5389EPSS 7% NULL Pointer Dereference in PowerTCP WebServer for ActiveX 1.9.2 and earlier allows remote attackers to cause a denial of service (application crash)… Powertcp Webserver For Activex after 1.9.2 Fix from $1,9502020-01-23 MEDIUM 6.5 CVE-2019-20398 A NULL pointer dereference is present in libyang before v1.0-r3 in the function lys_extension_instances_free() due to a copy of unresolved extensions… Libyang Patch available Fix from $1,6002020-01-22 HIGH 7.5 CVE-2019-14003 Null pointer exception can happen while parsing invalid MKV clip where cue information is parsed before segment information in Snapdragon Auto, Snapd… Apq8009 Firmware Patch available Fix from $1,9502020-01-21 HIGH 7.5 CVE-2019-14008 Possible null pointer dereference issue in location assistance data processing due to missing null check on resources before using it in Snapdragon A… Mdm9150 Firmware Mitigation only Fix from $1,9502020-01-21 HIGH 7.5 CVE-2019-10578 Null pointer dereference can occur while parsing the clip which is nonstandard in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapd… Apq8009 Firmware Mitigation only Fix from $1,9502020-01-21 HIGH 7.5 CVE-2010-3048 Cisco Unified Personal Communicator 7.0 (1.13056) does not free allocated memory for received data and does not perform validation if memory allocati… Unified Personal Communicator Mitigation only Fix from $1,9502020-01-16 MEDIUM 6.5 CVE-2020-7045 In Wireshark 3.0.x before 3.0.8, the BT ATT dissector could crash. This was addressed in epan/dissectors/packet-btatt.c by validating opcodes. Wireshark 3.0.8+ Fix from $1,6002020-01-16 HIGH 7.5 CVE-2020-7105 async.c and dict.c in libhiredis.a in hiredis through 0.14.0 allow a NULL pointer dereference because malloc return values are unchecked. Hiredis after 0.14.0 Fix from $1,9502020-01-16