Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
HIGH 7.8 CVE-2017-18298 Lack of Input Validation in SDMX API can lead to NULL pointer access in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in versions MDM9… Mdm9206 Firmware Mitigation only Fix from $1,9502018-10-23 MEDIUM 5.5 CVE-2018-18457 The function DCTStream::readScan in Stream.cc in Xpdf 4.00 allows remote attackers to cause a denial of service (NULL pointer dereference) via a craf… Xpdf Mitigation only Fix from $1,6002018-10-18 MEDIUM 5.5 CVE-2018-18458 The function DCTStream::decodeImage in Stream.cc in Xpdf 4.00 allows remote attackers to cause a denial of service (NULL pointer dereference) via a c… Xpdf Mitigation only Fix from $1,6002018-10-18 MEDIUM 5.5 CVE-2018-18459 The function DCTStream::getBlock in Stream.cc in Xpdf 4.00 allows remote attackers to cause a denial of service (NULL pointer dereference) via a craf… Xpdf Mitigation only Fix from $1,6002018-10-18 CRITICAL 9.8 CVE-2018-17893EPSS 6% LAquis SCADA Versions 4.1.0.3870 and prior has an untrusted pointer dereference vulnerability, which may allow remote code execution. Laquis Scada after 4.1.0.3870 Fix from $2,3002018-10-17 HIGH 7.5 CVE-2018-2912 Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate (subcomponent: Manager). Supported versions that are affected are 12.1.2.1.0, 1… Goldengate Patch available Fix from $1,9502018-10-17 HIGH 7.5 CVE-2018-2914 Vulnerability in the Oracle GoldenGate component of Oracle GoldenGate (subcomponent: Manager). Supported versions that are affected are 12.1.2.1.0, 1… Goldengate Patch available Fix from $1,9502018-10-17 HIGH 7.5 CVE-2018-18318 The /dev/block/mmcblk0rpmb driver kernel module on Qiku 360 Phone N6 Pro 1801-A01 devices allows attackers to cause a denial of service (NULL pointer… 360 Mobile Phone N6 Pro Firmware No fix yet Fix from $1,9502018-10-15 HIGH 7.8 CVE-2018-15937EPSS 28% Adobe Acrobat and Reader versions 2018.011.20063 and earlier, 2017.011.30102 and earlier, and 2015.006.30452 and earlier have an untrusted pointer de… Acrobat Dc after 18.011.20063 Fix from $1,9502018-10-12 HIGH 7.8 CVE-2018-15930EPSS 28% Adobe Acrobat and Reader versions 2018.011.20063 and earlier, 2017.011.30102 and earlier, and 2015.006.30452 and earlier have an untrusted pointer de… Acrobat Dc after 18.011.20063 Fix from $1,9502018-10-12 HIGH 7.8 CVE-2018-15931EPSS 28% Adobe Acrobat and Reader versions 2018.011.20063 and earlier, 2017.011.30102 and earlier, and 2015.006.30452 and earlier have an untrusted pointer de… Acrobat Dc after 18.011.20063 Fix from $1,9502018-10-12 HIGH 7.5 CVE-2018-12469 Incorrect handling of an invalid value for an HTTP request parameter by Directory Server (aka Enterprise Server Administration web UI) in Micro Focus… Enterprise Developer after 2.3 Fix from $1,9502018-10-12 HIGH 7.5 CVE-2018-18227 In Wireshark 2.6.0 to 2.6.3 and 2.4.0 to 2.4.9, the MS-WSP protocol dissector could crash. This was addressed in epan/dissectors/packet-mswsp.c by pr… Wireshark after 2.6.3 Fix from $1,9502018-10-12 HIGH 7.5 CVE-2018-0049 A NULL Pointer Dereference vulnerability in Juniper Networks Junos OS allows an attacker to cause the Junos OS kernel to crash. Continued receipt of … Junos Mitigation only Fix from $1,9502018-10-10 MEDIUM 6.5 CVE-2018-18192 An issue was discovered in libgig 4.1.0. There is a NULL pointer dereference in the function DLS::File::GetFirstSample() in DLS.cpp. Libgig No fix yet Fix from $1,6002018-10-09 MEDIUM 6.5 CVE-2018-18088 OpenJPEG 2.3.0 has a NULL pointer dereference for "red" in the imagetopnm function of jp2/convert.c Debian Linux No fix yet Fix from $1,6002018-10-09 MEDIUM 6.5 CVE-2018-18065EPSS 17% _set_key in agent/helpers/table_container.c in Net-SNMP before 5.8 has a NULL Pointer Exception bug that can be used by an authenticated attacker to … Debian Linux 5.8+ Fix from $1,6002018-10-08 HIGH 7.5 CVE-2018-18066 snmp_oid_compare in snmplib/snmp_api.c in Net-SNMP before 5.8 has a NULL Pointer Exception bug that can be used by an unauthenticated attacker to rem… Net Snmp 5.8+ Fix from $1,9502018-10-08 MEDIUM 6.5 CVE-2018-17794 An issue was discovered in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31. There is a NULL pointer dereference in work_stuff_copy_… Binutils Mitigation only Fix from $1,6002018-09-30 MEDIUM 5.5 CVE-2018-6925 In FreeBSD before 11.2-STABLE(r338986), 11.2-RELEASE-p4, 11.1-RELEASE-p15, 10.4-STABLE(r338985), and 10.4-RELEASE-p13, due to improper maintenance of… FreeBSD 11.2+ Fix from $1,6002018-09-28 MEDIUM 5.5 CVE-2018-17154 In FreeBSD before 11.2-STABLE(r338987), 11.2-RELEASE-p4, and 11.1-RELEASE-p15, due to insufficient memory checking in the freebsd4_getfsstat system c… FreeBSD 11.2+ Fix from $1,6002018-09-28 CRITICAL 9.8 CVE-2018-14811 Fuji Electric V-Server 4.0.3.0 and prior, Multiple untrusted pointer dereference vulnerabilities have been identified, which may allow remote code ex… V Server Firmware after 4.0.3.0 Fix from $2,3002018-09-26 MEDIUM 6.5 CVE-2018-17432 A NULL pointer dereference in H5O_sdspace_encode() in H5Osdspace.c in the HDF HDF5 through 1.10.3 library allows attackers to cause a denial of servi… Hdf5 after 1.10.3 Fix from $1,6002018-09-24 HIGH 8.8 CVE-2018-17293 An issue was discovered in WAVM before 2018-09-16. The run function in Programs/wavm/wavm.cpp does not check whether there is Emscripten memory to st… Webassembly Virtual Machine 2018-09-16+ Fix from $1,9502018-09-21 MEDIUM 6.5 CVE-2018-17282 An issue was discovered in Exiv2 v0.26. The function Exiv2::DataValue::copy in value.cpp has a NULL pointer dereference. Exiv2 No fix yet Fix from $1,6002018-09-20 MEDIUM 5.5 CVE-2017-18301 In Small Cell SoC and Snapdragon (Automobile, Mobile, Wear) in version FSM9055, FSM9955, MDM9607, MDM9640, MDM9650, MSM8909W, SD 425, SD 427, SD 430,… Fsm9055 Firmware Mitigation only Fix from $1,6002018-09-20 HIGH 7.8 CVE-2018-11904 In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, asynchronous callbacks received a pointer… Android Patch available Fix from $1,9502018-09-19 HIGH 7.5 CVE-2018-17142 The html package (aka x/net/html) through 2018-09-17 in Go mishandles <math><template><mo><template>, leading to a "panic: runtime error" in parseCur… Net after 2018-09-17 Fix from $1,9502018-09-17 HIGH 7.5 CVE-2018-17127 blocking_request.cgi on ASUS GT-AC5300 devices through 3.0.0.4.384_32738 allows remote attackers to cause a denial of service (NULL pointer dereferen… Gt Ac5300 Firmware after 3.0.0.4.384.32738 Fix from $1,9502018-09-17 HIGH 7.5 CVE-2018-17073 wernsey/bitmap before 2018-08-18 allows a NULL pointer dereference via a 4-bit image. Bitmap 2018-09-24+ Fix from $1,9502018-09-16