Vulnerability index

Browse CVEs

5,206 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
MEDIUM 6.6 CVE-2017-16647 drivers/net/usb/asix_devices.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (NULL pointer dereference and syst… Linux Kernel after 4.13.11 Fix from $1,6002017-11-07 HIGH 7.5 CVE-2017-2893EPSS 25% An exploitable NULL pointer dereference vulnerability exists in the MQTT packet parsing functionality of Cesanta Mongoose 6.8. An MQTT SUBSCRIBE pack… Mongoose No fix yet Fix from $1,9502017-11-07 HIGH 7.5 CVE-2017-12719 An Untrusted Pointer Dereference issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. A remote attacker is able to execute co… Webaccess 8.2_20170817+ Fix from $1,9502017-11-06 MEDIUM 5.5 CVE-2017-15306 The kvm_vm_ioctl_check_extension function in arch/powerpc/kvm/powerpc.c in the Linux kernel before 4.13.11 allows local users to cause a denial of se… Linux Kernel after 4.13.10 Fix from $1,6002017-11-06 HIGH 8.8 CVE-2017-16545 The ReadWPGImage function in coders/wpg.c in GraphicsMagick 1.3.26 does not properly validate colormapped images, which allows remote attackers to ca… Graphicsmagick Patch available Fix from $1,9502017-11-05 MEDIUM 6.6 CVE-2017-16532 The get_endpoints function in drivers/usb/misc/usbtest.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (NULL po… Linux Kernel 3.2.95 / 3.16.50+ Fix from $1,6002017-11-04 MEDIUM 6.6 CVE-2017-16536 The cx231xx_usb_probe function in drivers/media/usb/cx231xx/cx231xx-cards.c in the Linux kernel through 4.13.11 allows local users to cause a denial … Linux Kernel after 4.13.11 Fix from $1,6002017-11-04 MEDIUM 6.6 CVE-2017-16537 The imon_probe function in drivers/media/rc/imon.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (NULL pointer … Linux Kernel after 4.13.7 Fix from $1,6002017-11-04 MEDIUM 5.5 CVE-2017-16359 In radare 2.0.1, a pointer wraparound vulnerability exists in store_versioninfo_gnu_verdef() in libr/bin/format/elf/elf.c. Radare2 Patch available Fix from $1,6002017-11-01 HIGH 7.5 CVE-2017-15920EPSS 8% In Watchdog Anti-Malware 2.74.186.150 and Online Security Pro 2.74.186.150, the zam32.sys driver contains a NULL pointer dereference vulnerability th… Anti Malware No fix yet Fix from $1,9502017-10-30 HIGH 7.5 CVE-2017-15921EPSS 8% In Watchdog Anti-Malware 2.74.186.150 and Online Security Pro 2.74.186.150, the zam32.sys driver contains a NULL pointer dereference vulnerability th… Anti Malware No fix yet Fix from $1,9502017-10-30 MEDIUM 6.0 CVE-2015-7549 The MSI-X MMIO support in hw/pci/msix.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (NULL pointe… Qemu 2.5.0+ Fix from $1,6002017-10-30 MEDIUM 5.5 CVE-2017-15955 bchunk (related to BinChunker) 1.2.0 and 1.2.1 is vulnerable to an "Access violation near NULL on destination operand" and crash when processing a ma… Debian Linux Patch available Fix from $1,6002017-10-28 MEDIUM 5.5 CVE-2017-15939 dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, mishandles NULL files in a .debug_line file t… Binutils Patch available Fix from $1,6002017-10-27 HIGH 8.8 CVE-2017-15930 In ReadOneJNGImage in coders/png.c in GraphicsMagick 1.3.26, a Null Pointer Dereference occurs while transferring JPEG scanlines, related to a PixelP… Debian Linux Patch available Fix from $1,9502017-10-27 HIGH 7.5 CVE-2017-15721 In Irssi before 1.0.5, certain incorrectly formatted DCC CTCP messages could cause a NULL pointer dereference. This is a separate, but similar, issue… Debian Linux after 1.0.4 Fix from $1,9502017-10-22 HIGH 7.5 CVE-2017-15723 In Irssi before 1.0.5, overlong nicks or targets may result in a NULL pointer dereference while splitting the message. Debian Linux after 1.0.4 Fix from $1,9502017-10-22 HIGH 7.5 CVE-2017-15600 In GNU Libextractor 1.4, there is a NULL Pointer Dereference in the EXTRACTOR_nsf_extract_method function of plugins/nsf_extractor.c. Libextractor No fix yet Fix from $1,9502017-10-18 HIGH 7.5 CVE-2014-3164 cmds/servicemanager/service_manager.c in Android before commit 7d42a3c31ba78a418f9bdde0e0ab951469f321b5 allows attackers to cause a denial of service… Android after 4.4.4 Fix from $1,9502017-10-18 HIGH 8.8 CVE-2017-15565 In Poppler 0.59.0, a NULL Pointer Dereference exists in the GfxImageColorMap::getGrayLine() function in GfxState.cc via a crafted PDF document. Debian Linux No fix yet Fix from $1,9502017-10-17 MEDIUM 5.5 CVE-2017-15299 The KEYS subsystem in the Linux kernel through 4.13.7 mishandles use of add_key for a key that already exists but is uninstantiated, which allows loc… Linux Kernel after 4.13.6 Fix from $1,6002017-10-14 HIGH 7.5 CVE-2017-15286 SQLite 3.20.1 has a NULL pointer dereference in tableColumnList in shell.c because it fails to consider certain cases where `sqlite3_step(pStmt)==SQL… SQLite No fix yet Fix from $1,9502017-10-12 MEDIUM 5.5 CVE-2017-12192 The keyctl_read_key function in security/keys/keyctl.c in the Key Management subcomponent in the Linux kernel before 4.13.5 does not properly conside… Linux Kernel after 4.13.4 Fix from $1,6002017-10-12 MEDIUM 5.5 CVE-2017-15274 security/keys/keyctl.c in the Linux kernel before 4.11.5 does not consider the case of a NULL payload in conjunction with a nonzero length value, whi… Linux Kernel after 4.11.4 Fix from $1,6002017-10-12 HIGH 7.5 CVE-2017-15267 In GNU Libextractor 1.4, there is a NULL Pointer Dereference in flac_metadata in flac_extractor.c. Libextractor No fix yet Fix from $1,9502017-10-11 MEDIUM 6.5 CVE-2017-15232 libjpeg-turbo 1.5.2 has a NULL Pointer Dereference in jdpostct.c and jquant1.c via a crafted JPEG file. Libjpeg Turbo Patch available Fix from $1,6002017-10-11 MEDIUM 5.9 CVE-2017-11063 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, as a result of a race condition betwe… Android Mitigation only Fix from $1,6002017-10-10 HIGH 7.5 CVE-2015-2297 nanohttp in libcsoap allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted Authorizatio… Libcsoap Mitigation only Fix from $1,9502017-10-06 HIGH 7.8 CVE-2017-15056 p_lx_elf.cpp in UPX 3.94 mishandles ELF headers, which allows remote attackers to cause a denial of service (application crash) or possibly have unsp… Upx Patch available Fix from $1,9502017-10-06 HIGH 8.8 CVE-2017-15017 ImageMagick 7.0.7-0 Q16 has a NULL pointer dereference vulnerability in ReadOneMNGImage in coders/png.c. Ubuntu Linux Patch available Fix from $1,9502017-10-05