Vulnerability index

Browse CVEs

5,200 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
MEDIUM 5.5 CVE-2026-22982 In the Linux kernel, the following vulnerability has been resolved: net: mscc: ocelot: Fix crash when adding interface under a lag Commit 15faa1f67… Linux Kernel 5.15.198 / 6.1.161+ Fix from $1,6002026-01-23 MEDIUM 5.5 CVE-2026-22983 In the Linux kernel, the following vulnerability has been resolved: net: do not write to msg_get_inq in callee NULL pointer dereference fix. msg_g… Linux Kernel 6.18.6+ Fix from $1,6002026-01-23 MEDIUM 5.5 CVE-2026-22985 In the Linux kernel, the following vulnerability has been resolved: idpf: Fix RSS LUT NULL pointer crash on early ethtool operations The RSS LUT is… Linux Kernel 6.18.6+ Fix from $1,6002026-01-23 MEDIUM 5.5 CVE-2026-22987 In the Linux kernel, the following vulnerability has been resolved: net/sched: act_api: avoid dereferencing ERR_PTR in tcf_idrinfo_destroy syzbot r… Linux Kernel 6.18.6+ Fix from $1,6002026-01-23 HIGH 7.5 CVE-2025-66720 Null pointer dereference in free5gc pcf 1.4.0 in file internal/sbi/processor/ampolicy.go in function HandleDeletePoliciesPolAssoId. Pcf Patch available Fix from $1,9502026-01-23 HIGH 8.4 CVE-2026-0710 A flaw was found in SIPp. A remote attacker could exploit this by sending specially crafted Session Initiation Protocol (SIP) messages during an acti… Mitigation only Fix from $1,9502026-01-23 MEDIUM 5.3 CVE-2026-23831 Rekor is a software supply chain transparency log. In versions 1.4.3 and below, the entry implementation can panic on attacker-controlled input when … Rekor 1.5.0+ Fix from $1,6002026-01-22 HIGH 7.5 CVE-2026-23952 ImageMagick is free and open-source software used for editing and manipulating digital images. Versions 14.10.1 and below have a NULL pointer derefer… Imagemagick 6.9.13-38 / 7.1.2-13+ Fix from $1,9502026-01-22 HIGH 7.4 CVE-2025-68141 EVerest is an EV charging software stack. Prior to version 2025.10.0, during the deserialization of a `DC_ChargeLoopRes` message that includes Receip… Everest 2025.10.0+ Fix from $1,9502026-01-21 MEDIUM 5.5 CVE-2026-22977 In the Linux kernel, the following vulnerability has been resolved: net: sock: fix hardened usercopy panic in sock_recv_errqueue skbuff_fclone_cach… Linux Kernel 5.10.248 / 5.15.198+ Fix from $1,6002026-01-21 MEDIUM 5.5 CVE-2026-22976 In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_qfq: Fix NULL deref when deactivating inactive aggregate in qfq_r… Linux Kernel 5.10.248 / 5.15.198+ Fix from $1,6002026-01-21 HIGH 7.5 CVE-2025-63647 A NULL pointer dereference in the parse_meta function (src/httpd_daap.c) of owntone-server commit 334beb allows attackers to cause a Denial of Servic… Owntone Server 28.3+ Fix from $1,9502026-01-20 HIGH 7.5 CVE-2025-63648 A NULL pointer dereference in the dacp_reply_playqueueedit_move function (src/httpd_dacp.c) of owntone-server commit b7e385f allows attackers to caus… Owntone Server after 29.0 Fix from $1,9502026-01-20 HIGH 7.5 CVE-2025-57155 NULL pointer dereference in the daap_reply_groups function in src/httpd_daap.c in owntone-server through commit 5e6f19a (newer commit after version 2… Owntone Server after 28.2 Fix from $1,9502026-01-20 HIGH 7.5 CVE-2025-57156 NULL pointer dereference in the dacp_reply_playqueueedit_clear function in src/httpd_dacp.c in owntone-server through commit 6d604a1 (newer commit af… Owntone Server after 28.12 Fix from $1,9502026-01-20 HIGH 7.5 CVE-2026-0943 HarfBuzz::Shaper versions before 0.032 for Perl contains a bundled library with a null pointer dereference vulnerability.  Versions before 0.032 con… Harfbuzz\ 0.032+ Fix from $1,9502026-01-19 MEDIUM 5.5 CVE-2025-60007 A NULL Pointer Dereference vulnerability in the chassis daemon (chassisd) of Juniper Networks Junos OS on MX, SRX and EX Series allows a local attack… Junos 22.4+ Fix from $1,6002026-01-15 HIGH 7.5 CVE-2025-9014 A Null Pointer Dereference vulnerability exists in the referer header check of the web portal of TP-Link TL-WR841N v14, caused by improper input vali… Tl Wr841n Firmware 250908+ Fix from $1,9502026-01-15 MEDIUM 5.5 CVE-2025-71135 In the Linux kernel, the following vulnerability has been resolved: md/raid5: fix possible null-pointer dereferences in raid5_store_group_thread_cnt… Linux Kernel 6.12.64 / 6.18.4+ Fix from $1,6002026-01-14 MEDIUM 5.5 CVE-2025-71138 In the Linux kernel, the following vulnerability has been resolved: drm/msm/dpu: Add missing NULL pointer check for pingpong interface It is checke… Linux Kernel 6.6.120 / 6.12.64+ Fix from $1,6002026-01-14 MEDIUM 5.5 CVE-2025-71124 In the Linux kernel, the following vulnerability has been resolved: drm/msm/a6xx: move preempt_prepare_postamble after error check Move the call to… Linux Kernel 6.18.3+ Fix from $1,6002026-01-14 MEDIUM 5.5 CVE-2025-71125 In the Linux kernel, the following vulnerability has been resolved: tracing: Do not register unsupported perf events Synthetic events currently do … Linux Kernel 5.10.248 / 5.15.198+ Fix from $1,6002026-01-14 MEDIUM 5.5 CVE-2025-71130 In the Linux kernel, the following vulnerability has been resolved: drm/i915/gem: Zero-initialize the eb.vma array in i915_gem_do_execbuffer Initia… Linux Kernel 6.1.160 / 6.6.120+ Fix from $1,6002026-01-14 MEDIUM 5.5 CVE-2025-71118 In the Linux kernel, the following vulnerability has been resolved: ACPICA: Avoid walking the Namespace if start_node is NULL Although commit 0c999… Linux Kernel 5.10.248 / 5.15.198+ Fix from $1,6002026-01-14 MEDIUM 5.5 CVE-2025-71120 In the Linux kernel, the following vulnerability has been resolved: SUNRPC: svcauth_gss: avoid NULL deref on zero length gss_token in gss_read_proxy… Linux Kernel 4.20 / 5.5+ Fix from $1,6002026-01-14 MEDIUM 5.5 CVE-2025-71103 In the Linux kernel, the following vulnerability has been resolved: drm/msm: adreno: fix deferencing ifpc_reglist when not declared On plaforms wit… Linux Kernel 6.18.3+ Fix from $1,6002026-01-14 MEDIUM 5.5 CVE-2025-71107 In the Linux kernel, the following vulnerability has been resolved: f2fs: ensure node page reads complete before f2fs_put_super() finishes Xfstests… Linux Kernel 6.5 / 6.6.120+ Fix from $1,6002026-01-14 MEDIUM 5.5 CVE-2026-21300 Substance3D - Modeler versions 1.22.4 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-s… Substance 3d Modeler 1.22.5+ Fix from $1,6002026-01-13 MEDIUM 5.5 CVE-2026-21301 Substance3D - Modeler versions 1.22.4 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-s… Substance 3d Modeler 1.22.5+ Fix from $1,6002026-01-13 MEDIUM 5.5 CVE-2026-21288 Illustrator versions 29.8.3, 30.0 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-servi… Illustrator 29.8.4+ Fix from $1,6002026-01-13