Vulnerability index

Browse CVEs

51 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Storage MEDIUM 6.5
CVE-2020-10730

A NULL pointer dereference, or possible use-after-free flaw was found in Samba AD LDAP server in versions before 4.10.17, before 4.11.11 and before 4…

Fix: 4.10.17 / 4.11.11+
Fix from $1,600 2020-07-07
Libvirt MEDIUM 6.5
CVE-2020-10703

A NULL pointer dereference was found in the libvirt API responsible introduced in upstream version 3.10.0, and fixed in libvirt 6.0.0, for fetching a…

Fix: 6.0.0+
Fix from $1,600 2020-06-02
Directory Server HIGH 7.5
CVE-2010-2222

The _ger_parse_control function in Red Hat Directory Server 8 and the 389 Directory Server allows attackers to cause a denial of service (NULL pointe…

Patch available
Fix from $1,950 2019-11-05
Libvirt MEDIUM 6.3
CVE-2019-3840

A NULL pointer dereference flaw was discovered in libvirt before version 5.0.0 in the way it gets interface information through the QEMU agent. An at…

Fix: 5.0.0+
Fix from $1,600 2019-03-27
Enterprise Linux Desktop MEDIUM 5.9
CVE-2017-3135EPSS 17%

Under some conditions when using both DNS64 and RPZ to rewrite query responses, query processing can resume in an inconsistent state leading to eithe…

Mitigation only
Fix from $1,600 2019-01-16
Enterprise Linux Desktop MEDIUM 6.5
CVE-2018-5801

An error within the "LibRaw::unpack()" function (src/libraw_cxx.cpp) in LibRaw versions prior to 0.18.7 can be exploited to trigger a NULL pointer de…

Fix: 0.18.7+
Fix from $1,600 2018-12-07
Enterprise Linux Desktop MEDIUM 6.5
CVE-2018-5806

An error within the "leaf_hdr_load_raw()" function (internal/dcraw_common.cpp) in LibRaw versions prior to 0.18.8 can be exploited to trigger a NULL …

Fix: 0.18.8+
Fix from $1,600 2018-12-07
Enterprise Linux MEDIUM 6.5
CVE-2018-19208

In libwpd 0.10.2, there is a NULL pointer dereference in the function WP6ContentListener::defineTable in WP6ContentListener.cpp that will lead to a d…

No fix yet
Fix from $1,600 2018-11-12
Virtualization Host MEDIUM 6.5
CVE-2018-10914

It was found that an attacker could issue a xattr request via glusterfs FUSE to cause gluster brick process to crash which will result in a remote de…

Fix: 3.12.14 / 4.1.8+
Fix from $1,600 2018-09-04
Libvirt MEDIUM 6.5
CVE-2017-2635

A NULL pointer deference flaw was found in the way libvirt from 2.5.0 to 3.0.0 handled empty drives. A remote authenticated attacker could use this f…

Fix: after 3.0.0
Fix from $1,600 2018-08-22
Ceph MEDIUM 6.5
CVE-2016-8626

A flaw was found in Red Hat Ceph before 0.94.9-8. The way Ceph Object Gateway handles POST object requests permits an authenticated attacker to launc…

Fix: 0.94.3.9-8+
Fix from $1,600 2018-07-31
Enterprise Linux Desktop MEDIUM 6.5
CVE-2017-2668

389-ds-base before versions 1.3.5.17 and 1.3.6.10 is vulnerable to an invalid pointer dereference in the way LDAP bind requests are handled. A remote…

Fix: 1.3.5.17 / 1.3.6.10+
Fix from $1,600 2018-06-22
Enterprise Linux Desktop MEDIUM 5.5
CVE-2018-10535

The ignore_section_sym function in elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, does not vali…

Mitigation only
Fix from $1,600 2018-04-29
Enterprise Linux Desktop MEDIUM 6.5
CVE-2018-10373

concat_filename in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attackers to…

Mitigation only
Fix from $1,600 2018-04-25
Ceph HIGH 7.5
CVE-2018-7262

In Ceph before 12.2.3 and 13.x through 13.0.1, the rgw_civetweb.cc RGWCivetWeb::init_env function in radosgw doesn't handle malformed HTTP headers pr…

Fix: 12.2.3+
Fix from $1,950 2018-03-19
Enterprise Linux Desktop MEDIUM 5.5
CVE-2018-7642

The swap_std_reloc_in function in aoutx.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remot…

Mitigation only
Fix from $1,600 2018-03-02
Enterprise Linux HIGH 8.8
CVE-2016-3616

The cjpeg utility in libjpeg allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) or execute arbitra…

Mitigation only
Fix from $1,950 2017-02-13
Enterprise Linux Desktop CRITICAL 9.8
CVE-2014-8241

XRegion in TigerVNC allows remote VNC servers to cause a denial of service (NULL pointer dereference) by leveraging failure to check a malloc return …

Mitigation only
Fix from $2,300 2016-12-14
Virtualization MEDIUM 5.0
CVE-2014-3469

The (1) asn1_read_value_type and (2) asn1_read_value functions in GNU Libtasn1 before 3.6 allows context-dependent attackers to cause a denial of ser…

Patch available
Fix from $1,600 2014-06-05
Enterprise Linux Desktop MEDIUM 5.5
CVE-2011-2519

Xen in the Linux kernel, when running a guest on a host without hardware assisted paging (HAP), allows guest users to cause a denial of service (inva…

Fix: 3.3.0+
Fix from $1,600 2013-12-27
Enterprise Linux Desktop HIGH 9.3
CVE-2012-2039

Adobe Flash Player before 10.3.183.20 and 11.x before 11.3.300.257 on Windows and Mac OS X; before 10.3.183.20 and 11.x before 11.2.202.236 on Linux;…

Fix: after 11.2.202.235
Fix from $1,950 2012-06-09