CWE-476— NULL Pointer Dereference
The product dereferences a pointer that it expects to be valid but is NULL.— MITRE CWE catalog
5,484 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-476page 41 of 110
- CVE-2021-47657MEDIUMCVSS 5.5EG 5.52025-02-26
In the Linux kernel, the following vulnerability has been resolved: drm/virtio: Ensure that objs is not NULL in virtio_gpu_array_put_free() If virtio_gpu_object_shmem_init() fails (e.g. due to fault injection, as it happened in the bug r…
- CVE-2022-0168MEDIUMCVSS 4.4EG 4.42022-08-26
A denial of service (DOS) issue was found in the Linux kernel’s smb2_ioctl_query_info function in the fs/cifs/smb2ops.c Common Internet File System (CIFS) due to an incorrect return from the memdup_user function. This flaw allows a local…
- CVE-2022-0240HIGHCVSS 7.5EG 7.52022-01-17
mruby is vulnerable to NULL Pointer Dereference
- CVE-2022-0286MEDIUMCVSS 5.5EG 5.52022-01-31
A flaw was found in the Linux kernel. A null pointer dereference in bond_ipsec_add_sa() may lead to local denial of service.
- CVE-2022-0326MEDIUMCVSS 5.5EG 5.52022-01-21
NULL Pointer Dereference in Homebrew mruby prior to 3.2.
- CVE-2022-0419MEDIUMCVSS 5.5EG 5.52022-02-01
NULL Pointer Dereference in GitHub repository radareorg/radare2 prior to 5.6.0.
- CVE-2022-0433MEDIUMCVSS 5.5EG 5.52022-03-10
A NULL pointer dereference flaw was found in the Linux kernel's BPF subsystem in the way a user triggers the map_get_next_key function of the BPF bloom filter. This flaw allows a local user to crash the system. This flaw affects Linux kern…
- CVE-2022-0481HIGHCVSS 7.5EG 7.52022-02-04
NULL Pointer Dereference in Homebrew mruby prior to 3.2.
- CVE-2022-0561MEDIUMCVSS 5.5EG 5.52022-02-11
Null source pointer passed as an argument to memcpy() function within TIFFFetchStripThing() in tif_dirread.c in libtiff versions from 3.9.0 to 4.3.0 could lead to Denial of Service via crafted TIFF file. For users that compile libtiff from…
- CVE-2022-0562MEDIUMCVSS 5.5EG 5.52022-02-11
Null source pointer passed as an argument to memcpy() function within TIFFReadDirectory() in tif_dirread.c in libtiff versions from 4.0 to 4.3.0 could lead to Denial of Service via crafted TIFF file. For users that compile libtiff from sou…
- CVE-2022-0582CRITICALCVSS 6.3EG 9.82022-02-14
Unaligned access in the CSN.1 protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet injection or crafted capture file
- CVE-2022-0617MEDIUMCVSS 5.5EG 5.52022-02-16
A flaw null pointer dereference in the Linux kernel UDF file system functionality was found in the way user triggers udf_file_write_iter function for the malicious UDF image. A local user could use this flaw to crash the system. Actual fro…
- CVE-2022-0632MEDIUMCVSS 5.5EG 5.52022-02-19
NULL Pointer Dereference in Homebrew mruby prior to 3.2.
- CVE-2022-0696MEDIUMCVSS 5.5EG 5.52022-02-21
NULL Pointer Dereference in GitHub repository vim/vim prior to 8.2.4428.
- CVE-2022-0712MEDIUMCVSS 5.5EG 5.52022-02-22
NULL Pointer Dereference in GitHub repository radareorg/radare2 prior to 5.6.4.
- CVE-2022-0890MEDIUMCVSS 5.5EG 5.52022-03-10
NULL Pointer Dereference in GitHub repository mruby/mruby prior to 3.2.
- CVE-2022-0907MEDIUMCVSS 5.5EG 5.52022-03-11
Unchecked Return Value to NULL Pointer Dereference in tiffcrop in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit f2b656e2.
- CVE-2022-0908HIGHCVSS 7.7EG 7.72022-03-11
Null source pointer passed as an argument to memcpy() function within TIFFFetchNormalTag () in tif_dirread.c in libtiff versions up to 4.3.0 could lead to Denial of Service via crafted TIFF file.
- CVE-2022-1035MEDIUMCVSS 5.5EG 5.52022-03-21
Segmentation Fault caused by MP4Box -lsr in GitHub repository gpac/gpac prior to 2.1.0-DEV.
- CVE-2022-1130HIGHCVSS 8.1EG 8.12022-07-23
Insufficient validation of trust input in WebOTP in Google Chrome on Android prior to 100.0.4896.60 allowed a remote attacker to send arbitrary intents from any app via a malicious app.
- CVE-2022-1172MEDIUMCVSS 5.0EG 5.02022-03-30
Null Pointer Dereference Caused Segmentation Fault in GitHub repository gpac/gpac prior to 2.1.0-DEV.
- CVE-2022-1199HIGHCVSS 7.5EG 7.52022-08-29
A flaw was found in the Linux kernel. This flaw allows an attacker to crash the Linux kernel by simulating amateur radio from the user space, resulting in a null-ptr-deref vulnerability and a use-after-free vulnerability.
- CVE-2022-1201MEDIUMCVSS 6.5EG 6.52022-04-02
NULL Pointer Dereference in mrb_vm_exec with super in GitHub repository mruby/mruby prior to 3.2. This vulnerability is capable of making the mruby interpreter crash, thus affecting the availability of the system.
- CVE-2022-1205MEDIUMCVSS 4.7EG 4.72022-08-31
A NULL pointer dereference flaw was found in the Linux kernel’s Amateur Radio AX.25 protocol functionality in the way a user connects with the protocol. This flaw allows a local user to crash the system.
- CVE-2022-1249LOWCVSS 3.3EG 3.32022-04-29
A NULL pointer dereference flaw was found in pesign's cms_set_pw_data() function of the cms_common.c file. The function fails to handle the NULL pwdata invocation from daemon.c, which leads to an explicit NULL dereference and crash on all …
- CVE-2022-1263MEDIUMCVSS 5.5EG 5.52022-08-31
A NULL pointer dereference issue was found in KVM when releasing a vCPU with dirty ring support enabled. This flaw allows an unprivileged local attacker on the host to issue specific ioctl calls, causing a kernel oops condition that result…
- CVE-2022-1283MEDIUMCVSS 5.5EG 5.52022-04-08
NULL Pointer Dereference in r_bin_ne_get_entrypoints function in GitHub repository radareorg/radare2 prior to 5.6.8. This vulnerability allows attackers to cause a denial of service (application crash).
- CVE-2022-1341HIGHCVSS 7.5EG 7.52022-04-18
An issue was discovered in in bwm-ng v0.6.2. An arbitrary null write exists in get_cmdln_options() function in src/options.c.
- CVE-2022-1382MEDIUMCVSS 5.5EG 5.52022-04-18
NULL Pointer Dereference in GitHub repository radareorg/radare2 prior to 5.6.8. This vulnerability is capable of making the radare2 crash, thus affecting the availability of the system.
- CVE-2022-1507MEDIUMCVSS 5.5EG 5.52022-04-27
chafa: NULL Pointer Dereference in function gif_internal_decode_frame at libnsgif.c:599 allows attackers to cause a denial of service (crash) via a crafted input file. in GitHub repository hpjansson/chafa prior to 1.10.2. chafa: NULL Point…
- CVE-2022-1516MEDIUMCVSS 5.5EG 5.52022-05-05
A NULL pointer dereference flaw was found in the Linux kernel’s X.25 set of standardized network protocols functionality in the way a user terminates their session using a simulated Ethernet card and continued usage of this connection. T…
- CVE-2022-1620HIGHCVSS 7.5EG 7.52022-05-08
NULL Pointer Dereference in function vim_regexec_string at regexp.c:2729 in GitHub repository vim/vim prior to 8.2.4901. NULL Pointer Dereference in function vim_regexec_string at regexp.c:2729 allows attackers to cause a denial of service…
- CVE-2022-1649MEDIUMCVSS 5.5EG 5.52022-05-10
Null pointer dereference in libr/bin/format/mach0/mach0.c in radareorg/radare2 in GitHub repository radareorg/radare2 prior to 5.7.0. It is likely to be exploitable. For more general description of heap buffer overflow, see [CWE](https://c…
- CVE-2022-1671HIGHCVSS 7.1EG 7.12022-07-26
A NULL pointer dereference flaw was found in rxrpc_preparse_s in net/rxrpc/server_key.c in the Linux kernel. This flaw allows a local attacker to crash the system or leak internal kernel information.
- CVE-2022-1674MEDIUMCVSS 5.5EG 5.52022-05-12
NULL Pointer Dereference in function vim_regexec_string at regexp.c:2733 in GitHub repository vim/vim prior to 8.2.4938. NULL Pointer Dereference in function vim_regexec_string at regexp.c:2733 allows attackers to cause a denial of service…
- CVE-2022-1725MEDIUMCVSS 5.5EG 5.52022-09-29
NULL Pointer Dereference in GitHub repository vim/vim prior to 8.2.4959.
- CVE-2022-1748HIGHCVSS 7.5EG 7.52022-08-17
Softing OPC UA C++ Server SDK, Secure Integration Server, edgeConnector, edgeAggregator, OPC Suite, and uaGate are affected by a NULL pointer dereference vulnerability.
- CVE-2022-1789MEDIUMCVSS 6.8EG 6.82022-06-02
With shadow paging enabled, the INVPCID instruction results in a call to kvm_mmu_invpcid_gva. If INVPCID is executed with CR0.PG=0, the invlpg callback is not set and the result is a NULL pointer dereference.
- CVE-2022-1852MEDIUMCVSS 5.5EG 5.52022-06-30
A NULL pointer dereference flaw was found in the Linux kernel’s KVM module, which can lead to a denial of service in the x86_emulate_insn in arch/x86/kvm/emulate.c. This flaw occurs while executing an illegal instruction in guest in the …
- CVE-2022-20333MEDIUMCVSS 6.5EG 6.52022-08-12
In Bluetooth, there is a possible crash due to a missing null check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Andr…
- CVE-2022-20334MEDIUMCVSS 6.5EG 6.52022-08-12
In Bluetooth, there are possible process crashes due to dereferencing a null pointer. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.Product: Andr…
- CVE-2022-20521MEDIUMCVSS 5.0EG 5.02022-12-16
In sdpu_find_most_specific_service_uuid of sdp_utils.cc, there is a possible way to crash Bluetooth due to a missing null check. This could lead to local denial of service with no additional execution privileges needed. User interaction is…
- CVE-2022-20682HIGHCVSS 8.6EG 8.62022-04-15
A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE Wireless Controller Software for the Catalyst 9000 Family could allow an unauthenticated, remote attacker to cause a den…
- CVE-2022-20746HIGHCVSS 8.6EG 8.62022-05-03
A vulnerability in the TCP proxy functionality of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a denial of service (DoS) condition. This vulnerability is due to improper handling …
- CVE-2022-20796MEDIUMCVSS 6.5EG 6.52022-05-04
On May 4, 2022, the following vulnerability in the ClamAV scanning library versions 0.103.5 and earlier and 0.104.2 and earlier was disclosed: A vulnerability in Clam AntiVirus (ClamAV) versions 0.103.4, 0.103.5, 0.104.1, and 0.104.2 could…
- CVE-2022-2085MEDIUMCVSS 5.5EG 5.52022-06-16
A NULL pointer dereference vulnerability was found in Ghostscript, which occurs when it tries to render a large number of bits in memory. When allocating a buffer device, it relies on an init_device_procs defined for the device that uses i…
- CVE-2022-2121HIGHCVSS 7.5EG 7.52022-06-24
OFFIS DCMTK's (All versions prior to 3.6.7) has a NULL pointer dereference vulnerability while processing DICOM files, which may result in a denial-of-service condition.
- CVE-2022-2153MEDIUMCVSS 5.5EG 5.52022-08-31
A flaw was found in the Linux kernel’s KVM when attempting to set a SynIC IRQ. This issue makes it possible for a misbehaving VMM to write to SYNIC/STIMER MSRs, causing a NULL pointer dereference. This flaw allows an unprivileged local a…
- CVE-2022-21546HIGHCVSS 7.8EG 7.82025-05-02
In the Linux kernel, the following vulnerability has been resolved: scsi: target: Fix WRITE_SAME No Data Buffer crash In newer version of the SBC specs, we have a NDOB bit that indicates there is no data buffer that gets written out. If …
- CVE-2022-21736HIGHCVSS 7.6EG 7.62022-02-03
Tensorflow is an Open Source Machine Learning Framework. The implementation of `SparseTensorSliceDataset` has an undefined behavior: under certain condition it can be made to dereference a `nullptr` value. The 3 input arguments to `SparseT…
Map vulnerabilities like CWE-476 to your infrastructure
EchelonGraph correlates every CVE — across CWE-476 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →