CWE-476— NULL Pointer Dereference
The product dereferences a pointer that it expects to be valid but is NULL.— MITRE CWE catalog
5,486 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-476page 54 of 110
- CVE-2023-22839HIGHCVSS 7.5EG 7.52023-02-01
On BIG-IP versions 17.0.x before 17.0.0.2, 16.1.x before 16.1.3.3, 15.1.x before 15.1.8.1, 14.1.x before 14.1.5.3, and all version of 13.1.x, when a DNS profile with the Rapid Response Mode setting enabled is configured on a virtual server…
- CVE-2023-22997MEDIUMCVSS 5.5EG 5.52023-02-28
In the Linux kernel before 6.1.2, kernel/module/decompress.c misinterprets the module_get_next_page return value (expects it to be NULL in the error case, whereas it is actually an error pointer).
- CVE-2023-22999MEDIUMCVSS 5.5EG 5.52023-02-28
In the Linux kernel before 5.16.3, drivers/usb/dwc3/dwc3-qcom.c misinterprets the dwc3_qcom_create_urs_usb_platdev return value (expects it to be NULL in the error case, whereas it is actually an error pointer).
- CVE-2023-23000HIGHCVSS 5.5EG 7.82023-03-01
In the Linux kernel before 5.17, drivers/phy/tegra/xusb.c mishandles the tegra_xusb_find_port_node return value. Callers expect NULL in the error case, but an error pointer is used.
- CVE-2023-23001MEDIUMCVSS 5.5EG 5.52023-03-01
In the Linux kernel before 5.16.3, drivers/scsi/ufs/ufs-mediatek.c misinterprets the regulator_get return value (expects it to be NULL in the error case, whereas it is actually an error pointer).
- CVE-2023-23002MEDIUMCVSS 5.5EG 5.52023-03-01
In the Linux kernel before 5.16.3, drivers/bluetooth/hci_qca.c misinterprets the devm_gpiod_get_index_optional return value (expects it to be NULL in the error case, whereas it is actually an error pointer).
- CVE-2023-23004MEDIUMCVSS 5.5EG 5.52023-03-01
In the Linux kernel before 5.19, drivers/gpu/drm/arm/malidp_planes.c misinterprets the get_sg_table return value (expects it to be NULL in the error case, whereas it is actually an error pointer).
- CVE-2023-23005MEDIUMCVSS 5.5EG 5.52023-03-01
In the Linux kernel before 6.2, mm/memory-tiers.c misinterprets the alloc_memory_type return value (expects it to be NULL in the error case, whereas it is actually an error pointer). NOTE: this is disputed by third parties because there ar…
- CVE-2023-23006MEDIUMCVSS 5.5EG 5.52023-03-01
In the Linux kernel before 5.15.13, drivers/net/ethernet/mellanox/mlx5/core/steering/dr_domain.c misinterprets the mlx5_get_uars_page return value (expects it to be NULL in the error case, whereas it is actually an error pointer).
- CVE-2023-23087CRITICALCVSS 9.8EG 9.82023-02-03
An issue was found in MojoJson v1.2.3 allows attackers to execute arbitary code via the destroy function.
- CVE-2023-23108HIGHCVSS 7.5EG 7.52023-02-27
In crasm 1.8-3, invalid input validation, specific files passed to the command line application, can lead to a NULL pointer dereference in the function Xasc.
- CVE-2023-24465MEDIUMCVSS 5.5EG 5.52023-03-10
Communication Wi-Fi subsystem within OpenHarmony-v3.1.4 and prior versions, OpenHarmony-v3.0.7 and prior versions has a null pointer reference vulnerability which local attackers can exploit this vulnerability to cause the current applic…
- CVE-2023-24751MEDIUMCVSS 6.5EG 6.52023-03-01
libde265 v1.0.10 was discovered to contain a NULL pointer dereference in the mc_chroma function at motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input file.
- CVE-2023-24752MEDIUMCVSS 5.5EG 5.52023-03-01
libde265 v1.0.10 was discovered to contain a NULL pointer dereference in the ff_hevc_put_hevc_epel_pixels_8_sse function at sse-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input file.
- CVE-2023-24754MEDIUMCVSS 5.5EG 5.52023-03-01
libde265 v1.0.10 was discovered to contain a NULL pointer dereference in the ff_hevc_put_weighted_pred_avg_8_sse function at sse-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input file.
- CVE-2023-24755MEDIUMCVSS 5.5EG 5.52023-03-01
libde265 v1.0.10 was discovered to contain a NULL pointer dereference in the put_weighted_pred_8_fallback function at fallback-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input file.
- CVE-2023-24756MEDIUMCVSS 5.5EG 5.52023-03-01
libde265 v1.0.10 was discovered to contain a NULL pointer dereference in the ff_hevc_put_unweighted_pred_8_sse function at sse-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input file.
- CVE-2023-24757MEDIUMCVSS 5.5EG 5.52023-03-01
libde265 v1.0.10 was discovered to contain a NULL pointer dereference in the put_unweighted_pred_16_fallback function at fallback-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input file.
- CVE-2023-24758MEDIUMCVSS 5.5EG 5.52023-03-01
libde265 v1.0.10 was discovered to contain a NULL pointer dereference in the ff_hevc_put_weighted_pred_avg_8_sse function at sse-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input file.
- CVE-2023-24818HIGHCVSS 7.5EG 7.52023-04-24
RIOT-OS, an operating system that supports Internet of Things devices, contains a network stack with the ability to process 6LoWPAN frames. Prior to version 2022.10, an attacker can send a crafted frame to the device resulting in a NULL po…
- CVE-2023-24822HIGHCVSS 7.5EG 7.52023-04-24
RIOT-OS, an operating system that supports Internet of Things devices, contains a network stack with the ability to process 6LoWPAN frames. Prior to version 2022.10, an attacker can send a crafted frame to the device resulting in a NULL po…
- CVE-2023-24825HIGHCVSS 7.5EG 7.52023-05-30
RIOT-OS, an operating system for Internet of Things (IoT) devices, contains a network stack with the ability to process 6LoWPAN frames. Prior to version 2023.04, an attacker can send a crafted frame to the device to trigger a NULL pointer …
- CVE-2023-24832HIGHCVSS 7.5EG 7.52023-05-18
A null pointer dereference bug in Hermes prior to commit 5cae9f72975cf0e5a62b27fdd8b01f103e198708 could have been used by an attacker to crash an Hermes runtime where the EnableHermesInternal config option was set to true. Note that this i…
- CVE-2023-24847HIGHCVSS 7.5EG 7.52023-10-03
Transient DOS in Modem while allocating DSM items.
- CVE-2023-24859HIGHCVSS 7.5EG 7.52023-03-14
Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability
- CVE-2023-24910HIGHCVSS 7.8EG 7.82023-03-14
Windows Graphics Component Elevation of Privilege Vulnerability
- CVE-2023-24938MEDIUMCVSS 6.5EG 6.52023-06-14
Windows CryptoAPI Denial of Service Vulnerability
- CVE-2023-24940HIGHCVSS 7.5EG 7.52023-05-09
Windows Pragmatic General Multicast (PGM) Denial of Service Vulnerability
- CVE-2023-25071MEDIUMCVSS 5.6EG 5.62023-11-14
NULL pointer dereference in some Intel(R) Arc(TM) & Iris(R) Xe Graphics - WHQL - Windows Drviers before version 31.0.101.4255 may allow authenticated user to potentially enable denial of service via local access.
- CVE-2023-25510LOWCVSS 3.3EG 3.32023-04-22
NVIDIA CUDA Toolkit SDK for Linux and Windows contains a NULL pointer dereference in cuobjdump, where a local user running the tool against a malformed binary may cause a limited denial of service.
- CVE-2023-25523LOWCVSS 3.3EG 3.32023-07-04
NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in the nvdisasm binary file, where an attacker may cause a NULL pointer dereference by providing a user with a malformed ELF file. A successful exploit of this vulnerabi…
- CVE-2023-25660HIGHCVSS 7.5EG 7.52023-03-25
TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, when the parameter `summarize` of `tf.raw_ops.Print` is zero, the new method `SummarizeArray<bool>` will reference to a nullptr, leading to a …
- CVE-2023-25663HIGHCVSS 7.5EG 7.52023-03-25
TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, when `ctx->step_containter()` is a null ptr, the Lookup function will be executed with a null pointer. A fix is included in TensorFlow 2.12.0 …
- CVE-2023-25665HIGHCVSS 7.5EG 7.52023-03-25
TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, when `SparseSparseMaximum` is given invalid sparse tensors as inputs, it can give a null pointer error. A fix is included in TensorFlow versio…
- CVE-2023-25670HIGHCVSS 7.5EG 7.52023-03-25
TensorFlow is an open source platform for machine learning. Versions prior to 2.12.0 and 2.11.1 have a null point error in QuantizedMatMulWithBiasAndDequantize with MKL enabled. A fix is included in TensorFlow version 2.12.0 and version 2.…
- CVE-2023-25672HIGHCVSS 7.5EG 7.52023-03-25
TensorFlow is an open source platform for machine learning. The function `tf.raw_ops.LookupTableImportV2` cannot handle scalars in the `values` parameter and gives an NPE. A fix is included in TensorFlow version 2.12.0 and version 2.11.1.
- CVE-2023-25674HIGHCVSS 7.5EG 7.52023-03-25
TensorFlow is an open source machine learning platform. Versions prior to 2.12.0 and 2.11.1 have a null pointer error in RandomShuffle with XLA enabled. A fix is included in TensorFlow 2.12.0 and 2.11.1.
- CVE-2023-25676HIGHCVSS 7.5EG 7.52023-03-25
TensorFlow is an open source machine learning platform. When running versions prior to 2.12.0 and 2.11.1 with XLA, `tf.raw_ops.ParallelConcat` segfaults with a nullptr dereference when given a parameter `shape` with rank that is not greate…
- CVE-2023-25947MEDIUMCVSS 6.2EG 6.22023-03-10
The bundle management subsystem within OpenHarmony-v3.1.4 and prior versions has a null pointer reference vulnerability which local attackers can exploit this vulnerability to cause a DoS attack to the system when installing a malicious …
- CVE-2023-2609HIGHCVSS 5.5EG 7.82023-05-09
NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.1531.
- CVE-2023-2617MEDIUMCVSS 5.3EG 5.32023-05-10
A vulnerability classified as problematic was found in OpenCV wechat_qrcode Module up to 4.7.0. Affected by this vulnerability is the function DecodedBitStreamParser::decodeByteSegment of the file qrcode/decoder/decoded_bit_stream_parser.c…
- CVE-2023-26463CRITICALCVSS 9.8EG 9.82023-04-15
strongSwan 5.9.8 and 5.9.9 potentially allows remote code execution because it uses a variable named "public" for two different purposes within the same function. There is initially incorrect access control, later followed by an expired po…
- CVE-2023-26916HIGHCVSS 5.3EG 7.52023-04-03
libyang from v2.0.164 to v2.1.30 was discovered to contain a NULL pointer dereference via the function lys_parse_mem at lys_parse_mem.c.
- CVE-2023-26917HIGHCVSS 7.5EG 7.52023-04-11
libyang from v2.0.164 to v2.1.30 was discovered to contain a NULL pointer dereference via the function lysp_stmt_validate_value at lys_parse_mem.c.
- CVE-2023-27102MEDIUMCVSS 6.5EG 6.52023-03-15
Libde265 v1.0.11 was discovered to contain a segmentation violation via the function decoder_context::process_slice_segment_header at decctx.cc.
- CVE-2023-27114MEDIUMCVSS 5.5EG 5.52023-03-10
radare2 v5.8.3 was discovered to contain a segmentation fault via the component wasm_dis at p/wasm/wasm.c.
- CVE-2023-2731MEDIUMCVSS 5.5EG 5.52023-05-17
A NULL pointer dereference flaw was found in Libtiff's LZWDecode() function in the libtiff/tif_lzw.c file. This flaw allows a local attacker to craft specific input data that can cause the program to dereference a NULL pointer when decompr…
- CVE-2023-27336HIGHCVSS 7.5EG 7.52024-05-03
Softing edgeConnector Siemens OPC UA Server Null Pointer Dereference Denial-of-Service Vulnerability. This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Softing edgeConnector Sie…
- CVE-2023-27784HIGHCVSS 7.5EG 7.52023-03-16
An issue found in TCPReplay v.4.4.3 allows a remote attacker to cause a denial of service via the read_hexstring function at the utils.c:309 endpoint.
- CVE-2023-27785HIGHCVSS 7.5EG 7.52023-03-16
An issue found in TCPreplay TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the parse endpoints function.
Map vulnerabilities like CWE-476 to your infrastructure
EchelonGraph correlates every CVE — across CWE-476 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →