CWE-476— NULL Pointer Dereference
The product dereferences a pointer that it expects to be valid but is NULL.— MITRE CWE catalog
5,487 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-476page 55 of 110
- CVE-2023-27786HIGHCVSS 7.5EG 7.52023-03-16
An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the macinstring function.
- CVE-2023-27787HIGHCVSS 7.5EG 7.52023-03-16
An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the parse_list function at the list.c:81 endpoint.
- CVE-2023-28327MEDIUMCVSS 5.5EG 5.52023-04-19
A NULL pointer dereference flaw was found in the UNIX protocol in net/unix/diag.c In unix_diag_get_exact in the Linux Kernel. The newly allocated skb does not have sk, leading to a NULL pointer. This flaw allows a local user to crash or po…
- CVE-2023-28328MEDIUMCVSS 5.5EG 5.52023-04-19
A NULL pointer dereference flaw was found in the az6027 driver in drivers/media/usb/dev-usb/az6027.c in the Linux Kernel. The message from user space is not checked properly before transferring into the device. This flaw allows a local use…
- CVE-2023-2840CRITICALCVSS 9.8EG 9.82023-05-22
NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.2.2.
- CVE-2023-28466HIGHCVSS 7.0EG 7.02023-03-16
do_tls_getsockopt in net/tls/tls_main.c in the Linux kernel through 6.2.6 lacks a lock_sock call, leading to a race condition (with a resultant use-after-free or NULL pointer dereference).
- CVE-2023-28484MEDIUMCVSS 6.5EG 6.52023-04-24
In libxml2 before 2.10.4, parsing of certain invalid XSD schemas can lead to a NULL pointer dereference and subsequently a segfault. This occurs in xmlSchemaFixupComplexType in xmlschemas.c.
- CVE-2023-28625HIGHCVSS 7.5EG 7.52023-04-03
mod_auth_openidc is an authentication and authorization module for the Apache 2.x HTTP server that implements the OpenID Connect Relying Party functionality. In versions 2.0.0 through 2.4.13.1, when `OIDCStripCookies` is set and a crafted …
- CVE-2023-2871LOWCVSS 3.3EG 3.32023-05-24
A vulnerability was found in FabulaTech USB for Remote Desktop 6.1.0.0. It has been rated as problematic. Affected by this issue is the function 0x220448/0x220420/0x22040c/0x220408 of the component IoControlCode Handler. The manipulation l…
- CVE-2023-2872MEDIUMCVSS 5.5EG 5.52023-05-24
A vulnerability classified as problematic has been found in FlexiHub 5.5.14691.0. This affects the function 0x220088 in the library fusbhub.sys of the component IoControlCode Handler. The manipulation leads to null pointer dereference. An …
- CVE-2023-2875MEDIUMCVSS 5.5EG 5.52023-05-24
A vulnerability, which was classified as problematic, was found in eScan Antivirus 22.0.1400.2443. Affected is the function 0x22E008u in the library PROCOBSRVESX.SYS of the component IoControlCode Handler. The manipulation leads to null po…
- CVE-2023-28766HIGHCVSS 7.5EG 7.52023-04-11
A vulnerability has been identified in SIPROTEC 5 6MD85 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 6MD86 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 6MD89 (CP300) (All versions >= V7.80 < V9.64), SIPROTEC 5 6MU85 (CP300) (…
- CVE-2023-28827MEDIUMCVSS 5.9EG 5.92024-09-10
A vulnerability has been identified in SIMATIC CP 1242-7 V2 (incl. SIPLUS variants) (All versions < V3.5.20), SIMATIC CP 1243-1 (incl. SIPLUS variants) (All versions < V3.5.20), SIMATIC CP 1243-1 DNP3 (incl. SIPLUS variants) (All versions …
- CVE-2023-2898MEDIUMCVSS 4.7EG 4.72023-05-26
There is a null-pointer-dereference flaw found in f2fs_write_end_io in fs/f2fs/data.c in the Linux kernel. This flaw allows a local privileged user to cause a denial of service problem.
- CVE-2023-2908MEDIUMCVSS 5.5EG 5.52023-06-30
A null pointer dereference issue was found in Libtiff's tif_dir.c file. This issue may allow an attacker to pass a crafted TIFF image file to the tiffcp utility which triggers a runtime error that causes undefined behavior. This will resul…
- CVE-2023-29179MEDIUMCVSS 6.5EG 6.52024-02-22
A null pointer dereference in Fortinet FortiOS version 7.2.0 through 7.2.4, 7.0.0 through 7.0.11, 6.4.0 through 6.4.12, Fortiproxy version 7.2.0 through 7.2.4, 7.0.0 through 7.0.10 allows attacker to denial of service via specially crafte…
- CVE-2023-29180HIGHCVSS 7.5EG 7.52024-02-22
A null pointer dereference in Fortinet FortiOS version 7.2.0 through 7.2.4, 7.0.0 through 7.0.11, 6.4.0 through 6.4.12, 6.2.0 through 6.2.14, 6.0.0 through 6.0.16, FortiProxy 7.2.0 through 7.2.3, 7.0.0 through 7.0.10, 2.0.0 through 2.0.12,…
- CVE-2023-2953HIGHCVSS 7.5EG 7.52023-05-30
A vulnerability was found in openldap. This security flaw causes a null pointer dereference in ber_memalloc_x() function.
- CVE-2023-29539HIGHCVSS 8.8EG 8.82023-06-02
When handling the filename directive in the Content-Disposition header, the filename would be truncated if the filename contained a NULL character. This could have led to reflected file download attacks potentially tricking users to instal…
- CVE-2023-29569MEDIUMCVSS 5.5EG 5.52023-04-14
Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via ffi_cb_impl_wpwwwww at src/mjs_ffi.c. This vulnerability can lead to a Denial of Service (DoS).
- CVE-2023-29984HIGHCVSS 7.5EG 7.52023-07-11
Null pointer dereference vulnerability exists in multiple vendors MFPs and printers which implement Debut web server 1.2 or 1.3. Processing a specially crafted request may lead an affected product to a denial-of-service (DoS) condition. As…
- CVE-2023-29996HIGHCVSS 7.5EG 7.52023-05-04
In NanoMQ v0.15.0-0, segment fault with Null Pointer Dereference occurs in the process of decoding subinfo_decode and unsubinfo_decode.
- CVE-2023-3012HIGHCVSS 7.8EG 7.82023-05-31
NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.2.2.
- CVE-2023-30755MEDIUMCVSS 4.4EG 4.42024-09-10
A vulnerability has been identified in SIMATIC CP 1242-7 V2 (incl. SIPLUS variants) (All versions < V3.5.20), SIMATIC CP 1243-1 (incl. SIPLUS variants) (All versions < V3.5.20), SIMATIC CP 1243-1 DNP3 (incl. SIPLUS variants) (All versions …
- CVE-2023-30756MEDIUMCVSS 5.9EG 5.92024-09-10
A vulnerability has been identified in SIMATIC CP 1242-7 V2 (incl. SIPLUS variants) (All versions < V3.5.20), SIMATIC CP 1243-1 (incl. SIPLUS variants) (All versions < V3.5.20), SIMATIC CP 1243-1 DNP3 (incl. SIPLUS variants) (All versions …
- CVE-2023-31018MEDIUMCVSS 6.5EG 6.52023-11-02
NVIDIA GPU Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an unprivileged regular user can cause a NULL-pointer dereference, which may lead to denial of service.
- CVE-2023-31021MEDIUMCVSS 5.5EG 5.52023-11-02
NVIDIA vGPU software for Windows and Linux contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where a malicious user in the guest VM can cause a NULL-pointer dereference, which may lead to denial of service.
- CVE-2023-31022MEDIUMCVSS 5.5EG 5.52023-11-02
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where a NULL-pointer dereference may lead to denial of service.
- CVE-2023-31026MEDIUMCVSS 6.0EG 6.02023-11-02
NVIDIA vGPU software for Windows and Linux contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where a NULL-pointer dereference may lead to denial of service.
- CVE-2023-3106MEDIUMCVSS 6.6EG 6.62023-07-12
A NULL pointer dereference vulnerability was found in netlink_dump. This issue can occur when the Netlink socket receives the message(sendmsg) for the XFRM_MSG_GETSA, XFRM_MSG_GETPOLICY type message, and the DUMP flag is set and can cause …
- CVE-2023-31081MEDIUMCVSS 5.5EG 5.52023-04-24
An issue was discovered in drivers/media/test-drivers/vidtv/vidtv_bridge.c in the Linux kernel 6.2. There is a NULL pointer dereference in vidtv_mux_stop_thread. In vidtv_stop_streaming, after dvb->mux=NULL occurs, it executes vidtv_mux_st…
- CVE-2023-31083MEDIUMCVSS 4.7EG 4.72023-04-24
An issue was discovered in drivers/bluetooth/hci_ldisc.c in the Linux kernel 6.2. In hci_uart_tty_ioctl, there is a race condition between HCIUARTSETPROTO and HCIUARTGETPROTO. HCI_UART_PROTO_SET is set before hu->proto is set. A NULL point…
- CVE-2023-31129HIGHCVSS 7.5EG 7.52023-05-08
The Contiki-NG operating system versions 4.8 and prior can be triggered to dereference a NULL pointer in the message handling code for IPv6 router solicitiations. Contiki-NG contains an implementation of IPv6 Neighbor Discovery (ND) in the…
- CVE-2023-31441MEDIUMCVSS 5.5EG 5.52023-07-18
In NATO Communications and Information Agency anet (aka Advisor Network) through 3.3.0, an attacker can provide a crafted JSON file to sanitizeJson and cause an exception. This is related to the U+FFFD Unicode replacement character. A for …
- CVE-2023-32008HIGHCVSS 7.8EG 7.82023-06-14
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
- CVE-2023-32084HIGHCVSS 7.5EG 7.52023-07-11
HTTP.sys Denial of Service Vulnerability
- CVE-2023-3212MEDIUMCVSS 4.4EG 4.42023-06-23
A NULL pointer dereference issue was found in the gfs2 file system in the Linux kernel. It occurs on corrupt gfs2 file systems when the evict code tries to reference the journal descriptor structure after it has been freed and set to NULL.…
- CVE-2023-32171MEDIUMCVSS 6.5EG 6.52024-05-03
Unified Automation UaGateway OPC UA Server Null Pointer Dereference Denial-of-Service Vulnerability. This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Unified Automation UaGatew…
- CVE-2023-3220MEDIUMCVSS 5.5EG 5.52023-06-20
An issue was discovered in the Linux kernel through 6.1-rc8. dpu_crtc_atomic_check in drivers/gpu/drm/msm/disp/dpu1/dpu_crtc.c lacks check of the return value of kzalloc() and will cause the NULL Pointer Dereference.
- CVE-2023-32248HIGHCVSS 7.5EG 7.52023-07-24
A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the handling of SMB2_TREE_CONNECT and SMB2_QUERY_INFO commands. The issue results from the lack of proper validation of …
- CVE-2023-32252HIGHCVSS 7.5EG 7.52023-07-24
A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the handling of SMB2_LOGOFF commands. The issue results from the lack of proper validation of a pointer prior to accessi…
- CVE-2023-32970MEDIUMCVSS 4.9EG 4.92023-10-13
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated administrators to launch a denial-of-service (DoS) attack via a network.…
- CVE-2023-33036HIGHCVSS 7.1EG 7.12024-01-02
Permanent DOS in Hypervisor while untrusted VM without PSCI support makes a PSCI call.
- CVE-2023-33056HIGHCVSS 7.5EG 7.52023-11-07
Transient DOS in WLAN Firmware when firmware receives beacon including T2LM IE.
- CVE-2023-33088HIGHCVSS 8.4EG 8.42023-12-05
Memory corruption when processing cmd parameters while parsing vdev.
- CVE-2023-33089HIGHCVSS 7.5EG 7.52023-12-05
Transient DOS when processing a NULL buffer while parsing WLAN vdev.
- CVE-2023-33109HIGHCVSS 7.5EG 7.52024-01-02
Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host.
- CVE-2023-33121LOWCVSS 3.3EG 3.32023-06-13
A vulnerability has been identified in JT2Go (All versions < V14.2.0.3), Teamcenter Visualization V13.2 (All versions < V13.2.0.13), Teamcenter Visualization V13.3 (All versions < V13.3.0.10), Teamcenter Visualization V14.0 (All versions <…
- CVE-2023-3316MEDIUMCVSS 5.9EG 5.92023-06-19
A NULL pointer dereference in TIFFClose() is caused by a failure to open an output file (non-existent path or a path that requires permissions like /dev/null) while specifying zones.
- CVE-2023-33306MEDIUMCVSS 6.5EG 6.52023-06-16
A null pointer dereference in Fortinet FortiOS before 7.2.5, before 7.0.11 and before 6.4.13, FortiProxy before 7.2.4 and before 7.0.10 allows attacker to denial of sslvpn service via specifically crafted request in bookmark parameter.
Map vulnerabilities like CWE-476 to your infrastructure
EchelonGraph correlates every CVE — across CWE-476 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →