CWE-476

Medium likelihood

NULL Pointer Dereference

Parent: CWE-710 - Improper Adherence to Coding Standards

The product dereferences a pointer that it expects to be valid but is NULL.

5,266 vulnerabilities with CWE-476
CVE-2026-23304 MEDIUM
Linux - NULL Pointer Dereference in ip6_rt_get_dev_rcu()
CVSS 5.5
CVE-2026-23300 MEDIUM
net: ipv6: fix panic when IPv4 route references loopback IPv6 nexthop
CVSS 5.5
CVE-2026-23293 MEDIUM
net: vxlan: fix nd_tbl NULL dereference when IPv6 is disabled
CVSS 5.5
CVE-2026-23286 MEDIUM
atm: lec: fix null-ptr-deref in lec_arp_clear_vccs
CVSS 5.5
CVE-2026-23285 MEDIUM
drbd: fix null-pointer dereference on local read error
CVSS 5.5
CVE-2026-23279 MEDIUM
wifi: mac80211: fix NULL pointer dereference in mesh_rx_csa_frame()
CVSS 5.5
CVE-2026-28886 MEDIUM
iOS and iPadOS < 18.7.7 - Denial of Service via Null Pointer Dereference
CVSS 5.9
CVE-2026-32854 HIGH
LibVNCServer httpd proxy NULL Pointer Dereference
CVSS 7.5
CVE-2026-27651 HIGH
NGINX ngx_mail_auth_http_module vulnerability
CVSS 7.5
CVE-2026-4751 MEDIUM
NULL Pointer Dereference in tmate-io tmate
CVSS 5.3
CVE-2026-33853 MEDIUM
NULL Pointer Dereference in MolotovCherry Android-ImageMagick7
CVSS 5.5
CVE-2026-4743 MEDIUM
Null-Pointer Dereference Vulnerability in taurusxin/ncmdump
CVE-2026-33283 MEDIUM
Ella Core < 1.6.0 - Unauthenticated Denial of Service via Malformed UL NAS Transport Message
CVSS 6.5
CVE-2026-33282 HIGH
Ella Core < 1.6.0 - Unauthenticated Denial of Service via Malformed NGAP LocationReport Message
CVSS 7.5
CVE-2026-25075 HIGH
strongSwan 4.5.0-6.0.4 - Unauthenticated Denial of Service via EAP-TTLS AVP Parser Integer Underflow
CVSS 7.5
CVE-2026-26829 HIGH
owntone-server through c4d57aa - Denial of Service via NULL Pointer Dereference in safe_atou64
CVSS 7.5
CVE-2026-26828 HIGH
OwnTone Server - NULL Pointer Dereference
CVSS 7.5
CVE-2026-33179 MEDIUM
libfuse: NULL Pointer Dereference and Memory Leak in io_uring Queue Initialization
CVSS 5.5
CVE-2026-33164 HIGH
NULL Pointer Dereference in libde265
CVSS 7.5
CVE-2026-23277 MEDIUM
net/sched: teql: fix NULL pointer dereference in iptunnel_xmit on TEQL slave xmit
CVSS 5.5
CVE-2026-33063 HIGH
free5GC AUSF UE Authentication Panic on Nil SuciSupiMap Interface Conversion
CVSS 7.5
CVE-2026-31973 HIGH
NULL pointer dereference in samtools cram-size
CVSS 7.5
CVE-2026-31964 HIGH
HTSlib CRAM Decoder - NULL Pointer Dereference
CVSS 7.5
CVE-2026-23251 MEDIUM
xfs: only call xf{array,blob}_destroy if we have a valid pointer
CVSS 5.5
CVE-2026-23250 MEDIUM
xfs: check return value of xchk_scrub_create_subord
CVSS 5.5
Details
Vulnerabilities 5,266
Exploit Likelihood Medium