CWE-476

Medium likelihood

NULL Pointer Dereference

Parent: CWE-710 - Improper Adherence to Coding Standards

The product dereferences a pointer that it expects to be valid but is NULL.

5,319 vulnerabilities with CWE-476
CVE-2022-48640 MEDIUM
Linux Kernel 5.14-5.15.70, 5.16-5.19.11 - NULL Pointer Dereference in Bonding Round Robin Mode
CVSS 5.5
CVE-2022-48636 MEDIUM
Linux Kernel NULL Pointer Dereference in dasd_alias_get_start_dev
CVSS 5.5
CVE-2022-24810 MEDIUM
net-snmp < 5.9.2 - Authenticated Denial of Service via Malformed OID in nsVacmAccessTable
CVSS 6.5
CVE-2022-24809 MEDIUM
net-snmp < 5.9.2 - Authenticated Denial of Service via Malformed OID in GET-NEXT Request
CVSS 6.5
CVE-2022-24808 MEDIUM
net-snmp < 5.9.2 - Authenticated NULL Pointer Dereference via Malformed OID in SET Request
CVSS 6.5
CVE-2022-42879 MEDIUM
Intel Arc Control < 1.73.5335.2 - Authenticated Denial of Service via NULL Pointer Dereference
CVSS 6.1
CVE-2022-48606 HIGH
Huawei EMUI and HarmonyOS - Denial of Service via Binder Background Management Module
CVSS 7.5
CVE-2022-47022 MEDIUM
hwloc 2.1.0-2.9.1 - Denial of Service via glibc-cpuset in topology-linux.c
CVSS 4.7
CVE-2022-36648 CRITICAL
QEMU < 7.0.0 - Remote Code Execution via Rocker Device Model
CVSS 10.0
CVE-2022-35206 MEDIUM
Binutils 2.38.50 - Null Pointer Dereference in read_and_display_attr_value
CVSS 5.5
CVE-2022-28070 HIGH
radare2 5.4.0-5.4.2 - NULL Pointer Dereference in __core_anal_fcn
CVSS 7.5
CVE-2022-48509 MEDIUM
Huawei EMUI and HarmonyOS - Denial of Service via Race Condition in Huawei Share
CVSS 5.9
CVE-2022-48445 MEDIUM
Android - Missing Authorization in Telephony Service
CVSS 5.5
CVE-2022-48444 MEDIUM
Android - Missing Authorization in Telephony Service
CVSS 5.5
CVE-2022-48443 MEDIUM
Android - Missing Authorization in Telephony Service
CVSS 5.5
CVE-2022-48442 MEDIUM
Android - Missing Authorization in Dialer Service
CVSS 5.5
CVE-2022-42878 LOW
Intel Trace Analyzer and Collector < 2021.8.0 - Authenticated Information Disclosure via Null Pointer Dereference
CVSS 2.8
CVE-2022-29508 MEDIUM
Intel Virtual RAID on CPU < 7.7.6.1003 - Authenticated Privilege Escalation via Null Pointer Dereference
CVSS 6.3
CVE-2022-48241 MEDIUM
Android - Local Denial of Service via Telephony Service Permission Check Bypass
CVSS 5.5
CVE-2022-48231 MEDIUM
Android - Local Denial of Service via Missing Permission Check in Soter Service
CVSS 5.5
CVE-2022-33305 HIGH
Qualcomm Modem Firmware - Denial of Service via NULL Pointer Dereference
CVSS 7.5
CVE-2022-33304 HIGH
Qualcomm Modem Firmware - Denial of Service via NULL Pointer Dereference
CVSS 7.5
CVE-2022-42335 HIGH
Xen - Unauthenticated Arbitrary Pointer Dereference in Shadow Paging
CVSS 7.8
CVE-2022-33294 HIGH
Qualcomm MDM and Snapdragon Firmware - Denial of Service via LWM2M Registration Response
CVSS 7.5
CVE-2022-33223 HIGH
Qualcomm Modem - HTTP Chunk Denial of Service
CVSS 7.5
Details
Vulnerabilities 5,319
Exploit Likelihood Medium