CWE-476

Medium likelihood

NULL Pointer Dereference

Parent: CWE-710 - Improper Adherence to Coding Standards

The product dereferences a pointer that it expects to be valid but is NULL.

5,319 vulnerabilities with CWE-476
CVE-2021-33444 MEDIUM
cesanta mjs < 2.20.0 - NULL Pointer Dereference in getprop_builtin_foreign()
CVSS 5.5
CVE-2021-33442 MEDIUM
cesanta/mjs < 2.20.0 - NULL Pointer Dereference in json_printf
CVSS 5.5
CVE-2021-33441 MEDIUM
mjs < 2.20.0 - NULL Pointer Dereference in exec_expr()
CVSS 5.5
CVE-2021-33440 MEDIUM
cesanta mjs < 2.20.0 - NULL Pointer Dereference in mjs_bcode_commit
CVSS 5.5
CVE-2021-33439 MEDIUM
cesanta mjs < 2.20.0 - Integer Overflow in gc_compact_strings
CVSS 5.5
CVE-2021-41689 HIGH
DCMTK <= 3.6.6 - Denial of Service via Null String Copy in dcmqrdb
CVSS 7.5
CVE-2021-40944 MEDIUM
GPAC MP4Box 1.1.0 - Denial of Service via Null Pointer Dereference in gf_filter_pid_get_packet
CVSS 5.5
CVE-2021-40943 MEDIUM
Bento4 1.6.0-638 - Denial of Service via Null Pointer Dereference in AP4_DescriptorListInspector::Action
CVSS 5.5
CVE-2021-35087 HIGH
Snapdragon Industrial IOT - Memory Corruption
CVSS 7.5
CVE-2021-35076 HIGH
Qualcomm AR8035 Firmware - Null Pointer Dereference in RRC Connection Reconfiguration
CVSS 7.5
CVE-2021-42202 MEDIUM
swftools < 2020-12-22 - Denial of Service via NULL Pointer Dereference in swf_DeleteFilter
CVSS 5.5
CVE-2021-42200 MEDIUM
swftools < 2020-12-22 - Denial of Service via NULL Pointer Dereference in swfdump.c
CVSS 5.5
CVE-2021-42198 MEDIUM
swftools < 2020-12-22 - Denial of Service via NULL Pointer Dereference in swf_GetBits
CVSS 5.5
CVE-2021-42196 MEDIUM
swftools < 2020-12-22 - Denial of Service via NULL Pointer Dereference in traits_parse()
CVSS 5.5
CVE-2021-33254 HIGH
EmbedThis Appweb 8.2.1 - Denial of Service via Stream Parameter to parseUri
CVSS 7.5
CVE-2021-44974 MEDIUM
radare2 < 5.5.4 - NULL Pointer Dereference in Binary Symbol Parser
CVSS 5.5
CVE-2021-27548 MEDIUM
xpdf 4.03 - Null Pointer Dereference in XFAScanner::scanNode()
CVSS 5.5
CVE-2021-36614 MEDIUM
Mikrotik RouterOs <6.48.2 - Memory Corruption
CVSS 6.5
CVE-2021-36613 MEDIUM
Mikrotik RouterOs <6.48.2 - Memory Corruption
CVSS 6.5
CVE-2021-33317 HIGH
TRENDnet TI-PG1284i <2.0.2.S0 - Memory Corruption
CVSS 7.5
CVE-2021-42528 MEDIUM
XMP Toolkit < 2021.07 - Unauthenticated Denial of Service via Crafted File Parsing
CVSS 5.5
CVE-2021-44508 HIGH
Fisglobal Gt.m < 7.0-000 - NULL Pointer Dereference
CVSS 7.5
CVE-2021-44507 HIGH
Fisglobal Gt.m < 7.0-000 - NULL Pointer Dereference
CVSS 7.5
CVE-2021-44506 HIGH
YottaDB GT.M < 7.0-000 - NULL Pointer Dereference via do_verify Function Pointer Corruption
CVSS 7.5
CVE-2021-44505 HIGH
YottaDB GT.M < 7.0-000 - NULL Pointer Dereference via ZPrint
CVSS 7.5
Details
Vulnerabilities 5,319
Exploit Likelihood Medium