CWE-476

Medium likelihood

NULL Pointer Dereference

Parent: CWE-710 - Improper Adherence to Coding Standards

The product dereferences a pointer that it expects to be valid but is NULL.

5,323 vulnerabilities with CWE-476
CVE-2020-36558 MEDIUM
Linux Kernel < 5.5.7 - NULL Pointer Dereference via VT_RESIZEX Race Condition
CVSS 5.1
CVE-2020-25427 MEDIUM
GPAC MP4Box - Denial of Service via Null Pointer Dereference in gf_isom_get_track_id
CVSS 5.5
CVE-2020-23026 HIGH
dhrystone 2.1 - Denial of Service via NULL Pointer Dereference in main()
CVSS 7.5
CVE-2020-36135 MEDIUM
aomedia 2.0.1 - NULL Pointer Dereference in rate_hist.c
CVSS 6.5
CVE-2020-36130 MEDIUM
aomedia 2.0.1 - NULL Pointer Dereference in av1/av1_dx_iface.c
CVSS 6.5
CVE-2020-23879 HIGH
pdf2json v0.71 - NULL Pointer Dereference in ObjectStream::getObject
CVSS 7.5
CVE-2020-23872 HIGH
pdf2xml 2.0 - Denial of Service via TextPage::restoreState NULL Pointer Dereference
CVSS 7.5
CVE-2020-22674 MEDIUM
gpac 0.8.0 - Denial of Service via Invalid Memory Dereference in FixTrackID
CVSS 5.5
CVE-2020-20896 HIGH
FFmpeg 4.2.1 - Denial of Service via Null Pointer Dereference in latm_write_packet
CVSS 8.8
CVE-2020-19752 HIGH
gifsicle 1.92 - NULL Pointer Dereference in find_color_or_error
CVSS 7.5
CVE-2020-18731 HIGH
IEC104 v1.0 - Denial of Service via Iec104_Deal_FirmUpdate Function
CVSS 7.5
CVE-2020-18730 HIGH
IEC104 v1.0 - Denial of Service via Iec104_Deal_I Function
CVSS 7.5
CVE-2020-23331 HIGH
Bento4 - Denial of Service via NULL Pointer Dereference in AP4_DescriptorListWriter
CVSS 7.5
CVE-2020-23330 HIGH
Bento4 < 1.6.0-635 - Denial of Service via AP4_Stz2Atom::GetSampleSize NULL Pointer Dereference
CVSS 7.5
CVE-2020-22352 MEDIUM
GPAC v0.8 - Denial of Service via Crafted MP4Box Input File
CVSS 5.5
CVE-2020-19488 MEDIUM
gpac MP4Box 0.8.0 - Denial of Service via Invalid Read in ilst_item_Read
CVSS 5.5
CVE-2020-19470 MEDIUM
PDF2JSON 0.70 - Denial of Service via NULL Pointer Dereference in DCTStream::getChar
CVSS 5.5
CVE-2020-19468 MEDIUM
PDF2JSON 0.70 - Denial of Service via Null Pointer Dereference in EmbedStream::getChar
CVSS 5.5
CVE-2020-20231 MEDIUM
Mikrotik RouterOS <= 6.48.3 - Authenticated Denial of Service via /nova/bin/detnet NULL Pointer Dereference
CVSS 6.5
CVE-2020-19722 MEDIUM
Bento4 1.5.1-628 - Denial of Service via Memory Allocation Failure
CVSS 6.5
CVE-2020-19720 MEDIUM
Bento4 1.5.1-628 - Denial of Service via Memory Allocation Failure in AP4IkmsAtom
CVSS 6.5
CVE-2020-19718 MEDIUM
Bento4 1.5.1-628 - Denial of Service via Memory Allocation Failure
CVSS 6.5
CVE-2020-19717 MEDIUM
Bento4 1.5.1-628 - Denial of Service via NULL Pointer Dereference in Ap48bdlAtom.cpp
CVSS 6.5
CVE-2020-20252 MEDIUM
MikroTik RouterOS < 6.47 - Authenticated Denial of Service via LCD Status Process
CVSS 6.5
CVE-2020-20250 MEDIUM
Mikrotik RouterOs < 6.47 - Authenticated Denial of Service via /nova/bin/lcdstat NULL Pointer Dereference
CVSS 6.5
Details
Vulnerabilities 5,323
Exploit Likelihood Medium