CWE-476

Medium likelihood

NULL Pointer Dereference

Parent: CWE-710 - Improper Adherence to Coding Standards

The product dereferences a pointer that it expects to be valid but is NULL.

5,323 vulnerabilities with CWE-476
CVE-2020-20216 MEDIUM
Mikrotik RouterOs 6.44.6 - Authenticated Denial of Service via /nova/bin/graphing NULL Pointer Dereference
CVSS 6.5
CVE-2020-20212 MEDIUM
Mikrotik RouterOs 6.44.5 - Authenticated Denial of Service via NULL Pointer Dereference in Console Process
CVSS 6.5
CVE-2020-25467 MEDIUM
long_range_zip 0.621 - Denial of Service via Null Pointer Dereference in lzo_decompress_buf
CVSS 5.5
CVE-2020-13950 HIGH
Apache HTTP Server 2.4.41-2.4.46 - Denial of Service via Crafted Content-Length and Transfer-Encoding Headers
CVSS 7.5
CVE-2020-35503 MEDIUM
QEMU < 6.0.0 - Denial of Service via megasas-gen2 SCSI Host Bus Adapter Emulation
CVSS 6.0
CVE-2020-18395 HIGH
GNU Gama 2.04 - Denial of Service via NULL Pointer Dereference in ellipsoid.h
CVSS 7.5
CVE-2020-35505 MEDIUM
QEMU < 6.0.0 - Denial of Service via am53c974 SCSI Host Bus Adapter Emulation
CVSS 4.4
CVE-2020-35504 MEDIUM
QEMU < 6.0.0 - Denial of Service via SCSI Emulation NULL Pointer Dereference
CVSS 6.0
CVE-2020-20450 HIGH
FFmpeg 4.2 - Denial of Service via Null Pointer Dereference in libavformat/aviobuf.c
CVSS 7.5
CVE-2020-10066 LOW
Zephyr < 1.14.2 and >= 2.2.0 - NULL Pointer Dereference in Bluetooth HCI Core
CVSS 2.5
CVE-2020-20266 MEDIUM
Mikrotik RouterOS < 6.47 - Authenticated Denial of Service via dot1x Process NULL Pointer Dereference
CVSS 6.5
CVE-2020-20222 MEDIUM
Mikrotik RouterOS 6.44.6 - Authenticated Denial of Service via Sniffer Process NULL Pointer Dereference
CVSS 6.5
CVE-2020-21835 MEDIUM
GNU LibreDWG 0.10 - Null Pointer Dereference in read_2004_compressed_section
CVSS 6.5
CVE-2020-21834 MEDIUM
GNU LibreDWG 0.10 - Null Pointer Dereference via get_bmp Function
CVSS 6.5
CVE-2020-21817 MEDIUM
GNU LibreDWG 0.10.2641 - Denial of Service via Null Pointer Dereference in htmlescape
CVSS 6.5
CVE-2020-21815 MEDIUM
GNU LibreDWG 0.10.2641 - Denial of Service via Null Pointer Dereference in dwg2SVG
CVSS 6.5
CVE-2020-27830 MEDIUM
Linux Kernel < 5.9.14 - NULL Pointer Dereference in spk_ttyio_receive_buf2
CVSS 5.5
CVE-2020-11273 HIGH
Qualcomm PMx Firmware - Null Pointer Dereference in Histogram KPI Teardown
CVSS 7.5
CVE-2020-11254 MEDIUM
Qualcomm Qpa8821 - NULL Pointer Dereference
CVSS 6.2
CVE-2020-7731 HIGH
gosaml2 < 0.7.0 - Denial of Service via Malformed XML Signature
CVSS 7.5
CVE-2020-23932 MEDIUM
gpac < 1.0.1 - Denial of Service via NULL Pointer Dereference in dump_isom_sdp
CVSS 5.5
CVE-2020-23930 MEDIUM
gpac < 1.0.1 - Denial of Service via NULL Pointer Dereference in nhmldump_send_header
CVSS 5.5
CVE-2020-23914 MEDIUM
cpp-peglib < 0.1.12 - Denial of Service via NULL Pointer Dereference in peg::AstOptimizer::optimize()
CVSS 5.5
CVE-2020-23912 MEDIUM
Bento4 < 1.6.0-637 - Denial of Service via AP4_StszAtom::GetSampleSize() NULL Pointer Dereference
CVSS 5.5
CVE-2020-35982 HIGH
GPAC 0.8.0 and 1.0.1 - NULL Pointer Dereference in gf_hinter_track_finalize
CVSS 7.8
Details
Vulnerabilities 5,323
Exploit Likelihood Medium