CWE-476

Medium likelihood

NULL Pointer Dereference

Parent: CWE-710 - Improper Adherence to Coding Standards

The product dereferences a pointer that it expects to be valid but is NULL.

5,323 vulnerabilities with CWE-476
CVE-2020-35981 HIGH
GPAC 0.8.0 and 1.0.1 - NULL Pointer Dereference in SetupWriters()
CVSS 7.8
CVE-2020-23539 HIGH
Realtek rtl8723de BLE Stack <= 4.1 - DoS
CVSS 7.5
CVE-2020-28346 HIGH
ACRN < 2.2 - NULL Pointer Dereference in devicemodel/hw/pci/virtio/virtio.c
CVSS 7.5
CVE-2020-17525 HIGH
Subversion 1.9.0-1.10.6 - Denial of Service via Non-Existing Repository URL
CVSS 7.5
CVE-2020-25639 MEDIUM
Linux Kernel < 5.11.2 - NULL Pointer Dereference in Nouveau GPU Driver via DRM_IOCTL_NOUVEAU_CHANNEL_ALLOC
CVSS 4.4
CVE-2020-27819 MEDIUM
libxls <= 1.6.1 - Denial of Service via XLS Cell Parsing
CVSS 5.5
CVE-2020-35499 MEDIUM
Linux Kernel < 5.10.4 - NULL Pointer Dereference in SCO Socket Getsockopt
CVSS 6.7
CVE-2020-12364 MEDIUM
Intel Graphics Drivers < 26.20.100.7212 - Denial of Service via Null Pointer Dereference
CVSS 5.5
CVE-2020-13583 HIGH
Micrium uC-HTTP 3.01.00 - Denial of Service via Crafted HTTP Request
CVSS 7.5
CVE-2020-13578 HIGH
Genivia gSOAP 2.8.107 - Denial of Service via WS-Security Plugin
CVSS 7.5
CVE-2020-13577 HIGH
Genivia gSOAP 2.8.107 - Denial of Service via WS-Security Plugin
CVSS 7.5
CVE-2020-13575 HIGH
gSOAP 2.8.107 - Denial of Service via WS-Addressing Plugin
CVSS 7.5
CVE-2020-13574 HIGH
Genivia gSOAP 2.8.107 - Denial of Service via WS-Security Plugin
CVSS 7.5
CVE-2020-36149 MEDIUM
libmysofa 0.5-1.1 - NULL Pointer Dereference in changeAttribute Function
CVSS 6.5
CVE-2020-36148 MEDIUM
libmysofa 0.5-1.1 - NULL Pointer Dereference in verifyAttribute Function
CVSS 6.5
CVE-2020-9453 MEDIUM
Epson iProjection < 2.30 - Denial of Service via EMP_MPAU.sys IOCtl Input Validation
CVSS 5.5
CVE-2020-13582 HIGH
Micrium uC-HTTP 3.01.00 - Denial of Service via Crafted HTTP Request
CVSS 7.5
CVE-2020-12514 MEDIUM
Pepperl+Fuchs Comtrol IO-Link Master <1.5.48 - DoS
CVSS 6.6
CVE-2020-8569 MEDIUM
Kubernetes CSI snapshot-controller < 2.1.3 and 3.0.0-3.0.2 - Denial of Service via VolumeSnapshot Processing
CVSS 4.3
CVE-2020-26991 HIGH
Siemens JT2Go and Teamcenter Visualization < 13.1.0.2 - Remote Code Execution via ASM File Parsing
CVSS 8.8
CVE-2020-27289 HIGH
Delta Electronics CNCSoft-B <1.0.0.2 - Memory Corruption
CVSS 7.8
CVE-2020-27277 HIGH
Delta Electronics DOPSoft <4.0.8.21 - RCE
CVSS 7.8
CVE-2020-27279 HIGH
Crimson <3119.001 - Null Pointer Deference
CVSS 7.5
CVE-2020-35507 MEDIUM
binutils < 2.34 - Denial of Service via Crafted PEF File in objdump
CVSS 5.5
CVE-2020-35496 MEDIUM
binutils < 2.34 - Denial of Service via Crafted File in bfd_pef_scan_start_address
CVSS 5.5
Details
Vulnerabilities 5,323
Exploit Likelihood Medium