CWE-476

Medium likelihood

NULL Pointer Dereference

Parent: CWE-710 - Improper Adherence to Coding Standards

The product dereferences a pointer that it expects to be valid but is NULL.

5,459 vulnerabilities with CWE-476
CVE-2026-31394 MEDIUM
mac80211: fix crash in ieee80211_chan_bw_change for AP_VLAN stations
CVSS 5.5
CVE-2026-23475 MEDIUM
spi: fix statistics allocation
CVSS 5.5
CVE-2026-23467 MEDIUM
drm/i915/dmc: Fix an unlikely NULL pointer deference at probe
CVSS 5.5
CVE-2026-23460 MEDIUM
net/rose: fix NULL pointer dereference in rose_transmit_link on reconnect
CVSS 5.5
CVE-2026-23443 MEDIUM
ACPI: processor: Fix previous acpi_processor_errata_piix4() fix
CVSS 5.5
CVE-2026-23442 MEDIUM
ipv6: add NULL checks for idev in SRv6 paths
CVSS 5.5
CVE-2026-23439 MEDIUM
udp_tunnel: fix NULL deref caused by udp_sock_create6 when CONFIG_IPV6=n
CVSS 5.5
CVE-2026-23438 MEDIUM
net: mvpp2: guard flow control update with global_tx_fc in buffer switching
CVSS 5.5
CVE-2026-23435 MEDIUM
perf/x86: Move event pointer setup earlier in x86_pmu_enable()
CVSS 5.5
CVE-2026-23433 MEDIUM
arm_mpam: Fix null pointer dereference when restoring bandwidth counters
CVSS 5.5
CVE-2026-34761 MEDIUM
Ella Core Panics Upon NGAP handover failure
CVSS 5.8
CVE-2026-31931 HIGH
Suricata tls: null dereference in tls.alpn rule keyword
CVSS 7.5
CVE-2026-34874 HIGH
Mbed TLS < 3.6.6 and 4.x < 4.0.0 - NULL Pointer Dereference in Distinguished Name Parsing
CVSS 7.5
CVE-2026-3776 MEDIUM
Null pointer dereference in Foxit PDF Editor/Reader when accessing stamp annotation
CVSS 5.5
CVE-2026-34552 MEDIUM
iccDEV: UB at IccTagLut.cpp
CVSS 6.2
CVE-2026-34551 MEDIUM
iccDEV: NPD in CIccTagLut16::Write()
CVSS 6.2
CVE-2026-34541 MEDIUM
iccDEV: UB in CIccCombinedConnectionConditions::CIccCombinedConnectionConditions()
CVSS 6.2
CVE-2026-32696 LOW
NanoMQ 0.24.6 HTTP Auth - NULL Pointer Dereference Denial of Service
CVSS 3.1
CVE-2026-33996 MEDIUM
LibJWT has NULL/bounds validation in JWK octet and RSA PSS parsing
CVSS 5.5
CVE-2026-33907 MEDIUM
Ella Core Panics during NAS Authentication Response/Failure with missing IEs
CVSS 6.5
CVE-2026-33903 MEDIUM
Ella Core panics when processing a crafted NGAP LocationReport message
CVSS 6.5
CVE-2026-0968 LOW
Libssh: libssh: denial of service due to malformed sftp message
CVSS 3.1
CVE-2026-23398 MEDIUM
Linux - Denial of Service via NULL Pointer Dereference in icmp_tag_validation
CVSS 5.5
CVE-2026-23396 MEDIUM
wifi: mac80211: fix NULL deref in mesh_matches_local()
CVSS 5.5
CVE-2026-4652 HIGH
FreeBSD >=15.0-RELEASE - Unauthenticated Denial of Service via NVMe/TCP CONNECT Command
CVSS 7.5
Details
Vulnerabilities 5,459
Exploit Likelihood Medium