CWE-476

Medium likelihood

NULL Pointer Dereference

Parent: CWE-710 - Improper Adherence to Coding Standards

The product dereferences a pointer that it expects to be valid but is NULL.

5,271 vulnerabilities with CWE-476
CVE-2025-55659 MEDIUM
GPAC MP4Box 2.4 - Denial of Service via Crafted MP4 File
CVSS 6.5
CVE-2025-55657 HIGH
GPAC MP4Box 2.4 - Denial of Service via Crafted MP4 File
CVSS 7.5
CVE-2025-55651 MEDIUM
GPAC MP4Box 2.4 - Denial of Service via Crafted MP4 File
CVSS 5.5
CVE-2025-71313 MEDIUM
PCI: endpoint: Add missing NULL check for alloc_workqueue()
CVSS 5.5
CVE-2025-60477 MEDIUM
GPAC Project/MP4Box < 26.02.0 - Denial of Service via Crafted File in gf_filter_pid_resolve_file_template_ex
CVSS 5.0
CVE-2025-59606 HIGH
Qualcomm Snapdragon HLOS - Secure Data Initialization Null Pointer Dereference
CVSS 7.8
CVE-2025-59604 HIGH
Qualcomm Snapdragon SPS Applications - Null Pointer Dereference
CVSS 7.8
CVE-2025-70099 HIGH
lwext4 1.0.0 - Denial of Service via Malformed Directory Entry in ext4_dir_en_get_name_len
CVSS 7.5
CVE-2025-60495 MEDIUM
GPAC Project/MP4Box < 26.02.0 - Denial of Service via Crafted Data File
CVSS 5.5
CVE-2025-60485 MEDIUM
GPAC Project/MP4Box < 26.02.0 - Denial of Service via Crafted MP4 File
CVSS 5.5
CVE-2025-60483 MEDIUM
GPAC Project/MP4Box < 26.02.0 - Denial of Service via Crafted AC4 File
CVSS 5.5
CVE-2025-60481 MEDIUM
GPAC Project/MP4Box < 26.02.0 - Denial of Service via Crafted AC4 File
CVSS 5.5
CVE-2025-70116 MEDIUM
GPAC MP4Box - Denial of Service via Truncated MP4 File Parsing
CVSS 4.3
CVE-2025-40833 HIGH
Siemens SCALANCE and RUGGEDCOM Devices < V8.3 - Denial of Service via Crafted IPv4 Request
CVSS 7.5
CVE-2025-71295 MEDIUM
fs/buffer: add alert in try_to_free_buffers() for folios without buffers
CVSS 5.5
CVE-2025-71294 MEDIUM
Linux - NULL Pointer Dereference in DRM AMDGPU Buffer Functions
CVSS 5.5
CVE-2025-71293 MEDIUM
drm/amdgpu/ras: Move ras data alloc before bad page check
CVSS 5.5
CVE-2025-71291 MEDIUM
misc: bcm_vk: Fix possible null-pointer dereferences in bcm_vk_read()
CVSS 5.5
CVE-2025-71285 MEDIUM
net: qrtr: Drop the MHI auto_queue feature for IPCR DL channels
CVSS 5.5
CVE-2025-70070 MEDIUM
Assimp 6.0.2 - Denial of Service via FBXMeshGeometry.cpp
CVSS 6.5
CVE-2025-69624 HIGH
Nitro PDF Pro for Windows 14.41.1.4 - DoS
CVSS 7.5
CVE-2025-66769 HIGH
Nitro PDF Pro 14.41.1.4 - Denial of Service via Crafted XFA Packet
CVSS 7.5
CVE-2025-13406 MEDIUM
Scanning for higher HART revision device leads into NULL pointer dereference in live list
CVE-2025-14769 HIGH
FreeBSD - Denial of Service via tcp-setmss Rule Processing
CVSS 7.5
CVE-2025-69649 HIGH
GNU Binutils < 2.46 - Denial of Service via Malformed ELF Header Processing
CVSS 7.5
Details
Vulnerabilities 5,271
Exploit Likelihood Medium