CWE-476

Medium likelihood

NULL Pointer Dereference

Parent: CWE-710 - Improper Adherence to Coding Standards

The product dereferences a pointer that it expects to be valid but is NULL.

5,271 vulnerabilities with CWE-476
CVE-2025-59777 HIGH
GNU libmicrohttpd <= 1.0.2 - Denial of Service via NULL Pointer Dereference
CVSS 7.5
CVE-2025-7700 MEDIUM
FFmpeg - Denial of Service via ALS Audio Decoder Memory Allocation Failure
CVSS 5.3
CVE-2025-53412 MEDIUM
QNAP File Station 5.5.6.4691-5.5.6.5017 - Authenticated Denial of Service via NULL Pointer Dereference
CVSS 6.5
CVE-2025-53408 MEDIUM
QNAP File Station 5.5.6.4691-5.5.6.5018 - Authenticated Denial of Service via NULL Pointer Dereference
CVSS 6.5
CVE-2025-52865 MEDIUM
QNAP File Station 5.5.6.4691-5.5.6.5017 - Authenticated Denial of Service via NULL Pointer Dereference
CVSS 6.5
CVE-2025-47207 MEDIUM
QNAP File Station 5.5.6.4691-5.5.6.5017 - Denial of Service via NULL Pointer Dereference
CVSS 6.5
CVE-2025-27917 HIGH
AnyDesk < 9.0.4 - Remote Denial of Service via Deserialization NULL Pointer Dereference
CVSS 7.5
CVE-2025-46404 HIGH
Entr'ouvert Lasso 2.5.1 - Denial of Service via Malformed SAML Response
CVSS 7.5
CVE-2025-54334 HIGH
Samsung Exynos 1280 1380 1480 1580 2200 2400 2500 Firmware - NULL Pointer Dereference in NPU Driver
CVSS 7.5
CVE-2025-54332 HIGH
Samsung Exynos 1380 Firmware < 2025-07 - NULL Pointer Dereference in NPU Profiler
CVSS 7.5
CVE-2025-62791 HIGH
Wazuh < 4.11.0 - Denial of Service via Crafted Agent Message
CVSS 7.5
CVE-2025-62790 HIGH
Wazuh < 4.11.0 - Denial of Service via Unchecked Return Value in fim_fetch_attributes_state()
CVSS 7.5
CVE-2025-62789 HIGH
Wazuh < 4.11.0 - Denial of Service via Unchecked Return Value in fim_alert()
CVSS 7.5
CVE-2025-62785 HIGH
Wazuh < 4.10.2 - Denial of Service via Unchecked Return Value in fillData()
CVSS 7.5
CVE-2025-61107 HIGH
FRRouting 4.0-10.4.1 - Denial of Service via Crafted LSA Update Packet
CVSS 7.5
CVE-2025-61106 HIGH
FRRouting 4.0-10.4.1 - Denial of Service via OSPF Packet Handling in ospf_ext.c
CVSS 7.5
CVE-2025-61104 HIGH
FRRouting 4.0-10.4.1 - Denial of Service via OSPF Packet Handling in show_vty_unknown_tlv
CVSS 7.5
CVE-2025-61103 HIGH
FRRouting 4.0-10.4.1 - Denial of Service via OSPF Packet in show_vty_ext_link_lan_adj_sid
CVSS 7.5
CVE-2025-61105 HIGH
FRRouting 4.0-10.4.1 - Denial of Service via OSPF Packet Processing
CVSS 7.5
CVE-2025-61102 HIGH
FRRouting 4.0-10.4.1 - Denial of Service via OSPF Packet in show_vty_ext_link_adj_sid
CVSS 7.5
CVE-2025-61101 HIGH
FRRouting 4.0-10.4.1 - Denial of Service via OSPF Packet Handling in show_vty_ext_link_rmt_itf_addr
CVSS 7.5
CVE-2025-61100 HIGH
FRRouting 2.0-10.4.1 - Denial of Service via OSPF Opaque LSA Dump Function
CVSS 7.5
CVE-2025-61099 HIGH
FRRouting 2.0-10.4.1 - Denial of Service via OSPF Opaque LSA Update Packet
CVSS 7.5
CVE-2025-12207 LOW
Kamailio 5.5 - Null Pointer Dereference in Grammar Rule Handler
CVSS 3.3
CVE-2025-12206 LOW
Kamailio 5.5 - Denial of Service via Null Pointer Dereference in rve_is_constant
CVSS 3.3
Details
Vulnerabilities 5,271
Exploit Likelihood Medium