CWE-476

Medium likelihood

NULL Pointer Dereference

Parent: CWE-710 - Improper Adherence to Coding Standards

The product dereferences a pointer that it expects to be valid but is NULL.

5,459 vulnerabilities with CWE-476
CVE-2026-48267 MEDIUM
Adobe Dng SDK < 1.7.1 2536 - NULL Pointer Dereference
CVSS 5.5
CVE-2026-14790 LOW
GPAC Media File write_nhml.c nhmldump_send_frame null pointer dereference
CVSS 3.3
CVE-2026-10656 MEDIUM
NULL-pointer dereference DoS in MAX32 USB device controller transfer-completion handlers
CVSS 4.6
CVE-2026-13084 HIGH
Null Pointer Dereference in WatchGuard Fireware OS iked Process
CVE-2026-36912 HIGH
MPC-BE - Denial of Service via Crafted MP4 File
CVSS 7.5
CVE-2026-36909 MEDIUM
MPC-BE - Denial of Service via Crafted MP4 File
CVSS 6.2
CVE-2026-14324 MEDIUM
Pipewire: raop rtsp null deref
CVSS 6.5
CVE-2026-53355 CRITICAL
net: rds: clear i_sends on setup unwind
CVSS 9.8
CVE-2026-53350 MEDIUM
ASoC: wm_adsp: Fix NULL dereference when removing firmware controls
CVSS 5.5
CVE-2026-53348 MEDIUM
ASoC: SDCA: fix NULL pointer dereference in sdca_dev_unregister_functions
CVSS 5.5
CVE-2026-53339 MEDIUM
Linux - NULL Pointer Dereference
CVSS 5.5
CVE-2026-53338 MEDIUM
net: airoha: Add NULL check for of_reserved_mem_lookup() in airoha_qdma_init_hfwd_queues()
CVSS 5.5
CVE-2026-53337 MEDIUM
net: bonding: fix NULL pointer dereference in bond_do_ioctl()
CVSS 5.5
CVE-2026-53335 MEDIUM
mm/damon/lru_sort: handle ctx allocation failure
CVSS 5.5
CVE-2026-53334 MEDIUM
mm/damon/reclaim: handle ctx allocation failure
CVSS 5.5
CVE-2026-20457 MEDIUM
MediaTek Chipset - NULL Pointer Dereference
CVSS 5.3
CVE-2026-58369 MEDIUM
Woodpecker < 3.15.0 - Unauthenticated NULL Pointer Dereference in /api/orgs/lookup Enables Log-Flooding Denial of Service
CVSS 5.3
CVE-2026-10648 MEDIUM
NULL-pointer dereference in MCUmgr serial/console SMP transport on buffer-pool exhaustion
CVSS 6.2
CVE-2026-56017 HIGH
JavaScript::Minifier::XS versions before 0.16 for Perl crash with a NULL pointer dereference when the first meaningful token of the input is a slash
CVSS 7.5
CVE-2026-53325 MEDIUM
agp/amd64: Fix broken error propagation in agp_amd64_probe()
CVSS 5.5
CVE-2026-10593 MEDIUM
Remotely triggerable NULL-pointer dereference in Bluetooth LE Audio BAP unicast client QoS-state handling
CVSS 6.5
CVE-2026-53324 MEDIUM
net: mana: Use pci_name() for debugfs directory naming
CVSS 5.5
CVE-2026-53318 MEDIUM
wifi: mt76: mt7925: prevent NULL pointer dereference in mt7925_tx_check_aggr()
CVSS 5.5
CVE-2026-53316 MEDIUM
drm/amd/ras: Fix NULL deref in ras_core_ras_interrupt_detected()
CVSS 5.5
CVE-2026-53315 MEDIUM
drm/amd/ras: Fix NULL deref in ras_core_get_utc_second_timestamp()
CVSS 5.5
Details
Vulnerabilities 5,459
Exploit Likelihood Medium