CWE-476

Medium likelihood

NULL Pointer Dereference

Parent: CWE-710 - Improper Adherence to Coding Standards

The product dereferences a pointer that it expects to be valid but is NULL.

5,266 vulnerabilities with CWE-476
CVE-2026-44317 MEDIUM
free5GC: PCF npcf-policyauthorization POST /app-sessions panics on suppFeat=1 with missing AfRoutReq via nil pointer dereference
CVSS 6.5
CVE-2026-44316 HIGH
free5GC: PCF npcf-smpolicycontrol POST /sm-policies panics on downstream UDR/OpenAPI 404 via nil pointer dereference
CVSS 7.5
CVE-2026-8180 HIGH
IBM Aspera High-Speed Transfer Endpoint - Multiple Vulnerabilities in Aspera applications.
CVSS 7.5
CVE-2026-45982 MEDIUM
ACPICA: Fix NULL pointer dereference in acpi_ev_address_space_dispatch()
CVSS 5.5
CVE-2026-45978 MEDIUM
staging: greybus: lights: avoid NULL deref
CVSS 5.5
CVE-2026-45969 MEDIUM
HID: playstation: Add missing check for input_ff_create_memless
CVSS 5.5
CVE-2026-45968 MEDIUM
cpuidle: Skip governor when only one idle state is available
CVSS 5.5
CVE-2026-45966 MEDIUM
apparmor: fix NULL pointer dereference in __unix_needs_revalidation
CVSS 5.5
CVE-2026-45965 MEDIUM
apparmor: fix invalid deref of rawdata when export_binary is unset
CVSS 5.5
CVE-2026-45963 MEDIUM
ASoC: nau8821: Cancel delayed work on component remove
CVSS 5.5
CVE-2026-45959 HIGH
crypto: ccp - Fix a crash due to incorrect cleanup usage of kfree
CVSS 7.8
CVE-2026-45958 HIGH
drm/exynos: vidi: fix to avoid directly dereferencing user pointer
CVSS 7.1
CVE-2026-9567 LOW
GPAC MP4Box isom_intern.c MergeFragment null pointer dereference
CVSS 3.3
CVE-2026-7450 MEDIUM
PAR File Parsing NULL Pointer Dereference in Autodesk 3ds Max
CVSS 5.5
CVE-2026-8850 HIGH
IBM HTTP Server is affected by multiple vulnerabilities
CVSS 7.5
CVE-2026-8479 MEDIUM
Hitachi Energy RTU500 Series Cmu Firmware - NULL Pointer Dereference
CVE-2026-9529 LOW
GNU LibreDWG Dwggrep Utility dwggrep.c match_BLOCK_HEADER null pointer dereference
CVSS 3.3
CVE-2026-9503 LOW
GNU LibreDWG DWG File decode.c dwg_next_entity null pointer dereference
CVSS 3.3
CVE-2026-48829 HIGH
Gnu Sasl < 2.2.3 - NULL Pointer Dereference
CVSS 7.5
CVE-2026-41069 MEDIUM
libheif allows Out-of-bounds vector access leading to invalid dereference (DoS)
CVSS 6.5
CVE-2026-32738 MEDIUM
libheif <1.22.0 samples_per_chunk - Out-of-Bounds Read Denial of Service
CVSS 6.5
CVE-2026-32134 MEDIUM
NanoMQ: NULL Pointer Dereference Crash in tcptran_pipe_peer During Session Restore
CVSS 5.9
CVE-2026-47308 MEDIUM
Samsung Open Source Walrus f339b8ee4ea701772e8ae640b3d1b12ac02b1ae9 - NULL Pointer Dereference
CVSS 5.5
CVE-2026-47307 MEDIUM
Samsung Open Source Walrus f339b8ee4ea701772e8ae640b3d1b12ac02b1ae9 - Denial of Service via Crafted WebAssembly Module
CVSS 5.5
CVE-2026-25110 LOW
OpenHarmony <=6.0 sensors_medical_sensor - NULL Pointer Dereference Denial of Service
CVSS 3.3
Details
Vulnerabilities 5,266
Exploit Likelihood Medium