CWE-476

Medium likelihood

NULL Pointer Dereference

Parent: CWE-710 - Improper Adherence to Coding Standards

The product dereferences a pointer that it expects to be valid but is NULL.

5,459 vulnerabilities with CWE-476
CVE-2026-53313 MEDIUM
drm/amd/display: Avoid NULL dereference in dc_dmub_srv error paths
CVSS 5.5
CVE-2026-53307 MEDIUM
pinctrl: pinconf-generic: Fully validate 'pinmux' property
CVSS 5.5
CVE-2026-53305 MEDIUM
usb: typec: ps883x: Fix Oops at unbind
CVSS 5.5
CVE-2026-53302 MEDIUM
crypto: eip93 - fix hmac setkey algo selection
CVSS 5.5
CVE-2026-53301 MEDIUM
reset: amlogic: t7: Fix null reset ops
CVSS 5.5
CVE-2026-53299 MEDIUM
net: airoha: Move ndesc initialization at end of airoha_qdma_init_tx()
CVSS 5.5
CVE-2026-53298 MEDIUM
net: airoha: Move ndesc initialization at end of airoha_qdma_init_rx_queue()
CVSS 5.5
CVE-2026-53297 MEDIUM
net: mana: Guard mana_remove against double invocation
CVSS 5.5
CVE-2026-53291 MEDIUM
ALSA: hda/conexant: Fix missing error check for jack detection
CVSS 5.5
CVE-2026-53289 MEDIUM
Linux - NULL Pointer Dereference
CVSS 5.5
CVE-2026-53284 HIGH
btrfs: only release the dirty pages io tree after successful writes
CVSS 7.5
CVE-2026-53283 MEDIUM
iommu/amd: Bounds-check devid in __rlookup_amd_iommu()
CVSS 5.5
CVE-2026-53281 HIGH
iommu/vt-d: Avoid NULL pointer dereference or refcount corruption
CVSS 8.8
CVE-2026-53280 MEDIUM
iommu: Fix NULL group->domain dereference in pci_dev_reset_iommu_done()
CVSS 5.5
CVE-2026-53278 MEDIUM
arm_mpam: Check whether the config array is allocated before destroying it
CVSS 5.5
CVE-2026-47220 HIGH
Envoy: Segmentation fault when using %REQUESTED_SERVER_NAME% in log format
CVSS 7.5
CVE-2026-47221 MEDIUM
Envoy: Null pointer deref in internal redirects
CVSS 5.9
CVE-2026-47204 MEDIUM
Envoy: grpc_stats filter segfault on Connect protocol requests to direct_response routes
CVSS 6.5
CVE-2026-9639 MEDIUM
Authenticated Denial of Service via Malicious Backup Tarball in LXD
CVSS 6.5
CVE-2026-57875 HIGH
GeoVision GV-LPC2011/GV-LPC2211 <= 1.12 - Unauthenticated Denial of Service
CVSS 7.5
CVE-2026-57873 HIGH
GV-LPC2011/LPC2211 - unauthorized null pointer dereference vulnerability (IEEE8021x_upload.cgi)
CVSS 7.5
CVE-2026-9716 HIGH
Schneider Electric PowerLogic™ P7 - NULL Pointer Dereference
CVSS 7.5
CVE-2026-57434 HIGH
Nokogiri: Null Pointer Dereference calling methods on uninitialized wrapper classes
CVSS 7.5
CVE-2026-53271 MEDIUM
ksmbd: fix NULL-deref of opinfo->conn in oplock/lease break notifiers
CVSS 5.5
CVE-2026-53242 HIGH
ALSA: PCM: Fix wait queue list corruption in snd_pcm_drain() on linked streams
CVSS 7.8
Details
Vulnerabilities 5,459
Exploit Likelihood Medium