CWE-476
Medium likelihoodNULL Pointer Dereference
The product dereferences a pointer that it expects to be valid but is NULL.
5,459 vulnerabilities with CWE-476
CVE-2026-53313
MEDIUM
drm/amd/display: Avoid NULL dereference in dc_dmub_srv error paths
CVSS 5.5
CVE-2026-53307
MEDIUM
pinctrl: pinconf-generic: Fully validate 'pinmux' property
CVSS 5.5
CVE-2026-53305
MEDIUM
usb: typec: ps883x: Fix Oops at unbind
CVSS 5.5
CVE-2026-53302
MEDIUM
crypto: eip93 - fix hmac setkey algo selection
CVSS 5.5
CVE-2026-53301
MEDIUM
reset: amlogic: t7: Fix null reset ops
CVSS 5.5
CVE-2026-53299
MEDIUM
net: airoha: Move ndesc initialization at end of airoha_qdma_init_tx()
CVSS 5.5
CVE-2026-53298
MEDIUM
net: airoha: Move ndesc initialization at end of airoha_qdma_init_rx_queue()
CVSS 5.5
CVE-2026-53297
MEDIUM
net: mana: Guard mana_remove against double invocation
CVSS 5.5
CVE-2026-53291
MEDIUM
ALSA: hda/conexant: Fix missing error check for jack detection
CVSS 5.5
CVE-2026-53289
MEDIUM
Linux - NULL Pointer Dereference
CVSS 5.5
CVE-2026-53284
HIGH
btrfs: only release the dirty pages io tree after successful writes
CVSS 7.5
CVE-2026-53283
MEDIUM
iommu/amd: Bounds-check devid in __rlookup_amd_iommu()
CVSS 5.5
CVE-2026-53281
HIGH
iommu/vt-d: Avoid NULL pointer dereference or refcount corruption
CVSS 8.8
CVE-2026-53280
MEDIUM
iommu: Fix NULL group->domain dereference in pci_dev_reset_iommu_done()
CVSS 5.5
CVE-2026-53278
MEDIUM
arm_mpam: Check whether the config array is allocated before destroying it
CVSS 5.5
CVE-2026-47220
HIGH
Envoy: Segmentation fault when using %REQUESTED_SERVER_NAME% in log format
CVSS 7.5
CVE-2026-47221
MEDIUM
Envoy: Null pointer deref in internal redirects
CVSS 5.9
CVE-2026-47204
MEDIUM
Envoy: grpc_stats filter segfault on Connect protocol requests to direct_response routes
CVSS 6.5
CVE-2026-9639
MEDIUM
Authenticated Denial of Service via Malicious Backup Tarball in LXD
CVSS 6.5
CVE-2026-57875
HIGH
GeoVision GV-LPC2011/GV-LPC2211 <= 1.12 - Unauthenticated Denial of Service
CVSS 7.5
CVE-2026-57873
HIGH
GV-LPC2011/LPC2211 - unauthorized null pointer dereference vulnerability (IEEE8021x_upload.cgi)
CVSS 7.5
CVE-2026-9716
HIGH
Schneider Electric PowerLogic™ P7 - NULL Pointer Dereference
CVSS 7.5
CVE-2026-57434
HIGH
Nokogiri: Null Pointer Dereference calling methods on uninitialized wrapper classes
CVSS 7.5
CVE-2026-53271
MEDIUM
ksmbd: fix NULL-deref of opinfo->conn in oplock/lease break notifiers
CVSS 5.5
CVE-2026-53242
HIGH
ALSA: PCM: Fix wait queue list corruption in snd_pcm_drain() on linked streams
CVSS 7.8
Details
Vulnerabilities
5,459
Exploit Likelihood
Medium