CWE-476

Medium likelihood

NULL Pointer Dereference

Parent: CWE-710 - Improper Adherence to Coding Standards

The product dereferences a pointer that it expects to be valid but is NULL.

5,459 vulnerabilities with CWE-476
CVE-2026-53012 MEDIUM
nexthop: fix IPv6 route referencing IPv4 nexthop
CVSS 5.5
CVE-2026-53007 MEDIUM
ice: fix potential NULL pointer deref in error path of ice_set_ringparam()
CVSS 5.5
CVE-2026-52998 HIGH
netfilter: nfnetlink_osf: fix potential NULL dereference in ttl check
CVSS 7.5
CVE-2026-52997 MEDIUM
net/sched: sch_dualpi2: drain both C-queue and L-queue in dualpi2_change()
CVSS 5.5
CVE-2026-52986 CRITICAL
netfilter: nf_conntrack_sip: don't use simple_strtoul
CVSS 9.8
CVE-2026-52980 MEDIUM
sched/fair: Clear rel_deadline when initializing forked entities
CVSS 5.5
CVE-2026-52957 HIGH
libceph: Fix potential null-ptr-deref in decode_choose_args()
CVSS 7.5
CVE-2026-52951 HIGH
drm/xe/dma-buf: handle empty bo and UAF races
CVSS 7.8
CVE-2026-52941 MEDIUM
net/smc: avoid NULL deref of conn->lnk in smc_msg_event tracepoint
CVSS 5.5
CVE-2026-52939 MEDIUM
net/rds: fix NULL deref in rds_ib_send_cqe_handler() on masked atomic completion
CVSS 5.5
CVE-2026-52938 MEDIUM
bpf: Fix NULL pointer dereference in bpf_sk_storage_clone and diag paths
CVSS 5.5
CVE-2026-52929 HIGH
sctp: stream: fully roll back denied add-stream state
CVSS 7.5
CVE-2026-52925 MEDIUM
vrf: Fix a potential NPD when removing a port from a VRF
CVSS 5.5
CVE-2026-52922 HIGH
batman-adv: dat: handle forward allocation error
CVSS 7.5
CVE-2026-52913 MEDIUM
batman-adv: v: stop OGMv2 on disabled interface
CVSS 5.5
CVE-2026-10852 MEDIUM
IBM i is Affected By a Denial of Service in IBM WebSphere Application Server Liberty
CVSS 5.9
CVE-2026-48139 HIGH
NI grpc-device <= 2.17.0 Data Moniker Service - Denial of Service
CVSS 7.5
CVE-2026-48985 MEDIUM
pam_usb: NULL Dereference Crash in pusb_is_loginctl_local when loginctl Returns Empty Remote Field
CVSS 5.5
CVE-2026-55204 HIGH
HAProxy - NULL Pointer Dereference in hpack_dht_insert Function
CVSS 7.5
CVE-2026-1288 MEDIUM
Autodesk Revit RFA Conversion - NULL Pointer Dereference Denial of Service
CVSS 5.5
CVE-2026-0156 HIGH
Google Android - Denial of Service
CVSS 7.5
CVE-2026-12329 MEDIUM
Memory safety bug fixed in Thunderbird ESR 140.12
CVSS 5.3
CVE-2026-53463 MEDIUM
ImageMagick: Null Pointer Dereference in distort operation when passing incorrect arguments
CVSS 4.3
CVE-2026-24716 HIGH
QNAP Systems - QTS, QuTS Hero
CVSS 7.2
CVE-2026-22899 MEDIUM
Qnap Systems Inc. File Station 5 < 5.5.6.5208 - Denial of Service
CVSS 6.5
Details
Vulnerabilities 5,459
Exploit Likelihood Medium