CWE-476

Medium likelihood

NULL Pointer Dereference

Parent: CWE-710 - Improper Adherence to Coding Standards

The product dereferences a pointer that it expects to be valid but is NULL.

5,459 vulnerabilities with CWE-476
CVE-2026-28581 MEDIUM
Android 15-16 CallIntentProcessor - Emergency Call Logic Error
CVSS 4.0
CVE-2026-45729 MEDIUM
Thor Vector Graphics < 1.0.5 - Denial of Service via Null Pointer Dereference in SvgLoader
CVSS 4.3
CVE-2026-37230 HIGH
FlexRIC 2.0.0 - Unauthenticated Denial of Service via Invalid ran_func_id in RIC_INDICATION
CVSS 7.5
CVE-2026-37226 HIGH
FlexRIC 2.0.0 - Unauthenticated Denial of Service via E42_RIC_SUBSCRIPTION_REQUEST
CVSS 7.5
CVE-2026-10199 LOW
Assimp glTF2Asset.h LazyDict null pointer dereference
CVSS 3.3
CVE-2026-10198 LOW
Assimp glTFImporter glTFImporter.cpp ImportMeshes null pointer dereference
CVSS 3.3
CVE-2026-10197 LOW
Assimp TF File glTF2Importer.cpp ImportEmbeddedTextures null pointer dereference
CVSS 3.3
CVE-2026-46527 HIGH
cpp-httplib: Malicious `X-Forwarded-For` Under Trusted-Proxy Configuration Triggers Empty `vector::front()`, Leading to Undefined Behavior and Server Crash
CVSS 7.5
CVE-2026-45151 LOW
NanoMQ: NULL Pointer Dereference
CVE-2026-47337 LOW
NULL pointer dereference in Ubuntu Linux AppArmor IPv4/IPv6 socket mediation
CVSS 3.3
CVE-2026-47335 MEDIUM
NULL pointer dereference in Ubuntu Linux AppArmor notification handling
CVSS 5.5
CVE-2026-47327 LOW
NULL pointer dereference in Ubuntu Linux AppArmor notification handling
CVSS 3.3
CVE-2026-46235 MEDIUM
media: saa7164: add ioremap return checks and cleanups
CVSS 5.5
CVE-2026-46233 MEDIUM
batman-adv: bla: only purge non-released claims
CVSS 5.5
CVE-2026-46222 MEDIUM
media: rockchip: rkcif: Add missing MUST_CONNECT flag to pads
CVSS 5.5
CVE-2026-46216 MEDIUM
drm/xe/hdcp: Add NULL check for media_gt in intel_hdcp_gsc_check_status()
CVSS 5.5
CVE-2026-46211 MEDIUM
drm/msm/gem: fix error handling in msm_ioctl_gem_info_get_metadata()
CVSS 5.5
CVE-2026-46195 CRITICAL
smb: client: validate dacloffset before building DACL pointers
CVSS 9.8
CVE-2026-46188 MEDIUM
octeon_ep_vf: add NULL check for napi_build_skb()
CVSS 5.5
CVE-2026-46134 MEDIUM
platform/chrome: cros_ec_typec: Init mutex in Thunderbolt registration
CVSS 5.5
CVE-2026-46127 MEDIUM
RDMA/ocrdma: Don't NULL deref uctx on errors in ocrdma_copy_pd_uresp()
CVSS 5.5
CVE-2026-46118 MEDIUM
pseries/papr-hvpipe: Fix null ptr deref in papr_hvpipe_dev_create_handle()
CVSS 5.5
CVE-2026-46114 HIGH
RDMA/rxe: Reject non-8-byte ATOMIC_WRITE payloads
CVSS 7.5
CVE-2026-46110 HIGH
net: stmmac: Prevent NULL deref when RX memory exhausted
CVSS 7.5
CVE-2026-44710 MEDIUM
pam_usb: NULL pointer dereference from UDisks device fields causes PAM crash and login denial-of-service
CVSS 4.6
Details
Vulnerabilities 5,459
Exploit Likelihood Medium