CWE-476

Medium likelihood

NULL Pointer Dereference

Parent: CWE-710 - Improper Adherence to Coding Standards

The product dereferences a pointer that it expects to be valid but is NULL.

5,266 vulnerabilities with CWE-476
CVE-2026-31546 MEDIUM
net: bonding: fix NULL deref in bond_debug_rlb_hash_show
CVSS 5.5
CVE-2026-31544 MEDIUM
firmware: arm_scmi: Fix NULL dereference on notify error path
CVSS 5.5
CVE-2026-31540 MEDIUM
drm/i915/gt: Check set_default_submission() before deferencing
CVSS 5.5
CVE-2026-31519 MEDIUM
btrfs: set BTRFS_ROOT_ORPHAN_CLEANUP during subvol create
CVSS 5.5
CVE-2026-31515 MEDIUM
af_key: validate families in pfkey_send_migrate()
CVSS 5.5
CVE-2026-31510 MEDIUM
Bluetooth: L2CAP: Fix null-ptr-deref on l2cap_sock_ready_cb
CVSS 5.5
CVE-2026-31481 MEDIUM
tracing: Drain deferred trigger frees if kthread creation fails
CVSS 5.5
CVE-2026-31477 HIGH
ksmbd: fix memory leaks and NULL deref in smb2_lock()
CVSS 7.5
CVE-2026-31458 MEDIUM
mm/damon/sysfs: check contexts->nr before accessing contexts_arr[0]
CVSS 5.5
CVE-2026-31457 MEDIUM
mm/damon/sysfs: check contexts->nr in repeat_call_fn
CVSS 5.5
CVE-2026-31453 HIGH
xfs: avoid dereferencing log items after push callbacks
CVSS 7.8
CVE-2026-31450 HIGH
ext4: publish jinode after initialization
CVSS 8.8
CVE-2026-31445 MEDIUM
mm/damon/core: avoid use of half-online-committed context
CVSS 5.5
CVE-2026-31438 MEDIUM
netfs: Fix kernel BUG in netfs_limit_iter() for ITER_KVEC iterators
CVSS 5.5
CVE-2026-31437 MEDIUM
netfs: Fix NULL pointer dereference in netfs_unbuffered_write() on retry
CVSS 5.5
CVE-2026-31436 CRITICAL
dmaengine: idxd: fix possible wrong descriptor completion in llist_abort_desc()
CVSS 9.8
CVE-2026-33601 MEDIUM
Insufficient validation of zonemd record
CVSS 4.4
CVE-2026-33600 MEDIUM
PowerDNS Recursor 5.2.0-5.2.8, 5.3.0-5.3.5, 5.4.0 - Denial of Service via RPZ Processing
CVSS 4.4
CVE-2026-33262 MEDIUM
Insufficient validation of cookie reply
CVSS 5.9
CVE-2026-6845 MEDIUM
Binutils: binutils: denial of service via crafted elf file
CVSS 5.0
CVE-2026-6778 MEDIUM
Invalid pointer in the Audio/Video: Playback component
CVSS 5.3
CVE-2026-28224 HIGH
Firebird Null Pointer Dereference via CryptCallback causes DOS
CVSS 8.2
CVE-2026-28212 HIGH
Firebird has potential server crash via null pointer dereference when processing op_slice packet
CVSS 7.5
CVE-2026-30656 HIGH
fio 3.41 - Denial of Service via fdp_pli Option NULL Pointer Dereference
CVSS 7.5
CVE-2026-32216 MEDIUM
Windows Redirected Drive Buffering System Denial of Service Vulnerability
CVSS 5.5
Details
Vulnerabilities 5,266
Exploit Likelihood Medium