CWE-822

Untrusted Pointer Dereference

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product obtains a value from an untrusted source, converts this value to a pointer, and dereferences the resulting pointer.

189 vulnerabilities with CWE-822
CVE-2025-47387 HIGH
Driver <version> - Memory Corruption
CVSS 7.8
CVE-2025-47325 MEDIUM
Qualcomm Csr8811 Firmware - Information Disclosure
CVSS 6.5
CVE-2025-62561 HIGH
Microsoft Office Excel - RCE
CVSS 7.8
CVE-2025-62560 HIGH
Microsoft 365 Apps < 16.0.10417.20075 - Buffer Over-read
CVSS 7.8
CVE-2025-62556 HIGH
Microsoft Office Excel - RCE
CVSS 7.8
CVE-2025-62549 HIGH
Windows RRAS - RCE
CVSS 8.8
CVE-2025-62200 HIGH
Microsoft Office Excel - Code Injection
CVSS 7.8
CVE-2025-60728 MEDIUM
Microsoft Office Excel - Info Disclosure
CVSS 4.3
CVE-2025-60719 HIGH
Windows Ancillary Function Driver - Privilege Escalation
CVSS 7.0
CVE-2025-60713 HIGH
Windows RRAS - Privilege Escalation
CVSS 7.8
CVE-2025-60708 MEDIUM
Storvsp.sys Driver - DoS
CVSS 6.5
CVE-2025-60703 HIGH
Windows Remote Desktop - Privilege Escalation
CVSS 7.8
CVE-2025-32446 MEDIUM
Intel QuickAssist Technology <2.6.0 - Privilege Escalation
CVSS 6.5
CVE-2025-27710 MEDIUM
Intel Quickassist Technology < 2.6.0-0018 - Information Disclosure
CVSS 6.5
CVE-2025-54331 MEDIUM
Samsung Mobile Processor Exynos 1380 - Untrusted Pointer Dereference
CVSS 5.3
CVE-2025-59207 HIGH
Windows Kernel < - Privilege Escalation
CVSS 7.8
CVE-2025-59187 HIGH
Windows Kernel - Privilege Escalation
CVSS 7.8
CVE-2025-55696 HIGH
NtQueryInformation Token - Privilege Escalation
CVSS 7.8
CVE-2025-55681 HIGH
Windows DWM - Privilege Escalation
CVSS 7.0
CVE-2025-55677 HIGH
Windows Device Association Broker - Privilege Escalation
CVSS 7.8
CVE-2025-24990 HIGH KEV
Agere Modem - Info Disclosure
CVSS 7.8
CVE-2025-47338 HIGH
Qualcomm FastConnect and Multiple Firmware - Memory Corruption
CVSS 7.8
CVE-2025-27060 HIGH
Product <Version - Memory Corruption
CVSS 8.8
CVE-2025-27048 HIGH
Camera Platform Driver < - Memory Corruption
CVSS 7.8
CVE-2025-4993 CRITICAL
RTI Connext Professional - Pointer Manipulation
CVSS 9.1
Details
Vulnerabilities 189