CWE-822

Untrusted Pointer Dereference

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product obtains a value from an untrusted source, converts this value to a pointer, and dereferences the resulting pointer.

200 vulnerabilities with CWE-822
CVE-2025-54331 MEDIUM
Samsung Mobile Processor Exynos 1380 - Untrusted Pointer Dereference
CVSS 5.3
CVE-2025-59207 HIGH
Windows Kernel < - Privilege Escalation
CVSS 7.8
CVE-2025-59187 HIGH
Windows Kernel - Privilege Escalation
CVSS 7.8
CVE-2025-55696 HIGH
NtQueryInformation Token - Privilege Escalation
CVSS 7.8
CVE-2025-55681 HIGH
Windows 10 1809-22H2, Windows 11 22H2-25H2, Windows Server 2019-2025 - Privilege Escalation via DWM OOB Read
CVSS 7.0
CVE-2025-55677 HIGH
Windows Device Association Broker - Privilege Escalation
CVSS 7.8
CVE-2025-24990 HIGH KEV
Windows Agere Modem Driver - Untrusted Pointer Dereference
CVSS 7.8
CVE-2025-47338 HIGH
Qualcomm FastConnect and Multiple Firmware - Memory Corruption
CVSS 7.8
CVE-2025-27060 HIGH
Product <Version - Memory Corruption
CVSS 8.8
CVE-2025-27048 HIGH
Camera Platform Driver < - Memory Corruption
CVSS 7.8
CVE-2025-4993 CRITICAL
RTI Connext Professional - Pointer Manipulation
CVSS 9.1
CVE-2025-1255 CRITICAL
RTI Connext Professional <7.6.0-<7.3.0.9 - Memory Corruption
CVSS 9.1
CVE-2025-58749 MEDIUM
WebAssembly Micro Runtime < 2.4.2 - Denial of Service via Memory Fill Instruction
CVSS 5.3
CVE-2025-54905 HIGH
Microsoft Office Word - Info Disclosure
CVSS 7.1
CVE-2025-54114 HIGH
Windows - Privilege Escalation via Race Condition in Connected Devices Platform Service
CVSS 7.0
CVE-2025-53801 HIGH
Windows 10 1507-22H2, Windows 11 22H2-23H2, Windows Server 2016-2022 - Untrusted Pointer Dereference
CVSS 7.8
CVE-2025-55230 HIGH
Windows MBT Transport < - Privilege Escalation
CVSS 7.8
CVE-2025-50165 CRITICAL
Windows 11 24H2 and Windows Server 2025 < 10.0.26100.4851 - Remote Code Execution via Untrusted Pointer Dereference
CVSS 9.8
CVE-2025-20090 MEDIUM
Intel(R) QuickAssist Technology <2.5.0 - DoS
CVSS 5.5
CVE-2025-27069 HIGH
Qualcomm FastConnect and WCD/WSA Firmware - Memory Corruption via DDI Command
CVSS 7.8
CVE-2025-49689 HIGH
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2008 - Local Privilege Escalation via VHDX Integer Overflow
CVSS 7.8
CVE-2025-49661 HIGH
Windows Ancillary Function Driver - Privilege Escalation
CVSS 7.8
CVE-2025-47985 HIGH
Windows Event Tracing - Privilege Escalation
CVSS 7.8
CVE-2025-47982 HIGH
Windows Storage VSP Driver - Privilege Escalation
CVSS 7.8
CVE-2025-21486 HIGH
Product <Version - Memory Corruption
CVSS 7.8
Details
Vulnerabilities 200