CWE-822

Untrusted Pointer Dereference

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product obtains a value from an untrusted source, converts this value to a pointer, and dereferences the resulting pointer.

189 vulnerabilities with CWE-822
CVE-2025-1255 CRITICAL
RTI Connext Professional <7.6.0-<7.3.0.9 - Memory Corruption
CVSS 9.1
CVE-2025-58749 MEDIUM
WAMR <2.4.2 - Memory Corruption
CVSS 5.3
CVE-2025-54905 HIGH
Microsoft Office Word - Info Disclosure
CVSS 7.1
CVE-2025-54114 HIGH
Microsoft Windows 10 1607 < 10.0.14393.8422 - Race Condition
CVSS 7.0
CVE-2025-53801 HIGH
Windows DWM - Privilege Escalation
CVSS 7.8
CVE-2025-55230 HIGH
Windows MBT Transport < - Privilege Escalation
CVSS 7.8
CVE-2025-50165 CRITICAL
Microsoft Graphics Component - RCE
CVSS 9.8
CVE-2025-20090 MEDIUM
Intel(R) QuickAssist Technology <2.5.0 - DoS
CVSS 5.5
CVE-2025-27069 HIGH
Qualcomm FastConnect and WCD/WSA Firmware - Memory Corruption via DDI Command
CVSS 7.8
CVE-2025-49689 HIGH
Microsoft Windows 10 1507 < 10.0.10240.21073 - Integer Overflow
CVSS 7.8
CVE-2025-49661 HIGH
Windows Ancillary Function Driver - Privilege Escalation
CVSS 7.8
CVE-2025-47985 HIGH
Windows Event Tracing - Privilege Escalation
CVSS 7.8
CVE-2025-47982 HIGH
Windows Storage VSP Driver - Privilege Escalation
CVSS 7.8
CVE-2025-21486 HIGH
Product <Version - Memory Corruption
CVSS 7.8
CVE-2025-20018 HIGH
Intel(R) Graphics Drivers - Privilege Escalation
CVSS 8.4
CVE-2025-30381 HIGH
Microsoft Office Excel - Code Injection
CVSS 7.8
CVE-2025-29812 HIGH
Microsoft Windows Kernel Untrusted Pointer Dereference - Privilege Escalation
CVSS 7.8
CVE-2025-27747 HIGH
Microsoft Word - Use After Free
CVSS 7.8
CVE-2025-27739 HIGH
Microsoft Windows Kernel Untrusted Pointer Dereference - Privilege Escalation
CVSS 7.8
CVE-2025-22464 MEDIUM
Ivanti Endpoint Manager <2024 SU1, <2022 SU7 - Memory Corruption
CVSS 6.1
CVE-2025-24084 HIGH
Windows Subsystem for Linux - RCE
CVSS 8.4
CVE-2025-24083 HIGH
Microsoft Office - Code Injection
CVSS 7.8
CVE-2025-21381 HIGH
Microsoft 365 Apps < 16.0.10416.20058 - Remote Code Execution
CVSS 7.8
CVE-2025-21358 HIGH
Windows Core Messaging - Privilege Escalation
CVSS 7.8
CVE-2025-21363 HIGH
Microsoft 365 Apps - Remote Code Execution
CVSS 7.8
Details
Vulnerabilities 189