CWE-822

Untrusted Pointer Dereference

Parent: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

The product obtains a value from an untrusted source, converts this value to a pointer, and dereferences the resulting pointer.

212 vulnerabilities with CWE-822
CVE-2022-26942 HIGH
Motorola MTM5000 - Privilege Escalation
CVSS 8.2
CVE-2022-40533 MEDIUM
Qualcomm CSRA6620 Firmware - Denial of Service via Untrusted Pointer Dereference in USB QMI Request
CVSS 6.2
CVE-2022-42418 HIGH
PDF-XChange Editor < 9.5.366.0 - Remote Code Execution via TIF File Parsing
CVSS 7.8
CVE-2022-42396 HIGH
PDF-XChange Editor < 9.5.366.0 - Remote Code Execution via XPS File Parsing
CVSS 7.8
CVE-2022-2002 HIGH
GE CIMPICITY <2022 - RCE
CVSS 7.8
CVE-2022-2894 HIGH
Measuresoft ScadaPro Server - Buffer Overflow
CVSS 7.8
CVE-2022-34890 HIGH
Parallels Desktop 17.1.1 - Info Disclosure
CVSS 8.8
CVE-2022-20796 MEDIUM
ClamAV 0.103.4-0.103.5 and 0.104.1-0.104.2 - Authenticated Denial of Service via NULL Pointer Dereference
CVSS 6.5
CVE-2022-22514 HIGH
CODESYS Control Runtime SL < 4.5.0.0 - Authenticated Memory Corruption in CmpTraceMgr
CVSS 7.1
CVE-2021-26410 LOW
AMD Ryzen Processors - Untrusted Pointer Dereference via ASP Syscall Input Validation
CVE-2021-38401 HIGH
Fuji Electric V-Server Lite & Tellus Lite V-Simulator <4.0.12.0 - RCE
CVSS 7.8
CVE-2021-31504 HIGH
OpenText Brava! Desktop <16.6.3.84 - RCE
CVSS 7.8
CVE-2021-31500 HIGH
OpenText Brava! Desktop 16.6.3.84 - RCE
CVSS 7.8
CVE-2021-31481 HIGH
OpenText Brava! Desktop 16.6.3.84 - RCE
CVSS 7.8
CVE-2021-20239 LOW
Linux kernel <5.4.92 - Info Disclosure
CVSS 3.3
CVE-2021-27496 HIGH
Datakit CrossCADWare - Untrusted Pointer Dereference in PRT File Parser
CVSS 7.8
CVE-2021-22649 HIGH
Luxion KeyShot < 10.1 - Remote Code Execution via Crafted Project File
CVSS 7.8
CVE-2020-26997 HIGH
Solid Edge <SE2020MP13, SE2020MP14, SE2021MP4 - RCE
CVSS 7.8
CVE-2020-1899 HIGH
HHVM <4.32.3, 4.33.0-4.62.0 - Memory Corruption
CVSS 7.5
CVE-2020-27003 HIGH
Siemens JT2Go and Teamcenter Visualization < 13.1.0.1 - Remote Code Execution via TIFF File Parsing
CVSS 7.8
CVE-2020-27259 HIGH
Omron CX-One < 4.60 - Remote Code Execution via Untrusted Pointer Dereference
CVSS 8.8
CVE-2020-27288 HIGH
TPEditor < 1.98 - Untrusted Pointer Dereference via Crafted Project File
CVSS 7.8
CVE-2020-26991 HIGH
Siemens JT2Go and Teamcenter Visualization < 13.1.0.2 - Remote Code Execution via ASM File Parsing
CVSS 8.8
CVE-2020-27289 HIGH
Delta Electronics CNCSoft-B <1.0.0.2 - Memory Corruption
CVSS 7.8
CVE-2020-27277 HIGH
Delta Electronics DOPSoft <4.0.8.21 - RCE
CVSS 7.8
Details
Vulnerabilities 212