CWE-476— NULL Pointer Dereference
The product dereferences a pointer that it expects to be valid but is NULL.— MITRE CWE catalog
5,487 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-476page 27 of 110
- CVE-2020-20266MEDIUMCVSS 6.5EG 6.52021-05-19
Mikrotik RouterOs before 6.47 (stable tree) suffers from a memory corruption vulnerability in the /nova/bin/dot1x process. An authenticated remote attacker can cause a Denial of Service (NULL pointer dereference).
- CVE-2020-20450HIGHCVSS 7.5EG 7.52021-05-25
FFmpeg 4.2 is affected by null pointer dereference passed as argument to libavformat/aviobuf.c, which could cause a Denial of Service.
- CVE-2020-20896HIGHCVSS 8.8EG 8.82021-09-20
An issue was discovered in function latm_write_packet in libavformat/latmenc.c in Ffmpeg 4.2.1, allows attackers to cause a Denial of Service or other unspecified impacts due to a Null pointer dereference.
- CVE-2020-21815MEDIUMCVSS 6.5EG 6.52021-05-17
A null pointer deference issue exists in GNU LibreDWG 0.10.2641 via output_TEXT ../../programs/dwg2SVG.c:114, which causes a denial of service (application crash).
- CVE-2020-21817MEDIUMCVSS 6.5EG 6.52021-05-17
A null pointer dereference issue exists in GNU LibreDWG 0.10.2641 via htmlescape ../../programs/escape.c:29. which causes a denial of service (application crash).
- CVE-2020-21834MEDIUMCVSS 6.5EG 6.52021-05-17
A null pointer deference issue exists in GNU LibreDWG 0.10 via get_bmp ../../programs/dwgbmp.c:164.
- CVE-2020-21835MEDIUMCVSS 6.5EG 6.52021-05-17
A null pointer deference issue exists in GNU LibreDWG 0.10 via read_2004_compressed_section ../../src/decode.c:2337.
- CVE-2020-22352MEDIUMCVSS 5.5EG 5.52021-08-04
The gf_dash_segmenter_probe_input function in GPAC v0.8 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.
- CVE-2020-22674MEDIUMCVSS 5.5EG 5.52021-10-12
An issue was discovered in gpac 0.8.0. An invalid memory dereference exists in the function FixTrackID located in isom_intern.c, which allows attackers to cause a denial of service (DoS) via a crafted input.
- CVE-2020-23026HIGHCVSS 7.5EG 7.52022-01-03
A NULL pointer dereference in the main() function dhry_1.c of dhrystone 2.1 causes a denial of service (DoS).
- CVE-2020-23259HIGHCVSS 7.5EG 7.52023-04-04
An issue found in Jsish v.3.0.11 and before allows an attacker to cause a denial of service via the Jsi_Strlen function in the src/jsiChar.c file.
- CVE-2020-23330HIGHCVSS 7.5EG 7.52021-08-17
An issue was discovered in Bento4 version 06c39d9. A NULL pointer dereference exists in the AP4_Stz2Atom::GetSampleSize component located in /Core/Ap4Stz2Atom.cpp. It allows an attacker to cause a denial of service (DOS).
- CVE-2020-23331HIGHCVSS 7.5EG 7.52021-08-17
An issue was discovered in Bento4 version 06c39d9. A NULL pointer dereference exists in the AP4_DescriptorListWriter::Action component located in /Core/Ap4Descriptor.h. It allows an attacker to cause a denial of service (DOS).
- CVE-2020-23539HIGHCVSS 7.5EG 7.52021-04-08
An issue was discovered in Realtek rtl8723de BLE Stack <= 4.1 that allows remote attackers to cause a Denial of Service via the interval field to the CONNECT_REQ message.
- CVE-2020-23872HIGHCVSS 7.5EG 7.52021-11-10
A NULL pointer dereference in the function TextPage::restoreState of pdf2xml v2.0 allows attackers to cause a denial of service (DoS).
- CVE-2020-23879HIGHCVSS 7.5EG 7.52021-11-10
pdf2json v0.71 was discovered to contain a NULL pointer dereference in the component ObjectStream::getObject.
- CVE-2020-23911MEDIUMCVSS 5.5EG 5.52023-07-18
An issue was discovered in asn1c through v0.9.28. A NULL pointer dereference exists in the function _default_error_logger() located in asn1fix.c. It allows an attacker to cause Denial of Service.
- CVE-2020-23912MEDIUMCVSS 5.5EG 5.52021-04-21
An issue was discovered in Bento4 through v1.6.0-637. A NULL pointer dereference exists in the function AP4_StszAtom::GetSampleSize() located in Ap4StszAtom.cpp. It allows an attacker to cause Denial of Service.
- CVE-2020-23914MEDIUMCVSS 5.5EG 5.52021-04-21
An issue was discovered in cpp-peglib through v0.1.12. A NULL pointer dereference exists in the peg::AstOptimizer::optimize() located in peglib.h. It allows an attacker to cause Denial of Service.
- CVE-2020-23930MEDIUMCVSS 5.5EG 5.52021-04-21
An issue was discovered in gpac through 20200801. A NULL pointer dereference exists in the function nhmldump_send_header located in write_nhml.c. It allows an attacker to cause Denial of Service.
- CVE-2020-23932MEDIUMCVSS 5.5EG 5.52021-04-21
An issue was discovered in gpac before 1.0.1. A NULL pointer dereference exists in the function dump_isom_sdp located in filedump.c. It allows an attacker to cause Denial of Service.
- CVE-2020-24187MEDIUMCVSS 5.5EG 5.52023-08-11
An issue was discovered in ecma-helpers.c in jerryscript version 2.3.0, allows local attackers to cause a denial of service (DoS) (Null Pointer Dereference).
- CVE-2020-24369HIGHCVSS 7.5EG 7.52020-08-17
ldebug.c in Lua 5.4.0 attempts to access debug information via the line hook of a stripped function, leading to a NULL pointer dereference.
- CVE-2020-24385MEDIUMCVSS 5.5EG 5.52020-09-03
In MidnightBSD before 1.2.6 and 1.3 before August 2020, and FreeBSD before 7, a NULL pointer dereference was found in the Linux emulation layer that allows attackers to crash the running kernel. During binary interaction, td->td_emuldata i…
- CVE-2020-24421MEDIUMCVSS 5.5EG 5.52020-10-21
Adobe InDesign version 15.1.2 (and earlier) is affected by a NULL pointer dereference bug that occurs when handling a malformed .indd file. The impact is limited to causing a denial-of-service of the client application. User interaction is…
- CVE-2020-24659HIGHCVSS 7.5EG 7.52020-09-04
An issue was discovered in GnuTLS before 3.6.15. A server can trigger a NULL pointer dereference in a TLS 1.3 client if a no_renegotiation alert is sent with unexpected timing, and then an invalid second handshake occurs. The crash happens…
- CVE-2020-24890MEDIUMCVSS 5.5EG 5.52020-09-16
libraw 20.0 has a null pointer dereference vulnerability in parse_tiff_ifd in src/metadata/tiff.cpp, which may result in context-dependent arbitrary code execution. Note: this vulnerability occurs only if you compile the software in a cert…
- CVE-2020-25285MEDIUMCVSS 6.4EG 6.42020-09-13
A race condition between hugetlb sysctl handlers in mm/hugetlb.c in the Linux kernel before 5.8.8 could be used by local attackers to corrupt memory, cause a NULL pointer dereference, or possibly have unspecified other impact, aka CID-1774…
- CVE-2020-25427MEDIUMCVSS 5.5EG 5.52022-01-10
A Null pointer dereference vulnerability exits in MP4Box - GPAC version 0.8.0-rev177-g51a8ef874-master via the gf_isom_get_track_id function, which causes a denial of service.
- CVE-2020-25465HIGHCVSS 7.5EG 7.52020-12-04
Null Pointer Dereference. in xObjectBindingFromExpression at moddable/xs/sources/xsSyntaxical.c:3419 in Moddable SDK before OS200908 causes a denial of service (SEGV).
- CVE-2020-25467MEDIUMCVSS 5.5EG 5.52021-06-10
A null pointer dereference was discovered lzo_decompress_buf in stream.c in Irzip 0.621 which allows an attacker to cause a denial of service (DOS) via a crafted compressed file.
- CVE-2020-25639MEDIUMCVSS 4.4EG 4.42021-03-04
A NULL pointer dereference flaw was found in the Linux kernel's GPU Nouveau driver functionality in versions prior to 5.12-rc1 in the way the user calls ioctl DRM_IOCTL_NOUVEAU_CHANNEL_ALLOC. This flaw allows a local user to crash the syst…
- CVE-2020-25692HIGHCVSS 7.5EG 7.52020-12-08
A NULL pointer dereference was found in OpenLDAP server and was fixed in openldap 2.4.55, during a request for renaming RDNs. An unauthenticated attacker could remotely crash the slapd process by sending a specially crafted request, causin…
- CVE-2020-25741LOWCVSS 3.2EG 3.22020-10-02
fdctrl_write_data in hw/block/fdc.c in QEMU 5.0.0 has a NULL pointer dereference via a NULL block pointer for the current drive.
- CVE-2020-25742LOWCVSS 3.2EG 3.22020-10-06
pci_change_irq_level in hw/pci/pci.c in QEMU before 5.1.1 has a NULL pointer dereference because pci_get_bus() might not return a valid pointer.
- CVE-2020-25743LOWCVSS 3.2EG 3.22020-10-06
hw/ide/pci.c in QEMU before 5.1.1 can trigger a NULL pointer dereference because it lacks a pointer check before an ide_cancel_dma_sync call.
- CVE-2020-25821HIGHCVSS 7.5EG 7.52020-09-23
peg-markdown 0.4.14 has a NULL pointer dereference in process_raw_blocks in markdown_lib.c. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
- CVE-2020-25858HIGHCVSS 7.5EG 7.52020-10-15
The QCMAP_Web_CLIENT binary in the Qualcomm QCMAP software suite prior to versions released in October 2020 does not validate the return value of a strstr() or strchr() call in the Tokenizer() function. An attacker who invokes the web inte…
- CVE-2020-25866HIGHCVSS 7.5EG 7.52020-10-06
In Wireshark 3.2.0 to 3.2.6 and 3.0.0 to 3.0.13, the BLIP protocol dissector has a NULL pointer dereference because a buffer was sized for compressed (not uncompressed) messages. This was addressed in epan/dissectors/packet-blip.c by allow…
- CVE-2020-26213MEDIUMCVSS 5.9EG 5.92020-11-06
In teler before version 0.0.1, if you run teler inside a Docker container and encounter `errors.Exit` function, it will cause denial-of-service (`SIGSEGV`) because it doesn't get process ID and process group ID of teler properly to kills. …
- CVE-2020-26235MEDIUMCVSS 5.3EG 5.32020-11-24
In Rust time crate from version 0.2.7 and before version 0.2.23, unix-like operating systems may segfault due to dereferencing a dangling pointer in specific circumstances. This requires the user to set any environment variable in a differ…
- CVE-2020-26521HIGHCVSS 7.5EG 7.52020-11-06
The JWT library in NATS nats-server before 2.1.9 allows a denial of service (a nil dereference in Go code).
- CVE-2020-26536MEDIUMCVSS 5.5EG 5.52020-10-02
An issue was discovered in Foxit Reader and PhantomPDF before 10.1. There is a NULL pointer dereference via a crafted PDF document.
- CVE-2020-26991HIGHCVSS 8.8EG 8.82021-01-12
A vulnerability has been identified in JT2Go (All versions < V13.1.0.2), Teamcenter Visualization (All versions < V13.1.0.2). Affected applications lack proper validation of user-supplied data when parsing ASM files. This could lead to poi…
- CVE-2020-27277HIGHCVSS 7.8EG 7.82021-01-11
Delta Electronics DOPSoft Version 4.0.8.21 and prior has a null pointer dereference issue while processing project files, which may allow an attacker to execute arbitrary code.
- CVE-2020-27279HIGHCVSS 7.5EG 7.52021-01-06
A NULL pointer deference vulnerability has been identified in the protocol converter. An attacker could send a specially crafted packet that could reboot the device running Crimson 3.1 (Build versions prior to 3119.001).
- CVE-2020-27289HIGHCVSS 7.8EG 7.82021-01-11
Delta Electronics CNCSoft-B Versions 1.0.0.2 and prior has a null pointer dereference issue while processing project files, which may allow an attacker to execute arbitrary code.
- CVE-2020-27675MEDIUMCVSS 4.7EG 4.72020-10-22
An issue was discovered in the Linux kernel through 5.9.1, as used with Xen through 4.14.x. drivers/xen/events/events_base.c allows event-channel removal during the event-handling loop (a race condition). This can cause a use-after-free or…
- CVE-2020-27819MEDIUMCVSS 5.5EG 5.52021-02-23
An issue was discovered in libxls before and including 1.6.1 when reading Microsoft Excel files. A NULL pointer dereference vulnerability exists when parsing XLS cells in libxls/xls2csv.c:199. It could allow a remote attacker to cause a de…
- CVE-2020-27830MEDIUMCVSS 5.5EG 5.52021-05-13
A vulnerability was found in Linux Kernel where in the spk_ttyio_receive_buf2() function, it would dereference spk_ttyio_synth without checking whether it is NULL or not, and may lead to a NULL-ptr deref crash.
Map vulnerabilities like CWE-476 to your infrastructure
EchelonGraph correlates every CVE — across CWE-476 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →