CWE-476— NULL Pointer Dereference
The product dereferences a pointer that it expects to be valid but is NULL.— MITRE CWE catalog
5,487 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-476page 28 of 110
- CVE-2020-28163MEDIUMCVSS 6.5EG 6.52023-04-16
libdwarf before 20201201 allows a dwarf_print_lines.c NULL pointer dereference and application crash via a DWARF5 line-table header that has an invalid FORM for a pathname.
- CVE-2020-28203MEDIUMCVSS 5.5EG 5.52020-12-15
An issue was discovered in Foxit Reader and PhantomPDF 10.1.0.37527 and earlier. There is a null pointer access/dereference while opening a crafted PDF file, leading the application to crash (denial of service).
- CVE-2020-28344HIGHCVSS 7.5EG 7.52020-11-08
An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, 9.0, and 10 software. System services may crash because of the lack of a NULL parameter check. The LG ID is LVE-SMP-200024 (November 2020).
- CVE-2020-28345HIGHCVSS 7.5EG 7.52020-11-08
An issue was discovered on LG mobile devices with Android OS 10 software. The Wi-Fi subsystem may crash because of the lack of a NULL parameter check. The LG ID is LVE-SMP-200025 (November 2020).
- CVE-2020-28346HIGHCVSS 7.5EG 7.52021-03-26
ACRN through 2.2 has a devicemodel/hw/pci/virtio/virtio.c NULL Pointer Dereference.
- CVE-2020-29484MEDIUMCVSS 6.0EG 6.02020-12-15
An issue was discovered in Xen through 4.14.x. When a Xenstore watch fires, the xenstore client that registered the watch will receive a Xenstore message containing the path of the modified Xenstore entry that triggered the watch, and the …
- CVE-2020-29571MEDIUMCVSS 6.2EG 6.22020-12-15
An issue was discovered in Xen through 4.14.x. A bounds check common to most operation time functions specific to FIFO event channels depends on the CPU observing consistent state. While the producer side uses appropriately ordered writes,…
- CVE-2020-29652HIGHCVSS 7.5EG 7.52020-12-17
A nil pointer dereference in the golang.org/x/crypto/ssh component through v0.0.0-20201203163018-be400aefbc4c for Go allows remote attackers to cause a denial of service against SSH servers.
- CVE-2020-3407HIGHCVSS 8.6EG 8.62020-09-24
A vulnerability in the RESTCONF and NETCONF-YANG access control list (ACL) function of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the device to reload. The vulnerability is due to incorrect processing of…
- CVE-2020-3481HIGHCVSS 7.5EG 7.52020-07-20
A vulnerability in the EGG archive parsing module in Clam AntiVirus (ClamAV) Software versions 0.102.0 - 0.102.3 could allow an unauthenticated, remote attacker to cause a denial of service condition on an affected device. The vulnerabilit…
- CVE-2020-3517HIGHCVSS 8.6EG 8.62020-08-27
A vulnerability in the Cisco Fabric Services component of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated attacker to cause process crashes, which could result in a denial of service (DoS) condition on an affect…
- CVE-2020-35450HIGHCVSS 7.5EG 7.52020-12-26
Gobby 0.4.11 allows a NULL pointer dereference in the D-Bus handler for certain set_language calls.
- CVE-2020-35495MEDIUMCVSS 5.5EG 5.52021-01-04
There's a flaw in binutils /bfd/pef.c. An attacker who is able to submit a crafted input file to be processed by the objdump program could cause a null pointer dereference. The greatest threat from this flaw is to application availability.…
- CVE-2020-35496MEDIUMCVSS 5.5EG 5.52021-01-04
There's a flaw in bfd_pef_scan_start_address() of bfd/pef.c in binutils which could allow an attacker who is able to submit a crafted file to be processed by objdump to cause a NULL pointer dereference. The greatest threat of this flaw is …
- CVE-2020-35499MEDIUMCVSS 6.7EG 6.72021-02-19
A NULL pointer dereference flaw in Linux kernel versions prior to 5.11 may be seen if sco_sock_getsockopt function in net/bluetooth/sco.c do not have a sanity check for a socket connection, when using BT_SNDMTU/BT_RCVMTU for SCO sockets. T…
- CVE-2020-35503MEDIUMCVSS 6.0EG 6.02021-06-02
A NULL pointer dereference flaw was found in the megasas-gen2 SCSI host bus adapter emulation of QEMU in versions before and including 6.0. This issue occurs in the megasas_command_cancelled() callback function while dropping a SCSI reques…
- CVE-2020-35504MEDIUMCVSS 6.0EG 6.02021-05-28
A NULL pointer dereference flaw was found in the SCSI emulation support of QEMU in versions before 6.0.0. This flaw allows a privileged guest user to crash the QEMU process on the host, resulting in a denial of service. The highest threat …
- CVE-2020-35505MEDIUMCVSS 4.4EG 4.42021-05-28
A NULL pointer dereference flaw was found in the am53c974 SCSI host bus adapter emulation of QEMU in versions before 6.0.0. This issue occurs while handling the 'Information Transfer' command. This flaw allows a privileged guest user to cr…
- CVE-2020-35507MEDIUMCVSS 5.5EG 5.52021-01-04
There's a flaw in bfd_pef_parse_function_stubs of bfd/pef.c in binutils in versions prior to 2.34 which could allow an attacker who is able to submit a crafted file to be processed by objdump to cause a NULL pointer dereference. The greate…
- CVE-2020-3552HIGHCVSS 7.4EG 7.42020-09-24
A vulnerability in the Ethernet packet handling of Cisco Aironet Access Points (APs) Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to…
- CVE-2020-35525HIGHCVSS 7.5EG 7.52022-09-01
In SQlite 3.31.1, a potential null pointer derreference was found in the INTERSEC query processing.
- CVE-2020-35538MEDIUMCVSS 5.5EG 5.52022-08-31
A crafted input file could cause a null pointer dereference in jcopy_sample_rows() when processed by libjpeg-turbo.
- CVE-2020-35668HIGHCVSS 7.5EG 7.52020-12-23
RedisGraph 2.x through 2.2.11 has a NULL Pointer Dereference that leads to a server crash because it mishandles an unquoted string, such as an alias that has not yet been introduced.
- CVE-2020-35680HIGHCVSS 7.5EG 7.52020-12-24
smtpd/lka_filter.c in OpenSMTPD before 6.8.0p1, in certain configurations, allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted pattern of client activity, because the filter state …
- CVE-2020-35860CRITICALCVSS 9.8EG 9.82020-12-31
An issue was discovered in the cbox crate through 2020-03-19 for Rust. The CBox API allows dereferencing raw pointers without a requirement for unsafe code.
- CVE-2020-35907MEDIUMCVSS 5.5EG 5.52020-12-31
An issue was discovered in the futures-task crate before 0.3.5 for Rust. futures_task::noop_waker_ref allows a NULL pointer dereference.
- CVE-2020-35981HIGHCVSS 7.8EG 7.82021-04-21
An issue was discovered in GPAC version 0.8.0 and 1.0.1. There is an invalid pointer dereference in the function SetupWriters() in isomedia/isom_store.c.
- CVE-2020-35982HIGHCVSS 7.8EG 7.82021-04-21
An issue was discovered in GPAC version 0.8.0 and 1.0.1. There is an invalid pointer dereference in the function gf_hinter_track_finalize() in media_tools/isom_hinter.c.
- CVE-2020-36024MEDIUMCVSS 5.5EG 5.52023-08-11
An issue was discovered in freedesktop poppler version 20.12.1, allows remote attackers to cause a denial of service (DoS) via crafted .pdf file to FoFiType1C::convertToType1 function.
- CVE-2020-36130MEDIUMCVSS 6.5EG 6.52021-12-02
AOM v2.0.1 was discovered to contain a NULL pointer dereference via the component av1/av1_dx_iface.c.
- CVE-2020-36135MEDIUMCVSS 6.5EG 6.52021-12-02
AOM v2.0.1 was discovered to contain a NULL pointer dereference via the component rate_hist.c.
- CVE-2020-36138HIGHCVSS 7.5EG 7.52023-08-11
An issue was discovered in decode_frame in libavcodec/tiff.c in FFmpeg version 4.3, allows remote attackers to cause a denial of service (DoS).
- CVE-2020-36148MEDIUMCVSS 6.5EG 6.52021-02-08
Incorrect handling of input data in verifyAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointer dereference and segmentation fault error in case of restrictive memory protection or near NULL pointer overwrite in c…
- CVE-2020-36149MEDIUMCVSS 6.5EG 6.52021-02-08
Incorrect handling of input data in changeAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointer dereference and segmentation fault error in case of restrictive memory protection or near NULL pointer overwrite in c…
- CVE-2020-36558MEDIUMCVSS 5.1EG 5.12022-07-21
A race condition in the Linux kernel before 5.5.7 involving VT_RESIZEX could lead to a NULL pointer dereference and general protection fault.
- CVE-2020-3658CRITICALCVSS 9.1EG 9.12020-06-22
Possible null-pointer dereference can occur while parsing mp4 clip with corrupted sample table atoms in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Sn…
- CVE-2020-3660CRITICALCVSS 9.8EG 9.82020-06-22
Possible null-pointer dereference can occur while parsing mp4 clip with corrupted sample table atoms in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Sn…
- CVE-2020-36646HIGHCVSS 3.5EG 7.52023-01-07
A vulnerability classified as problematic has been found in MediaArea ZenLib up to 0.4.38. This affects the function Ztring::Date_From_Seconds_1970_Local of the file Source/ZenLib/Ztring.cpp. The manipulation of the argument Value leads to…
- CVE-2020-36789MEDIUMCVSS 5.5EG 5.52025-04-17
In the Linux kernel, the following vulnerability has been resolved: can: dev: can_get_echo_skb(): prevent call to kfree_skb() in hard IRQ context If a driver calls can_get_echo_skb() during a hardware IRQ (which is often, but not always,…
- CVE-2020-3999MEDIUMCVSS 6.5EG 6.52020-12-21
VMware ESXi (7.0 prior to ESXi70U1c-17325551), VMware Workstation (16.x prior to 16.0 and 15.x prior to 15.5.7), VMware Fusion (12.x prior to 12.0 and 11.x prior to 11.5.7) and VMware Cloud Foundation contain a denial of service vulnerabil…
- CVE-2020-5183HIGHCVSS 7.5EG 7.52020-01-08
FTPGetter Professional 5.97.0.223 is vulnerable to a memory corruption bug when a user sends a specially crafted string to the application. This memory corruption bug can possibly be classified as a NULL pointer dereference.
- CVE-2020-5544CRITICALCVSS 9.8EG 9.82020-03-16
Null Pointer Dereference vulnerability in TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 series IU1-1M20-D firmware version 1.0.7 and earlier allows remote attackers to stop the network functions or execute malware…
- CVE-2020-5597HIGHCVSS 7.5EG 7.52020-07-07
TCP/IP function included in the firmware of Mitsubishi Electric GOT2000 series (CoreOS with version -Y and earlier installed in GT27 Model, GT25 Model, and GT23 Model) contains a null pointer dereference vulnerability, which may allow a re…
- CVE-2020-5646HIGHCVSS 7.5EG 7.52020-11-06
NULL pointer dereferences vulnerability in TCP/IP function included in the firmware of GT14 Model of GOT 1000 series (GT1455-QTBDE CoreOS version "05.65.00.BD" and earlier, GT1450-QMBDE CoreOS version "05.65.00.BD" and earlier, GT1450-QLBD…
- CVE-2020-5655HIGHCVSS 7.5EG 7.52020-11-02
NULL pointer dereferences vulnerability in TCP/IP function included in the firmware of MELSEC iQ-R series (RJ71EIP91 EtherNet/IP Network Interface Module First 2 digits of serial number are '02' or before, RJ71PN92 PROFINET IO Controller M…
- CVE-2020-5736MEDIUMCVSS 6.5EG 6.52020-04-08
Amcrest cameras and NVR are vulnerable to a null pointer dereference over port 37777. An authenticated remote attacker can abuse this issue to crash the device.
- CVE-2020-5762HIGHCVSS 7.5EG 7.52020-07-29
Grandstream HT800 series firmware version 1.0.17.5 and below is vulnerable to a denial of service attack against the TR-069 service. An unauthenticated remote attacker can stop the service due to a NULL pointer dereference in the TR-069 se…
- CVE-2020-5960MEDIUMCVSS 5.5EG 5.52020-03-12
NVIDIA Virtual GPU Manager contains a vulnerability in the kernel module (nvidia.ko), where a null pointer dereference may occur, which may lead to denial of service.
- CVE-2020-5966HIGHCVSS 7.8EG 7.82020-06-25
NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, in which a NULL pointer is dereferenced, leading to denial of service or potential escalation of p…
- CVE-2020-5989MEDIUMCVSS 5.5EG 5.52020-10-02
NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which it can dereference a NULL pointer, which may lead to denial of service. This affects vGPU version 8.x (prior to 8.5), version 10.x (prior to 10.4) and version…
Map vulnerabilities like CWE-476 to your infrastructure
EchelonGraph correlates every CVE — across CWE-476 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →