CWE-476— NULL Pointer Dereference
The product dereferences a pointer that it expects to be valid but is NULL.— MITRE CWE catalog
5,484 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-476page 8 of 110
- CVE-2017-1000358MEDIUMCVSS 6.5EG 6.52017-04-24
Controller throws an exception and does not allow user to add subsequent flow for a particular switch. Component: OpenDaylight odl-restconf feature contains this flaw. Version: OpenDaylight 4.0 is affected by this flaw.
- CVE-2017-1000360MEDIUMCVSS 5.3EG 5.32017-04-24
StreamCorruptedException and NullPointerException in OpenDaylight odl-mdsal-xsql. Controller launches exceptions in the console. Component: OpenDaylight odl-mdsal-xsql is vulnerable to this flaw. Version: The tested versions are OpenDaylig…
- CVE-2017-1000445MEDIUMCVSS 6.5EG 6.52018-01-02
ImageMagick 7.0.7-1 and older version are vulnerable to null pointer dereference in the MagickCore component and might lead to denial of service
- CVE-2017-1000460MEDIUMCVSS 6.5EG 6.52018-01-03
In line libavcodec/h264dec.c:500 in libav(v13_dev0), ffmpeg(n3.4), chromium(56 prior Feb 13, 2017), the return value of init_get_bits is ignored and get_ue_golomb(&gb) is called on an uninitialized get_bits context, which causes a NULL der…
- CVE-2017-1000471CRITICALCVSS 9.8EG 9.82018-01-03
EmbedThis GoAhead Webserver version 4.0.0 is vulnerable to a NULL pointer dereference in the CGI handler resulting in memory corruption or denial of service.
- CVE-2017-10790HIGHCVSS 7.5EG 7.52017-07-02
The _asn1_check_identifier function in GNU Libtasn1 through 4.12 causes a NULL pointer dereference and crash when reading crafted input that triggers assignment of a NULL value within an asn1_node structure. It may lead to a remote denial …
- CVE-2017-10792MEDIUMCVSS 6.5EG 6.52017-07-02
There is a NULL Pointer Dereference in the function ll_insert() of the libpspp library in GNU PSPP before 0.11.0. For example, a crash was observed within the library code when attempting to convert invalid SPSS data into CSV format. A cra…
- CVE-2017-10917CRITICALCVSS 9.1EG 9.12017-07-05
Xen through 4.8.x does not validate the port numbers of polled event channel ports, which allows guest OS users to cause a denial of service (NULL pointer dereference and host OS crash) or possibly obtain sensitive information, aka XSA-221.
- CVE-2017-10965CRITICALCVSS 9.8EG 9.82017-07-07
An issue was discovered in Irssi before 1.0.4. When receiving messages with invalid time stamps, Irssi would try to dereference a NULL pointer.
- CVE-2017-11063MEDIUMCVSS 5.9EG 5.92017-10-10
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, as a result of a race condition between two userspace processes that interact with the driver concurrently, a null pointer dere…
- CVE-2017-11096HIGHCVSS 8.8EG 8.82017-07-07
When SWFTools 0.9.2 processes a crafted file in swfcombine, it can lead to a NULL Pointer Dereference in the swf_DeleteFilter() function in lib/modules/swffilter.c.
- CVE-2017-11097HIGHCVSS 8.8EG 8.82017-07-07
When SWFTools 0.9.2 processes a crafted file in swfc, it can lead to a NULL Pointer Dereference in the dict_lookup() function in lib/q.c.
- CVE-2017-11100HIGHCVSS 8.8EG 8.82017-07-07
When SWFTools 0.9.2 processes a crafted file in swfextract, it can lead to a NULL Pointer Dereference in the swf_FoldSprite() function in lib/rxfswf.c.
- CVE-2017-11101HIGHCVSS 8.8EG 8.82017-07-07
When SWFTools 0.9.2 processes a crafted file in swfcombine, it can lead to a NULL Pointer Dereference in the swf_Relocate() function in lib/modules/swftools.c.
- CVE-2017-11113HIGHCVSS 7.5EG 7.52017-07-08
In ncurses 6.0, there is a NULL Pointer Dereference in the _nc_parse_entry function of tinfo/parse_entry.c. It could lead to a remote denial of service attack if the terminfo library code is used to process untrusted terminfo data.
- CVE-2017-11124CRITICALCVSS 9.8EG 9.82017-07-10
libxar.so in xar 1.6.1 has a NULL pointer dereference in the xar_unserialize function in archive.c.
- CVE-2017-11125CRITICALCVSS 9.8EG 9.82017-07-10
libxar.so in xar 1.6.1 has a NULL pointer dereference in the xar_get_path function in util.c.
- CVE-2017-11185HIGHCVSS 7.5EG 7.52017-08-18
The gmp plugin in strongSwan before 5.6.0 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted RSA signature.
- CVE-2017-11189MEDIUMCVSS 6.5EG 6.52017-07-12
unrarlib.c in unrar-free 0.0.1 might allow remote attackers to cause a denial of service (NULL pointer dereference and application crash), which could be relevant if unrarlib is used as library code for a long-running application. NOTE: on…
- CVE-2017-11333MEDIUMCVSS 5.5EG 5.52017-07-31
The vorbis_analysis_wrote function in lib/block.c in Xiph.Org libvorbis 1.3.5 allows remote attackers to cause a denial of service (OOM) via a crafted wav file.
- CVE-2017-11522MEDIUMCVSS 6.5EG 6.52017-07-22
The WriteOnePNGImage function in coders/png.c in ImageMagick through 6.9.9-0 and 7.x through 7.0.6-1 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.
- CVE-2017-11550MEDIUMCVSS 5.5EG 5.52017-07-31
The id3_ucs4_length function in ucs4.c in libid3tag 0.15.1b allows remote attackers to cause a denial of service (NULL Pointer Dereference and application crash) via a crafted mp3 file.
- CVE-2017-11590HIGHCVSS 7.5EG 7.52017-07-24
There is a NULL pointer dereference in the caseless_hash function in gxps-archive.c in libgxps 0.2.5. A crafted input will lead to a remote denial of service attack.
- CVE-2017-11637CRITICALCVSS 9.8EG 9.82017-07-26
GraphicsMagick 1.3.26 has a NULL pointer dereference in the WritePCLImage() function in coders/pcl.c during writes of monochrome images.
- CVE-2017-11642HIGHCVSS 8.8EG 8.82017-07-26
GraphicsMagick 1.3.26 has a NULL pointer dereference in the WriteMAPImage() function in coders/map.c when processing a non-colormapped image, a different vulnerability than CVE-2017-11638.
- CVE-2017-11733MEDIUMCVSS 5.5EG 5.52017-07-29
A null pointer dereference vulnerability was found in the function stackswap (called from decompileSTACKSWAP) in util/decompile.c in Ming 0.4.8, which allows attackers to cause a denial of service via a crafted file.
- CVE-2017-11750MEDIUMCVSS 6.5EG 6.52017-07-30
The ReadOneJNGImage function in coders/png.c in ImageMagick 6.9.9-4 and 7.0.6-4 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.
- CVE-2017-12124HIGHCVSS 6.5EG 7.52018-05-14
An exploitable denial of service vulnerability exists in the web server functionality of Moxa EDR-810 V4.1 build 17030317. A specially crafted HTTP URI can cause a null pointer dereference resulting in the web server crashing. An attacker …
- CVE-2017-12130HIGHCVSS 7.5EG 7.52018-01-20
An exploitable NULL pointer dereference vulnerability exists in the tinysvcmdns library version 2017-11-05. A specially crafted packet can make the library dereference a NULL pointer leading to a server crash and denial of service. An atta…
- CVE-2017-12153MEDIUMCVSS 4.4EG 4.42017-09-21
A security flaw was discovered in the nl80211_set_rekey_data() function in net/wireless/nl80211.c in the Linux kernel through 4.13.3. This function does not check whether the required attributes are present in a Netlink request. This reque…
- CVE-2017-12192MEDIUMCVSS 5.5EG 5.52017-10-12
The keyctl_read_key function in security/keys/keyctl.c in the Key Management subcomponent in the Linux kernel before 4.13.5 does not properly consider that a key may be possessed but negatively instantiated, which allows local users to cau…
- CVE-2017-12193MEDIUMCVSS 5.5EG 5.52017-11-22
The assoc_array_insert_into_terminal_node function in lib/assoc_array.c in the Linux kernel before 4.13.11 mishandles node splitting, which allows local users to cause a denial of service (NULL pointer dereference and panic) via a crafted …
- CVE-2017-12380HIGHCVSS 7.5EG 7.52018-01-26
ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper input…
- CVE-2017-12457HIGHCVSS 7.8EG 7.82017-08-04
The bfd_make_section_with_flags function in section.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause a NULL dereference via a crafted file.
- CVE-2017-12464HIGHCVSS 7.5EG 7.52018-02-07
ccn-lite-valid.c in CCN-lite before 2.00 allows context-dependent attackers to cause a denial of service (NULL pointer dereference) via vectors involving the keyfile variable.
- CVE-2017-12472CRITICALCVSS 9.8EG 9.82018-02-07
ccnl-ext-mgmt.c in CCN-lite before 2.00 allows context-dependent attackers to have unspecified impact by leveraging missing NULL pointer checks after ccnl_malloc.
- CVE-2017-12474MEDIUMCVSS 5.5EG 5.52017-09-06
The AP4_AtomSampleTable::GetSample function in Core/Ap4AtomSampleTable.cpp in Bento4 mp42ts before 1.5.0-616 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted mp4 file.
- CVE-2017-12475MEDIUMCVSS 5.5EG 5.52017-09-06
The AP4_Processor::Process function in Core/Ap4Processor.cpp in Bento4 mp4encrypt before 1.5.0-616 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted mp4 file.
- CVE-2017-12476MEDIUMCVSS 5.5EG 5.52017-09-06
The AP4_AvccAtom::InspectFields function in Core/Ap4AvccAtom.cpp in Bento4 mp4dump before 1.5.0-616 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted mp4 file.
- CVE-2017-12545HIGHCVSS 7.5EG 7.52018-02-15
A remote denial of service vulnerability in HPE System Management Homepage for Windows and Linux version prior to v7.6.1 was found.
- CVE-2017-12627CRITICALCVSS 9.8EG 9.82018-03-01
In Apache Xerces-C XML Parser library before 3.2.1, processing of external DTD paths can result in a null pointer dereference under certain conditions.
- CVE-2017-12719HIGHCVSS 7.5EG 7.52017-11-06
An Untrusted Pointer Dereference issue was discovered in Advantech WebAccess versions prior to V8.2_20170817. A remote attacker is able to execute code to dereference a pointer within the program causing the application to become unavailab…
- CVE-2017-12779MEDIUMCVSS 6.5EG 6.52017-11-10
The Node_GetData function in corec/corec/node/node.c in mkvalidator 0.5.1 allows remote attackers to cause a denial of service (Null pointer dereference and application crash) via a crafted mkv file.
- CVE-2017-12781MEDIUMCVSS 6.5EG 6.52017-11-10
The EBML_BufferToID function in ebmlelement.c in libebml2 through 2012-08-26 allows remote attackers to cause a denial of service (Null pointer dereference and application crash) via a crafted mkv file.
- CVE-2017-12800MEDIUMCVSS 6.5EG 6.52017-11-10
The EBML_FindNextElement function in ebmlmain.c in libebml2 through 2012-08-26 allows remote attackers to cause a denial of service (Null pointer dereference and application crash) via a crafted mkv file.
- CVE-2017-12803MEDIUMCVSS 6.5EG 6.52017-11-10
The Node_ValidatePtr function in corec/corec/node/node.c in mkclean 0.8.9 allows remote attackers to cause a denial of service (assert fault) via a crafted mkv file.
- CVE-2017-12809MEDIUMCVSS 6.5EG 6.52017-08-23
QEMU (aka Quick Emulator), when built with the IDE disk and CD/DVD-ROM Emulator support, allows local guest OS privileged users to cause a denial of service (NULL pointer dereference and QEMU process crash) by flushing an empty CDROM devic…
- CVE-2017-12920MEDIUMCVSS 6.5EG 6.52017-08-28
CDirectory::GetDirEntry in dir.cxx in libfpx 1.3.1_p6 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted fpx image.
- CVE-2017-12921MEDIUMCVSS 6.5EG 6.52017-08-28
PFileFlashPixView::GetGlobalInfoProperty in f_fpxvw.cpp in libfpx 1.3.1_p6 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted fpx image.
- CVE-2017-12922MEDIUMCVSS 6.5EG 6.52017-08-28
wchar.c in libfpx 1.3.1_p6 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted fpx image.
Map vulnerabilities like CWE-476 to your infrastructure
EchelonGraph correlates every CVE — across CWE-476 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →