Vulnerabilities > NULL Pointer Dereference

DATE CVE VULNERABILITY TITLE RISK
2017-11-17 CVE-2017-16868 NULL Pointer Dereference vulnerability in Swftools 0.9.2
In SWFTools 0.9.2, the wav_convert2mono function in lib/wav.c does not properly restrict a multiplication within a malloc call, which allows remote attackers to cause a denial of service (integer overflow and NULL pointer dereference) via a crafted WAV file.
network
swftools CWE-476
4.3
2017-11-17 CVE-2017-1000200 NULL Pointer Dereference vulnerability in Tcmu-Runner Project Tcmu-Runner
tcmu-runner version 1.0.5 to 1.2.0 is vulnerable to a dbus triggered NULL pointer dereference in the tcmu-runner daemon's on_unregister_handler() function resulting in denial of service
network
low complexity
tcmu-runner-project CWE-476
5.0
2017-11-16 CVE-2017-13135 NULL Pointer Dereference vulnerability in Libbpg Project Libbpg 0.9.7
A NULL Pointer Dereference exists in VideoLAN x265, as used in libbpg 0.9.7 and other products, because the CUData::initialize function in common/cudata.cpp mishandles memory-allocation failure.
6.8
2017-11-15 CVE-2017-15102 NULL Pointer Dereference vulnerability in Linux Kernel
The tower_probe function in drivers/usb/misc/legousbtower.c in the Linux kernel before 4.8.1 allows local users (who are physically proximate for inserting a crafted USB device) to gain privileges by leveraging a write-what-where condition that occurs after a race condition and a NULL pointer dereference.
6.9
2017-11-13 CVE-2017-15526 NULL Pointer Dereference vulnerability in Symantec Endpoint Encryption
Prior to SEE v11.1.3MP1, Symantec Endpoint Encryption can be susceptible to a null pointer de-reference issue, which can result in a NullPointerException that can lead to a privilege escalation scenario.
low complexity
symantec CWE-476
5.2
2017-11-10 CVE-2017-12803 NULL Pointer Dereference vulnerability in Matroska Mkclean 0.8.9
The Node_ValidatePtr function in corec/corec/node/node.c in mkclean 0.8.9 allows remote attackers to cause a denial of service (assert fault) via a crafted mkv file.
network
matroska CWE-476
4.3
2017-11-10 CVE-2017-12800 NULL Pointer Dereference vulnerability in Matroska Libebml2, Mkclean and Mkvalidator
The EBML_FindNextElement function in ebmlmain.c in libebml2 through 2012-08-26 allows remote attackers to cause a denial of service (Null pointer dereference and application crash) via a crafted mkv file.
network
matroska CWE-476
4.3
2017-11-10 CVE-2017-12781 NULL Pointer Dereference vulnerability in Matroska Libebml2, Mkclean and Mkvalidator
The EBML_BufferToID function in ebmlelement.c in libebml2 through 2012-08-26 allows remote attackers to cause a denial of service (Null pointer dereference and application crash) via a crafted mkv file.
network
matroska CWE-476
4.3
2017-11-10 CVE-2017-12779 NULL Pointer Dereference vulnerability in Matroska Mkvalidator 0.5.1
The Node_GetData function in corec/corec/node/node.c in mkvalidator 0.5.1 allows remote attackers to cause a denial of service (Null pointer dereference and application crash) via a crafted mkv file.
network
matroska CWE-476
4.3
2017-11-09 CVE-2017-16711 NULL Pointer Dereference vulnerability in Swftools 0.9.2
The swf_DefineLosslessBitsTagToImage function in lib/modules/swfbits.c in SWFTools 0.9.2 mishandles an uncompress failure, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) because of extractDefinitions in lib/readers/swf.c and fill_line_bitmap in lib/devices/render.c, as demonstrated by swfrender.
network
swftools CWE-476
4.3