Vulnerabilities > NULL Pointer Dereference

DATE CVE VULNERABILITY TITLE RISK
2020-11-08 CVE-2020-28344 NULL Pointer Dereference vulnerability in Google Android
An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, 9.0, and 10 software.
network
low complexity
google CWE-476
7.5
2020-11-06 CVE-2020-26521 NULL Pointer Dereference vulnerability in multiple products
The JWT library in NATS nats-server before 2.1.9 allows a denial of service (a nil dereference in Go code).
network
low complexity
linuxfoundation fedoraproject CWE-476
7.5
2020-11-06 CVE-2020-5646 NULL Pointer Dereference vulnerability in Mitsubishielectric Coreos 05.65.00.Bd
NULL pointer dereferences vulnerability in TCP/IP function included in the firmware of GT14 Model of GOT 1000 series (GT1455-QTBDE CoreOS version "05.65.00.BD" and earlier, GT1450-QMBDE CoreOS version "05.65.00.BD" and earlier, GT1450-QLBDE CoreOS version "05.65.00.BD" and earlier, GT1455HS-QTBDE CoreOS version "05.65.00.BD" and earlier, and GT1450HS-QMBDE CoreOS version "05.65.00.BD" and earlier) allows a remote unauthenticated attacker to stop the network functions of the products via a specially crafted packet.
network
low complexity
mitsubishielectric CWE-476
7.5
2020-11-02 CVE-2020-5655 NULL Pointer Dereference vulnerability in Mitsubishielectric products
NULL pointer dereferences vulnerability in TCP/IP function included in the firmware of MELSEC iQ-R series (RJ71EIP91 EtherNet/IP Network Interface Module First 2 digits of serial number are '02' or before, RJ71PN92 PROFINET IO Controller Module First 2 digits of serial number are '01' or before, RD81DL96 High Speed Data Logger Module First 2 digits of serial number are '08' or before, RD81MES96N MES Interface Module First 2 digits of serial number are '04' or before, and RD81OPC96 OPC UA Server Module First 2 digits of serial number are '04' or before) allows a remote unauthenticated attacker to stop the network functions of the products via a specially crafted packet.
network
low complexity
mitsubishielectric CWE-476
7.5
2020-10-29 CVE-2020-14323 NULL Pointer Dereference vulnerability in multiple products
A null pointer dereference flaw was found in samba's Winbind service in versions before 4.11.15, before 4.12.9 and before 4.13.1.
local
low complexity
samba opensuse fedoraproject debian CWE-476
5.5
2020-10-27 CVE-2019-8588 NULL Pointer Dereference vulnerability in Apple Airport Base Station Firmware
A null pointer dereference was addressed with improved input validation.
network
low complexity
apple CWE-476
7.5
2020-10-27 CVE-2019-8572 NULL Pointer Dereference vulnerability in Apple Airport Base Station Firmware
A null pointer dereference was addressed with improved input validation.
network
low complexity
apple CWE-476
critical
9.8
2020-10-22 CVE-2018-18508 NULL Pointer Dereference vulnerability in multiple products
In Network Security Services (NSS) before 3.36.7 and before 3.41.1, a malformed signature can cause a crash due to a null dereference, resulting in a Denial of Service.
network
low complexity
mozilla siemens CWE-476
6.5
2020-10-15 CVE-2020-25858 NULL Pointer Dereference vulnerability in Qualcomm Mobile Access Point
The QCMAP_Web_CLIENT binary in the Qualcomm QCMAP software suite prior to versions released in October 2020 does not validate the return value of a strstr() or strchr() call in the Tokenizer() function.
network
low complexity
qualcomm CWE-476
7.5
2020-10-14 CVE-2020-9746 NULL Pointer Dereference vulnerability in Adobe Flash Player
Adobe Flash Player version 32.0.0.433 (and earlier) are affected by an exploitable NULL pointer dereference vulnerability that could result in a crash and arbitrary code execution.
network
low complexity
adobe CWE-476
8.8