Vulnerabilities > NULL Pointer Dereference

DATE CVE VULNERABILITY TITLE RISK
2020-10-06 CVE-2020-25743 NULL Pointer Dereference vulnerability in multiple products
hw/ide/pci.c in QEMU before 5.1.1 can trigger a NULL pointer dereference because it lacks a pointer check before an ide_cancel_dma_sync call.
local
low complexity
qemu redhat CWE-476
3.2
2020-10-06 CVE-2020-25742 NULL Pointer Dereference vulnerability in Qemu
pci_change_irq_level in hw/pci/pci.c in QEMU before 5.1.1 has a NULL pointer dereference because pci_get_bus() might not return a valid pointer.
local
low complexity
qemu CWE-476
3.2
2020-10-06 CVE-2020-25866 NULL Pointer Dereference vulnerability in multiple products
In Wireshark 3.2.0 to 3.2.6 and 3.0.0 to 3.0.13, the BLIP protocol dissector has a NULL pointer dereference because a buffer was sized for compressed (not uncompressed) messages.
network
low complexity
wireshark fedoraproject opensuse oracle CWE-476
7.5
2020-10-02 CVE-2020-5989 NULL Pointer Dereference vulnerability in Nvidia Virtual GPU Manager
NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which it can dereference a NULL pointer, which may lead to denial of service.
local
low complexity
nvidia CWE-476
5.5
2020-10-02 CVE-2020-25741 NULL Pointer Dereference vulnerability in Qemu 5.0.0
fdctrl_write_data in hw/block/fdc.c in QEMU 5.0.0 has a NULL pointer dereference via a NULL block pointer for the current drive.
local
low complexity
qemu CWE-476
3.2
2020-10-02 CVE-2020-26536 NULL Pointer Dereference vulnerability in Foxitsoftware Foxit Reader
An issue was discovered in Foxit Reader and PhantomPDF before 10.1.
local
low complexity
foxitsoftware CWE-476
5.5
2020-09-24 CVE-2020-3552 NULL Pointer Dereference vulnerability in Cisco products
A vulnerability in the Ethernet packet handling of Cisco Aironet Access Points (APs) Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device.
low complexity
cisco CWE-476
7.4
2020-09-24 CVE-2020-3407 NULL Pointer Dereference vulnerability in Cisco IOS XE 15.8(3)M3
A vulnerability in the RESTCONF and NETCONF-YANG access control list (ACL) function of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the device to reload.
network
low complexity
cisco CWE-476
8.6
2020-09-23 CVE-2020-25821 NULL Pointer Dereference vulnerability in Peg-Markdown Project Peg-Markdown 0.4.14
peg-markdown 0.4.14 has a NULL pointer dereference in process_raw_blocks in markdown_lib.c.
network
low complexity
peg-markdown-project CWE-476
7.5
2020-09-21 CVE-2020-15964 NULL Pointer Dereference vulnerability in multiple products
Insufficient data validation in media in Google Chrome prior to 85.0.4183.121 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google opensuse fedoraproject debian CWE-476
8.8