Vulnerabilities > NULL Pointer Dereference

DATE CVE VULNERABILITY TITLE RISK
2018-01-25 CVE-2018-6197 NULL Pointer Dereference vulnerability in multiple products
w3m through 0.5.3 is prone to a NULL pointer dereference flaw in formUpdateBuffer in form.c.
network
low complexity
tats canonical CWE-476
7.5
2018-01-21 CVE-2016-10708 NULL Pointer Dereference vulnerability in multiple products
sshd in OpenSSH before 7.4 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an out-of-sequence NEWKEYS message, as demonstrated by Honggfuzz, related to kex.c and packet.c.
network
low complexity
openbsd debian canonical netapp CWE-476
7.5
2018-01-20 CVE-2017-12130 NULL Pointer Dereference vulnerability in Tinysvcmdns Project Tinysvcmdns 20171105
An exploitable NULL pointer dereference vulnerability exists in the tinysvcmdns library version 2017-11-05.
network
low complexity
tinysvcmdns-project CWE-476
7.5
2018-01-16 CVE-2018-5710 NULL Pointer Dereference vulnerability in MIT Kerberos
An issue was discovered in MIT Kerberos 5 (aka krb5) through 1.16.
network
low complexity
mit CWE-476
6.5
2018-01-11 CVE-2018-5333 NULL Pointer Dereference vulnerability in multiple products
In the Linux kernel through 4.14.13, the rds_cmsg_atomic function in net/rds/rdma.c mishandles cases where page pinning fails or an invalid address is supplied, leading to an rds_atomic_free_op NULL pointer dereference.
local
low complexity
linux debian canonical CWE-476
5.5
2018-01-09 CVE-2018-5308 NULL Pointer Dereference vulnerability in Podofo Project Podofo 0.9.5
PoDoFo 0.9.5 does not properly validate memcpy arguments in the PdfMemoryOutputStream::Write function (base/PdfOutputStream.cpp).
local
low complexity
podofo-project CWE-476
7.8
2018-01-06 CVE-2018-5206 NULL Pointer Dereference vulnerability in multiple products
When the channel topic is set without specifying a sender, Irssi before 1.0.6 may dereference a NULL pointer.
network
low complexity
irssi debian CWE-476
critical
9.8
2018-01-05 CVE-2017-16728 NULL Pointer Dereference vulnerability in Advantech Webaccess
An Untrusted Pointer Dereference issue was discovered in Advantech WebAccess versions prior to 8.3.
network
low complexity
advantech CWE-476
7.5
2018-01-03 CVE-2017-1000471 NULL Pointer Dereference vulnerability in Embedthis Goahead 4.0.0
EmbedThis GoAhead Webserver version 4.0.0 is vulnerable to a NULL pointer dereference in the CGI handler resulting in memory corruption or denial of service.
network
low complexity
embedthis CWE-476
critical
9.8
2018-01-03 CVE-2017-1000460 NULL Pointer Dereference vulnerability in multiple products
In line libavcodec/h264dec.c:500 in libav(v13_dev0), ffmpeg(n3.4), chromium(56 prior Feb 13, 2017), the return value of init_get_bits is ignored and get_ue_golomb(&gb) is called on an uninitialized get_bits context, which causes a NULL deref exception.
network
low complexity
libav ffmpeg google CWE-476
6.5