Vulnerabilities > NULL Pointer Dereference

DATE CVE VULNERABILITY TITLE RISK
2017-04-24 CVE-2017-8106 NULL Pointer Dereference vulnerability in Linux Kernel
The handle_invept function in arch/x86/kvm/vmx.c in the Linux kernel 3.12 through 3.15 allows privileged KVM guest OS users to cause a denial of service (NULL pointer dereference and host OS crash) via a single-context INVEPT instruction with a NULL EPT pointer.
local
low complexity
linux CWE-476
5.5
2017-04-24 CVE-2017-1000360 NULL Pointer Dereference vulnerability in Opendaylight 3.3/4.0
StreamCorruptedException and NullPointerException in OpenDaylight odl-mdsal-xsql.
network
low complexity
opendaylight CWE-476
5.3
2017-04-24 CVE-2017-1000358 NULL Pointer Dereference vulnerability in Opendaylight 4.0
Controller throws an exception and does not allow user to add subsequent flow for a particular switch.
network
low complexity
opendaylight CWE-476
6.5
2017-04-21 CVE-2017-7994 NULL Pointer Dereference vulnerability in Podofo Project Podofo 0.9.5
The function TextExtractor::ExtractText in TextExtractor.cpp:77 in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted PDF document.
network
low complexity
podofo-project CWE-476
6.5
2017-04-13 CVE-2016-8726 NULL Pointer Dereference vulnerability in Moxa Awk-3131A Firmware 1.1
An exploitable null pointer dereference vulnerability exists in the Web Application /forms/web_runScript iw_filename functionality of Moxa AWK-3131A Wireless Access Point running firmware 1.1.
network
low complexity
moxa CWE-476
7.5
2017-04-13 CVE-2016-8723 NULL Pointer Dereference vulnerability in Moxa Awk-3131A Firmware 1.1
An exploitable null pointer dereference exists in the Web Application functionality of Moxa AWK-3131A Wireless Access Point running firmware 1.1.
network
low complexity
moxa CWE-476
7.5
2017-04-13 CVE-2016-2036 NULL Pointer Dereference vulnerability in Samsung Galaxy Note 3 Firmware and Galaxy S6 Firmware
The getURL function in drivers/secfilter/urlparser.c in secfilter in the Samsung kernel for Android on SM-N9005 build N9005XXUGBOB6 (Note 3) and SM-G920F build G920FXXU2COH2 (Galaxy S6) devices allows attackers to trigger a NULL pointer dereference via a "GET HTTP/1.1" request, aka SVE-2016-5036.
local
low complexity
samsung CWE-476
5.5
2017-04-13 CVE-2015-8272 NULL Pointer Dereference vulnerability in Rtmpdump Project Rtmpdump 2.4
RTMPDump 2.4 allows remote attackers to trigger a denial of service (NULL pointer dereference and process crash).
network
low complexity
rtmpdump-project CWE-476
6.5
2017-04-13 CVE-2015-8270 NULL Pointer Dereference vulnerability in Rtmpdump Project Rtmpdump 2.4
The AMF3ReadString function in amf.c in RTMPDump 2.4 allows remote RTMP Media servers to cause a denial of service (invalid pointer dereference and process crash).
network
low complexity
rtmpdump-project CWE-476
7.5
2017-04-11 CVE-2017-5969 NULL Pointer Dereference vulnerability in Xmlsoft Libxml2 2.9.4
libxml2 2.9.4, when used in recover mode, allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted XML document.
local
high complexity
xmlsoft CWE-476
4.7