Vulnerabilities > Release of Invalid Pointer or Reference

DATE CVE VULNERABILITY TITLE RISK
2024-02-06 CVE-2023-43532 Release of Invalid Pointer or Reference vulnerability in Qualcomm products
Memory corruption while reading ACPI config through the user mode app.
local
low complexity
qualcomm CWE-763
7.8
2023-12-30 CVE-2022-46486 Release of Invalid Pointer or Reference vulnerability in Scontain Scone
A lack of pointer-validation logic in the __scone_dispatch component of SCONE before v5.8.0 for Intel SGX allows attackers to access sensitive information.
local
low complexity
scontain CWE-763
5.5
2023-10-19 CVE-2022-26942 Release of Invalid Pointer or Reference vulnerability in Motorola Mtm5400 Firmware and Mtm5500 Firmware
The Motorola MTM5000 series firmwares lack pointer validation on arguments passed to trusted execution environment (TEE) modules.
local
low complexity
motorola CWE-763
8.2
2023-10-03 CVE-2023-4883 Release of Invalid Pointer or Reference vulnerability in Open5Gs
Invalid pointer release vulnerability.
network
low complexity
open5gs CWE-763
7.5
2023-06-01 CVE-2023-34312 Release of Invalid Pointer or Reference vulnerability in Tencent QQ and TIM
In Tencent QQ through 9.7.8.29039 and TIM through 3.4.7.22084, QQProtect.exe and QQProtectEngine.dll do not validate pointers from inter-process communication, which leads to a write-what-where condition.
local
low complexity
tencent CWE-763
7.8
2023-05-25 CVE-2023-0459 Release of Invalid Pointer or Reference vulnerability in Linux Kernel
Copy_from_user on 64-bit versions of the Linux kernel does not implement the __uaccess_begin_nospec allowing a user to bypass the "access_ok" check and pass a kernel pointer to copy_from_user().
local
low complexity
linux CWE-763
5.5
2023-04-24 CVE-2023-31082 Release of Invalid Pointer or Reference vulnerability in Linux Kernel 6.2
An issue was discovered in drivers/tty/n_gsm.c in the Linux kernel 6.2.
local
low complexity
linux CWE-763
5.5
2023-04-16 CVE-2020-27545 Release of Invalid Pointer or Reference vulnerability in Libdwarf Project Libdwarf
libdwarf before 20201017 has a one-byte out-of-bounds read because of an invalid pointer dereference via an invalid line table in a crafted object.
network
low complexity
libdwarf-project CWE-763
6.5
2023-03-19 CVE-2022-48425 Release of Invalid Pointer or Reference vulnerability in Linux Kernel
In the Linux kernel through 6.2.7, fs/ntfs3/inode.c has an invalid kfree because it does not validate MFT flags before replaying logs.
local
low complexity
linux CWE-763
7.8
2023-02-14 CVE-2023-25565 Release of Invalid Pointer or Reference vulnerability in Gss-Ntlmssp Project Gss-Ntlmssp
GSS-NTLMSSP is a mechglue plugin for the GSSAPI library that implements NTLM authentication.
network
low complexity
gss-ntlmssp-project CWE-763
7.5