A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user a
A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user a
A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user ac
A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user ac
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If a remote
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If can the
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If can the
A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user ac
OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.12
A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user ac
A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user ac
A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user ac
A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user ac
A NULL pointer dereference vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user ac
A NULL Pointer Dereference vulnerability in the PFE management daemon (evo-pfemand) of Juniper Networks Junos OS Evolved
A vulnerability was found in Tenda W12 3.0.0.6(3948). The impacted element is the function wifiScheduledSet of the file
Icinga 2 is an open source monitoring system. From 2.10.0 to before 2.15.1, 2.14.7, and 2.13.13, when creating an invali
A NULL pointer dereference vulnerability has been reported to affect several product versions. If a remote attacker gain
A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user a
A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user a
A NULL pointer dereference vulnerability has been reported to affect File Station 5. If a remote attacker gains a user a
A NULL pointer dereference in the ADTSAudioFileServerMediaSubsession::createNewRTPSink() function of Live555 Streaming M
In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service
Envoy is a high-performance edge/middle/service proxy. In 1.33.12, 1.34.10, 1.35.6, 1.36.2, and earlier, Envoy crashes w
Null pointer dereference in Windows DirectX allows an authorized attacker to deny service locally.
Null pointer dereference in Windows DirectX allows an authorized attacker to deny service locally.
NULL-pointer dereference vulnerabilities in Aqara Hub M2 4.3.6_0027, Hub M3 4.3.6_0025, and Camera Hub G3 4.1.9_0027 in
A flaw was found in gnuplot. The plot3d_points() function may lead to a segmentation fault and cause a system crash.
A flaw was found in gnuplot. The GetAnnotateString() function may lead to a segmentation fault and cause a system crash.
A flaw was found in gnuplot. The xstrftime() function may lead to a segmentation fault, causing a system crash.
A flaw was found in gnuplot. The CANVAS_text() function may lead to a segmentation fault and cause a system crash.
A flaw was found in gnuplot. The X11_graphics() function may lead to a segmentation fault and cause a system crash.
Transient DOS when importing a PKCS#8-encoded RSA private key with a zero-sized modulus.
OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the
AIDE is an advanced intrusion detection environment. From versions 0.13 to 0.19.1, there is a null pointer dereference v
The Cordova plugin cordova-plugin-x-socialsharing (SocialSharing-PhoneGap-Plugin) for Android 6.0.4, registers an export
A NULL Pointer Dereference vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS
In PHP versions:8.1.* before 8.1.33, 8.2.* before 8.2.29, 8.3.* before 8.3.23, 8.4.* before 8.4.10 when parsing XML data
In PHP versions:8.1.* before 8.1.33, 8.2.* before 8.2.29, 8.3.* before 8.3.23, 8.4.* pgsql and pdo_pgsql escaping functi
A null pointer dereference was addressed with improved input validation. This issue is fixed in iOS 18.3 and iPadOS 18.3
In GStreamer through 1.26.1, the subparse plugin's tmplayer_parse_line function may dereference a NULL pointer while par
A vulnerability has been found in IOBit Protected Folder up to 1.3.0 and classified as problematic. This vulnerability a
A vulnerability was found in IObit Protected Folder up to 13.6.0.5 and classified as problematic. This issue affects the
A vulnerability was found in IObit Protected Folder up to 13.6.0.5. It has been classified as problematic. Affected is t
In the Linux kernel, the following vulnerability has been resolved: btrfs: check folio mapping after unlock in relocate
In the Linux kernel, the following vulnerability has been resolved: dmaengine: at_xdmac: avoid null_prt_deref in at_xdm
In the Linux kernel, the following vulnerability has been resolved: kunit: Fix potential null dereference in kunit_devi
In the Linux kernel, the following vulnerability has been resolved: btrfs: add a sanity check for btrfs root in btrfs_s
In the Linux kernel, the following vulnerability has been resolved: ACPI: x86: Add adev NULL check to acpi_quirk_skip_s
Frequently Asked Questions
What is CWE-476?
CWE-476 (NULL Pointer Dereference) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-476?
There are 6,577 CVE records associated with CWE-476 in our database. Of these, 121 are critical severity, 1458 are high severity, and 3571 are medium severity.
How can I protect against CWE-476 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-476 using AI-powered security agents.
Detect CWE-476 Vulnerabilities
CyberStrike's AI agents automatically detect null pointer dereference vulnerabilities across your infrastructure.
Get Started