In the Linux kernel, the following vulnerability has been resolved: media: coda: Add check for kmalloc As the kmalloc
In the Linux kernel, the following vulnerability has been resolved: fs: dlm: fix invalid derefence of sb_lvbptr I expe
In the Linux kernel, the following vulnerability has been resolved: iommu/mediatek: Check return value after calling pl
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix size validation for non-exclusive d
In the Linux kernel, the following vulnerability has been resolved: blk-mq: fix null pointer dereference in blk_mq_clea
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: mlme: fix null-ptr deref on failed
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix potential null-deref in dm_res
In the Linux kernel, the following vulnerability has been resolved: vme: Fix error not catched in fake_init() In fake_
In the Linux kernel, the following vulnerability has been resolved: drm/i915/gvt: fix vgpu debugfs clean in remove Che
In the Linux kernel, the following vulnerability has been resolved: Drivers: hv: vmbus: Don't dereference ACPI root obj
In the Linux kernel, the following vulnerability has been resolved: ALSA: ac97: Fix possible NULL dereference in snd_ac
In the Linux kernel, the following vulnerability has been resolved: media: amphion: fix REVERSE_INULL issues reported b
In the Linux kernel, the following vulnerability has been resolved: ice: Don't tx before switchdev is fully configured
In the Linux kernel, the following vulnerability has been resolved: spi: bcm-qspi: return error if neither hif_mspi nor
In the Linux kernel, the following vulnerability has been resolved: OPP: Fix potential null ptr dereference in dev_pm_o
In the Linux kernel, the following vulnerability has been resolved: net: cdc_ncm: Deal with too low values of dwNtbOutM
In the Linux kernel, the following vulnerability has been resolved: drm/i915: Fix system suspend without fbdev being in
In the Linux kernel, the following vulnerability has been resolved: bcache: Fix __bch_btree_node_alloc to make the fail
In the Linux kernel, the following vulnerability has been resolved: net/handshake: fix null-ptr-deref in handshake_nl_d
In the Linux kernel, the following vulnerability has been resolved: ASoC: amd: acp: Fix incorrect retrival of acp_chip_
Animate versions 23.0.13, 24.0.10 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead t
A potential null pointer dereference vulnerability was reported in the Lenovo Power Management Driver that could allow a
NVIDIA Display Driver for Linux contains a vulnerability in the kernel driver, where a user could cause a null pointer d
NVIDIA Display Driver for Linux contains a vulnerability where an attacker might be able to trigger a null pointer deref
Null pointer dereference for some Intel(R) QAT Windows software before version 2.6.0. within Ring 3: User Applications m
A NULL pointer dereference vulnerability was discovered in radare2 6.0.5 and earlier within the info() function of bin_n
NULL pointer dereference in TagSection.keys() in python-apt on APT-based Linux systems allows a local attacker to cause
In the Linux kernel, the following vulnerability has been resolved: driver core: fix potential null-ptr-deref in device
A NULL Pointer Dereference vulnerability in Cesanta Frozen versions less than 1.7 allows an attacker to induce a crash o
FFmpeg git master before commit c08d30 was discovered to contain a memory leak in the avformat_free_context function in
A flaw was found in libsoup. SoupContentSniffer may be vulnerable to a NULL pointer dereference in the sniff_mp4 functio
ffmpeg 7.1 is vulnerable to Null Pointer Dereference in function iamf_read_header in /libavformat/iamfdec.c.
A vulnerability was found in GPAC up to 2.4. It has been rated as problematic. Affected by this issue is the function gf
Firebird is a relational database. Prior to versions 3.0.13, 4.0.6, and 5.0.3, there is an XDR message parsing NULL poin
An issue was discovered in rust-ffmpeg 0.3.0 (after comit 5ac0527) Null pointer dereference vulnerability in the dump()
Dragonfly is an open source P2P-based file distribution and image acceleration system. Prior to 2.1.0, the first return
A NULL pointer dereference in TOTOLINK N600R firmware v4.3.0cu.7866_B2022506 allows attackers to cause a Denial of Servi
Omni manages Kubernetes on bare metal, virtual machines, or in a cloud. Prior to 1.1.5 and 1.0.2, there is a nil pointer
Due to the memory corruption vulnerability in SAP NetWeaver AS ABAP and ABAP Platform, an unauthenticated attacker can s
A flaw was found in FFmpeg’s ALS audio decoder, where it does not properly check for memory allocation failures. This ca
In Modem, there is a possible application crash due to improper input validation. This could lead to remote denial of se
In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service
Various Paragon Software products contain a null pointer dereference vulnerability within biontdrv.sys that is caused by
there is a possible way to crash the modem due to a missing null check. This could lead to remote denial of service with
In cplog service, there is a possible system crash due to null pointer dereference. This could lead to local denial of s
A vulnerability in the Protocol Independent Multicast Version 6 (PIM6) feature of Cisco Nexus 3000 Series Switches and C
NVIDIA Display Driver for Linux contains a vulnerability in a kernel module, where an attacker might be able to trigger
A flaw was found in the 389-ds-base LDAP Server. This issue occurs when issuing a Modify DN LDAP operation through the l
A vulnerability exists in RTU500 IEC 60870-4-104 controlled station functionality, that allows an authenticated and auth
Mattermost versions 10.8.x <= 10.8.3, 10.5.x <= 10.5.8, 9.11.x <= 9.11.17, 10.10.x <= 10.10.0, 10.9.x <= 10.9.3 fail to
Frequently Asked Questions
What is CWE-476?
CWE-476 (NULL Pointer Dereference) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-476?
There are 6,577 CVE records associated with CWE-476 in our database. Of these, 121 are critical severity, 1458 are high severity, and 3571 are medium severity.
How can I protect against CWE-476 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-476 using AI-powered security agents.
Detect CWE-476 Vulnerabilities
CyberStrike's AI agents automatically detect null pointer dereference vulnerabilities across your infrastructure.
Get Started