A NULL pointer dereference flaw was found in the udevConnectListAllInterfaces() function in libvirt. This issue can occu
NULL pointer dereference in Intel(R) Power Gadget software for Windows all versions may allow an authenticated user to p
taurusxin ncmdump v1.3.2 was discovered to contain a segmentation violation via the NeteaseCrypt::FixMetadata() function
Windows Kernel Denial of Service Vulnerability
An access violation vulnerability exists in the DirectComposition functionality win32kbase.sys driver version 10.0.22000
An access violation vulnerability exists in the DirectComposition functionality win32kbase.sys driver version 10.0.22000
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploite
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploite
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploite
Nullptr in paddle.dot in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of service.
Nullptr in paddle.nextafter in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of service.
Nullptr in paddle.put_along_axis in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of servi
Nullptr dereference in paddle.crop in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of ser
In the Linux kernel, the following vulnerability has been resolved: drm/bridge: sii902x: Fix probing race issue A null
In the Linux kernel, the following vulnerability has been resolved: x86/sgx: Resolves SECS reclaim vs. page fault for E
In the Linux kernel, the following vulnerability has been resolved: drm/mediatek: Fix a null pointer crash in mtk_drm_c
In the Linux kernel, the following vulnerability has been resolved: quota: Fix potential NULL pointer dereference Belo
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Add 'replay' NULL check in 'edp_se
In the Linux kernel, the following vulnerability has been resolved: platform/chrome: cros_ec_uart: properly fix race co
In the Linux kernel, the following vulnerability has been resolved: spi: Fix null dereference on suspend A race condit
In the Linux kernel, the following vulnerability has been resolved: dm: fix mempool NULL pointer race when completing I
In the Linux kernel, the following vulnerability has been resolved: PCI: of_property: Return error for int_map allocati
In the Linux kernel, the following vulnerability has been resolved: bonding: fix oops during rmmod "rmmod bonding" cau
In the Linux kernel, the following vulnerability has been resolved: ipv6: fix possible race in __fib6_drop_pcpu_from()
In the Linux kernel, the following vulnerability has been resolved: ice: Don't process extts if PTP is disabled The ic
In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Always drain health in shutdown callback
In the Linux kernel, the following vulnerability has been resolved: btrfs: fix race between quota rescan and disable le
In the Linux kernel, the following vulnerability has been resolved: xhci: Fix null pointer dereference when host dies
In the Linux kernel, the following vulnerability has been resolved: soc: qcom: pmic_glink: Fix race during initializati
NULL pointer dereference in Intel(R) RAID Web Console software for all versions may allow an authenticated user to poten
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Avoid race between dcn10_set_drr()
In the Linux kernel, the following vulnerability has been resolved: net: dsa: improve shutdown sequence Alexander Sver
In the Linux kernel, the following vulnerability has been resolved: sock_map: fix a NULL pointer dereference in sock_ma
In the Linux kernel, the following vulnerability has been resolved: dm: fix a crash if blk_alloc_disk fails If blk_all
In the Linux kernel, the following vulnerability has been resolved: iommu/arm-smmu: Defer probe of clients after smmu d
A race condition was found in the Linux kernel's bluetooth device driver in {min,max}_key_size_set() function. This can
In the Linux kernel, the following vulnerability has been resolved: comedi: ni_usb6501: fix NULL-deref in command paths
MSI Afterburner v4.6.5.16370 is vulnerable to a Denial of Service vulnerability by triggering the 0x80002000 IOCTL code
In the Linux kernel, the following vulnerability has been resolved: dmaengine: fix NULL pointer in channel unregistrati
In the Linux kernel, the following vulnerability has been resolved: usb: roles: fix NULL pointer issue when put module'
In the Linux kernel, the following vulnerability has been resolved: powerpc/pseries/iommu: IOMMU table is not initializ
In the Linux kernel, the following vulnerability has been resolved: ASoC: kirkwood: Fix potential NULL dereference In
In the Linux kernel, the following vulnerability has been resolved: scsi: qedf: Ensure the copied buf is NUL terminated
Remote packet capture support is disabled by default in libpcap. When a user builds libpcap with remote packet capture
A vulnerability has been identified in SIMATIC CP 1242-7 V2 (incl. SIPLUS variants) (All versions < V3.5.20), SIMATIC CP
jwx is a Go module implementing various JWx (JWA/JWE/JWK/JWS/JWT, otherwise known as JOSE) technologies. Calling `jws.Pa
dcmnet in DCMTK before 3.6.9 has a segmentation fault via an invalid DIMSE message.
A vulnerability classified as problematic was found in Tenda FH451, FH1201, FH1202 and FH1206 up to 20241129. Affected b
Xfig v3.2.8 was discovered to contain a NULL pointer dereference when calling XGetWMHints(). NOTE: this is disputed beca
Qt 6 through 6.6 was discovered to contain a NULL pointer dereference via the function QXcbConnection::initializeAllAtom
Frequently Asked Questions
What is CWE-476?
CWE-476 (NULL Pointer Dereference) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-476?
There are 6,577 CVE records associated with CWE-476 in our database. Of these, 121 are critical severity, 1458 are high severity, and 3571 are medium severity.
How can I protect against CWE-476 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-476 using AI-powered security agents.
Detect CWE-476 Vulnerabilities
CyberStrike's AI agents automatically detect null pointer dereference vulnerabilities across your infrastructure.
Get Started