Fallos del tipo CWE-476

2331 resultados

Desreferência de ponteiro nulo autenticada remota

A aplicação tenta acessar um objeto ou endereço de memória que não foi inicializado ou foi definido como nulo, sem verificar essa condição antes. Um atacante autenticado consegue provocar esse acesso inválido enviando dados malformados ou inesperados, causando crash ou comportamento indefinido.

Ejemplo

Um endpoint autenticado de API recebe um ID de usuário, faz uma busca no banco que retorna nulo (usuário não existe) e tenta acessar diretamente campos desse objeto nulo sem validação — resultando em erro 500 ou travamento da aplicação.

Cómo mitigar

Sempre verificar se um objeto é nulo antes de usá-lo; usar análise estática (linters, SAST) para detectar acessos potenciais a nulos; validar e tratar casos onde dados esperados podem estar ausentes, mesmo que o usuário esteja autenticado.

CVE-2024-27660MEDIUMD-Link DIR-823G A1V1.0.2B05 was discovered to contain a Null-pointer dereferences in sub_41C488(). This vulnerability allows attackers to caEPSS 0.6%CVE-2025-53817MEDIUMGHSL-2025-059 - 7-Zip - Null pointer array write attempt in NArchive::NCom::CHandler::GetStreamEPSS 0.6%CVE-2026-92417HIGHOpen5GS PFCP types.c ogs_pfcp_parse_volume_measurement null pointer dereferenceEPSS 0.6%CVE-2026-37230HIGHFlexRIC v2.0.0 crashes when the near-RT RIC receives a RIC_INDICATION message with a ran_func_id that does not exist in its registry. The loEPSS 0.6%CVE-2026-37226HIGHFlexRIC v2.0.0 crashes when the iApp receives an E42_RIC_SUBSCRIPTION_REQUEST referencing a non-existent E2 Node. The lookup function returnEPSS 0.6%CVE-2023-48183HIGHQuickJS before c4cdd61 has a build_for_in_iterator NULL pointer dereference because of an erroneous lexical scope of "this" with eval.EPSS 0.6%CVE-2024-20266MEDIUMA vulnerability in the DHCP version 4 (DHCPv4) server feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to trEPSS 0.6%CVE-2026-58369MEDIUMWoodpecker < 3.15.0 - Unauthenticated NULL Pointer Dereference in /api/orgs/lookup Enables Log-Flooding Denial of ServiceEPSS 0.6%CVE-2024-37048MEDIUMQTS, QuTS heroEPSS 0.6%CVE-2025-0312HIGHNULL Pointer Dereference in ollama/ollamaEPSS 0.6%CVE-2021-3467A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.26 handled component references in CDEF box in the JP2 imageEPSS 0.6%CVE-2022-2279MEDIUMNULL Pointer Dereference in bfabiszewski/libmobiEPSS 0.6%CVE-2023-22839HIGHBIG-IP DNS profile vulnerabilityEPSS 0.6%CVE-2023-22340HIGHBIG-IP SIP profile vulnerabilityEPSS 0.6%CVE-2023-22341HIGHBIG-IP APM OAuth vulnerabilityEPSS 0.6%CVE-2024-42058HIGHA null pointer dereference vulnerability in Zyxel ATP series firmware versions from V4.32 through V5.38, USG FLEX series firmware versions fEPSS 0.6%CVE-2023-52991HIGHnet: fix NULL pointer in skb_segment_listEPSS 0.6%CVE-2021-3739A NULL pointer dereference flaw was found in the btrfs_rm_device function in fs/btrfs/volumes.c in the Linux Kernel, where triggering the buEPSS 0.6%CVE-2021-4217A flaw was found in unzip. The vulnerability occurs due to improper handling of Unicode strings, which can lead to a null pointer dereferencEPSS 0.6%CVE-2026-45816HIGHApache NimBLE: NULL pointer dereference vulnerability in SMP LTK requestEPSS 0.6%