Fallos del tipo CWE-476

2331 resultados

Desreferência de ponteiro nulo autenticada remota

A aplicação tenta acessar um objeto ou endereço de memória que não foi inicializado ou foi definido como nulo, sem verificar essa condição antes. Um atacante autenticado consegue provocar esse acesso inválido enviando dados malformados ou inesperados, causando crash ou comportamento indefinido.

Ejemplo

Um endpoint autenticado de API recebe um ID de usuário, faz uma busca no banco que retorna nulo (usuário não existe) e tenta acessar diretamente campos desse objeto nulo sem validação — resultando em erro 500 ou travamento da aplicação.

Cómo mitigar

Sempre verificar se um objeto é nulo antes de usá-lo; usar análise estática (linters, SAST) para detectar acessos potenciais a nulos; validar e tratar casos onde dados esperados podem estar ausentes, mesmo que o usuário esteja autenticado.

CVE-2025-52427MEDIUMQTS, QuTS heroEPSS 0.5%CVE-2025-47214MEDIUMQTSEPSS 0.5%CVE-2025-48726MEDIUMQTS, QuTS heroEPSS 0.5%CVE-2025-52424MEDIUMQTS, QuTS heroEPSS 0.5%CVE-2026-71922HIGHDrayTek VigorSwitch Multiple Models Pre-Authentication NULL Pointer Dereference via setget.cgiEPSS 0.5%CVE-2025-61102HIGHFRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_adj_sid function at oEPSS 0.5%CVE-2025-61100HIGHFRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the ospf_opaque_lsa_dump function at ospf_oEPSS 0.5%CVE-2025-61105HIGHFRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_link_info function at ospf_extEPSS 0.5%CVE-2025-61101HIGHFRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_rmt_itf_addr functionEPSS 0.5%CVE-2025-61099HIGHFRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the opaque_info_detail function at ospf_opaEPSS 0.5%CVE-2024-11706MEDIUMA null pointer dereference may have inadvertently occurred in `pk12util`, and specifically in the `SEC_ASN1DecodeItem_Util` function, when hEPSS 0.5%CVE-2025-55657HIGHA NULL pointer dereference in the gf_odf_vvc_cfg_write_bs function (odf/descriptors.c) of GPAC MP4Box v2.4 allows attackers to cause a DeniaEPSS 0.5%CVE-2022-2153A flaw was found in the Linux kernel’s KVM when attempting to set a SynIC IRQ. This issue makes it possible for a misbehaving VMM to write tEPSS 0.5%CVE-2026-24883LOWIn GnuPG before 2.5.17, a long signature packet length causes parse_signature to return success with sig->data[] set to a NULL value, leadinEPSS 0.5%CVE-2025-56225HIGHfluidsynth-2.4.6 and earlier versions is vulnerable to Null pointer dereference in fluid_synth_monopoly.c, that can be triggered when loadinEPSS 0.5%CVE-2026-45084HIGHOpenSIPS: Denial of service in presence.handle_publish() from unchecked Content-Type stateEPSS 0.5%CVE-2026-28224HIGHFirebird Null Pointer Dereference via CryptCallback causes DOSEPSS 0.5%CVE-2024-34044MEDIUMThe O-RAN E2T I-Release buildPrometheusList function can have a NULL pointer dereference because peerInfo can be NULL.EPSS 0.5%CVE-2024-12658MEDIUMIObit Advanced SystemCare Utimate IOCTL AscRegistryFilter.sys 0x8001E01C null pointer dereferenceEPSS 0.5%CVE-2024-12659MEDIUMIObit Advanced SystemCare Utimate IOCTL AscRegistryFilter.sys 0x8001E004 null pointer dereferenceEPSS 0.5%