Fallos del tipo CWE-476

2331 resultados

Desreferência de ponteiro nulo autenticada remota

A aplicação tenta acessar um objeto ou endereço de memória que não foi inicializado ou foi definido como nulo, sem verificar essa condição antes. Um atacante autenticado consegue provocar esse acesso inválido enviando dados malformados ou inesperados, causando crash ou comportamento indefinido.

Ejemplo

Um endpoint autenticado de API recebe um ID de usuário, faz uma busca no banco que retorna nulo (usuário não existe) e tenta acessar diretamente campos desse objeto nulo sem validação — resultando em erro 500 ou travamento da aplicação.

Cómo mitigar

Sempre verificar se um objeto é nulo antes de usá-lo; usar análise estática (linters, SAST) para detectar acessos potenciais a nulos; validar e tratar casos onde dados esperados podem estar ausentes, mesmo que o usuário esteja autenticado.

CVE-2025-29886MEDIUMFile Station 5EPSS 0.5%CVE-2025-29874MEDIUMFile Station 5EPSS 0.5%CVE-2025-29879MEDIUMFile Station 5EPSS 0.5%CVE-2026-26983MEDIUMImageMagick: Invalid MSL <map> can result in a use after freeEPSS 0.5%CVE-2023-50432MEDIUMsimple-dhcp-server through ec976d2 allows remote attackers to cause a denial of service (daemon crash) by sending a DHCP packet without any EPSS 0.5%CVE-2024-39130HIGHA NULL Pointer Dereference discovered in DumpTS v0.1.0-nightly allows attackers to cause a denial of service via the function DumpOneStream(EPSS 0.5%CVE-2025-49832MEDIUMAsterisk is Vulnerable to Remote DoS and possible RCE Attacks During Memory AllocationEPSS 0.5%CVE-2026-68901MEDIUMWeKan Board Export REST Endpoints: NULL Pointer Dereference on Invalid authToken Leads to Uncaught Exception / Remote Denial of ServiceEPSS 0.5%CVE-2025-62409MEDIUMEnvoy allows large requests and responses to cause TCP connection pool crashEPSS 0.5%CVE-2025-66281MEDIUMQTS, QuTS heroEPSS 0.5%CVE-2026-48829HIGHIn GNU SASL before 2.2.3, DIGEST-MD5 has a NULL pointer dereference affecting both clients and servers, via a known token with no accompanyiEPSS 0.5%CVE-2026-65412MEDIUMA null pointer dereference was addressed with improved input validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS EPSS 0.5%CVE-2026-59949MEDIUMyawkat LZ4 Java: JVM Crash via Null Byte Array in lz4-java Streaming XXHash JNI (StreamingXXHash32JNI / StreamingXXHash64JNI)EPSS 0.5%CVE-2023-30756HIGHA vulnerability has been identified in SIMATIC CP 1242-7 V2 (incl. SIPLUS variants) (All versions < V3.5.20), SIMATIC CP 1243-1 (incl. SIPLUEPSS 0.5%CVE-2024-41338HIGHA NULL pointer dereference in Draytek devices Vigor 165/166 prior to v4.2.6 , Vigor 2620/LTE200 prior to v3.9.8.8, Vigor 2860/2925 prior to EPSS 0.5%CVE-2023-1355HIGHNULL Pointer Dereference in vim/vimEPSS 0.5%CVE-2024-3186MEDIUMCWE-476 NULL Pointer Dereference vulnerability in the evalExpr() function of GoAhead Web Server (version <= 6.0.0) when compiled with the MEEPSS 0.5%CVE-2023-28827HIGHA vulnerability has been identified in SIMATIC CP 1242-7 V2 (incl. SIPLUS variants) (All versions < V3.5.20), SIMATIC CP 1243-1 (incl. SIPLUEPSS 0.5%CVE-2023-3772MEDIUMKernel: xfrm: null pointer dereference in xfrm_update_ae_params()EPSS 0.5%CVE-2017-12193The assoc_array_insert_into_terminal_node function in lib/assoc_array.c in the Linux kernel before 4.13.11 mishandles node splitting, which EPSS 0.5%