Falhas do tipo CWE-476

2.333 resultados

Desreferenciação de ponteiro nulo autenticado

O software permite que um usuário autenticado force a desreferenciação de um ponteiro ou referência nula, tipicamente ao passar valores inesperados ou inválidos a uma função. O aplicativo não valida adequadamente a entrada antes de usá-la, causando falha (crash) ou comportamento indefinido que pode levar a negação de serviço.

Exemplo

Um painel administrativo aceita um ID de usuário para deletar, mas não verifica se esse ID existe no banco antes de acessar seus atributos. Um admin autenticado passa ID=0 ou um valor que não corresponde a nenhum registro, e o código tenta acessar propriedades de um objeto nulo, derrubando a aplicação.

Como mitigar

Sempre valide e verifique que referências/ponteiros são válidos antes de desreferenciar: teste se o objeto existe, se o ID é válido e se está dentro do escopo esperado. Use assertions em desenvolvimento e tratamento de exceções robusto em produção para falhas inesperadas.

CVE-2023-33088HIGHNULL pointer dereference in WLAN FirmwareEPSS 0.2%CVE-2026-32776MEDIUMlibexpat before 2.7.5 allows a NULL pointer dereference with empty external parameter entity content.EPSS 0.2%CVE-2025-20071MEDIUMNULL pointer dereference for some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable denial of service via locaEPSS 0.2%CVE-2026-57225LOWSuricata datasets: NULL pointer dereference in JSON/NDJSON dataset loadingEPSS 0.2%CVE-2026-47271MEDIUMpam_usb: OOM guards removed by -DNDEBUG cause NULL dereference and authentication process crashEPSS 0.2%CVE-2025-23346LOWNVIDIA CUDA Toolkit contains a vulnerability in cuobjdump, where an unprivileged user can cause a NULL pointer dereference. A successful exEPSS 0.2%CVE-2023-53228MEDIUMdrm/amdgpu: drop redundant sched job cleanup when cs is abortedEPSS 0.2%CVE-2026-32778LOWlibexpat before 2.7.5 allows a NULL pointer dereference in the function setContext on retry after an earlier ouf-of-memory condition.EPSS 0.2%CVE-2023-53220MEDIUMmedia: az6007: Fix null-ptr-deref in az6007_i2c_xfer()EPSS 0.2%CVE-2022-50402MEDIUMdrivers/md/md-bitmap: check the return value of md_bitmap_get_counter()EPSS 0.2%CVE-2023-53304MEDIUMnetfilter: nft_set_rbtree: fix overlap expiration walkEPSS 0.2%CVE-2023-53275MEDIUMALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync()EPSS 0.2%CVE-2023-53280MEDIUMscsi: qla2xxx: Remove unused nvme_ls_waitq wait queueEPSS 0.2%CVE-2023-53223MEDIUMdrm/msm/dsi: Add missing check for alloc_ordered_workqueueEPSS 0.2%CVE-2023-53277MEDIUMwifi: iwl3945: Add missing check for create_singlethread_workqueueEPSS 0.2%CVE-2023-53239MEDIUMdrm/msm/mdp5: Add check for kzallocEPSS 0.2%CVE-2022-50380MEDIUMmm: /proc/pid/smaps_rollup: fix no vma's null-derefEPSS 0.2%CVE-2022-49733HIGHALSA: pcm: oss: Fix race at SNDCTL_DSP_SYNCEPSS 0.2%CVE-2023-53210MEDIUMmd/raid5-cache: fix null-ptr-deref for r5l_flush_stripe_to_raid()EPSS 0.2%CVE-2022-41597LOWThe phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA).SuccessfEPSS 0.2%