Falhas do tipo CWE-476

2.335 resultados

Desreferenciação de ponteiro nulo autenticado

O software permite que um usuário autenticado force a desreferenciação de um ponteiro ou referência nula, tipicamente ao passar valores inesperados ou inválidos a uma função. O aplicativo não valida adequadamente a entrada antes de usá-la, causando falha (crash) ou comportamento indefinido que pode levar a negação de serviço.

Exemplo

Um painel administrativo aceita um ID de usuário para deletar, mas não verifica se esse ID existe no banco antes de acessar seus atributos. Um admin autenticado passa ID=0 ou um valor que não corresponde a nenhum registro, e o código tenta acessar propriedades de um objeto nulo, derrubando a aplicação.

Como mitigar

Sempre valide e verifique que referências/ponteiros são válidos antes de desreferenciar: teste se o objeto existe, se o ID é válido e se está dentro do escopo esperado. Use assertions em desenvolvimento e tratamento de exceções robusto em produção para falhas inesperadas.

CVE-2026-47337LOWNULL pointer dereference in Ubuntu Linux AppArmor IPv4/IPv6 socket mediationEPSS 0.1%CVE-2026-47327LOWNULL pointer dereference in Ubuntu Linux AppArmor notification handlingEPSS 0.1%CVE-2025-39820MEDIUMdrm/msm/dpu: Add a null ptr check for dpu_encoder_needs_modesetEPSS 0.1%CVE-2025-25217LOWarkui_ace_enginehas a NULL pointer dereference vulnerabilityEPSS 0.1%CVE-2026-21364MEDIUMSubstance3D - Painter | NULL Pointer Dereference (CWE-476)EPSS 0.1%CVE-2025-0009MEDIUMA NULL pointer dereference in AMD Crash Defender could allow an attacker to write a NULL output to a log file potentially resulting in a sysEPSS 0.1%CVE-2026-21363MEDIUMSubstance3D - Painter | NULL Pointer Dereference (CWE-476)EPSS 0.1%CVE-2025-1698LOWNull pointer exception vulnerabilities were reported in the fingerprint sensor service that could allow a local attacker to cause a denial oEPSS 0.1%CVE-2025-39878MEDIUMceph: fix crash after fscrypt_encrypt_pagecache_blocks() errorEPSS 0.1%CVE-2025-39892MEDIUMASoC: soc-core: care NULL dirver name on snd_soc_lookup_component_nolocked()EPSS 0.1%CVE-2025-39856MEDIUMnet: ethernet: ti: am65-cpsw-nuss: Fix null pointer dereference for ndevEPSS 0.1%CVE-2025-39858MEDIUMeth: mlx4: Fix IS_ERR() vs NULL check bug in mlx4_en_create_rx_ringEPSS 0.1%CVE-2025-39879MEDIUMceph: always call ceph_shift_unused_folios_left()EPSS 0.1%CVE-2025-39814MEDIUMice: fix NULL pointer dereference in ice_unplug_aux_dev() on resetEPSS 0.1%CVE-2025-39875MEDIUMigb: Fix NULL pointer dereference in ethtool loopback testEPSS 0.1%CVE-2025-39887MEDIUMtracing/osnoise: Fix null-ptr-deref in bitmap_parselist()EPSS 0.1%CVE-2025-11156MEDIUMImproper Service Loading Vulnerability in Netskope Endpoint DLP DriverEPSS 0.1%CVE-2026-58561MEDIUMNull pointer dereference issue in the image codec module. Impact: Successful exploitation of this vulnerability may affect availability.EPSS 0.1%CVE-2026-58560MEDIUMNull pointer dereference issue in the image codec module. Impact: Successful exploitation of this vulnerability may affect availability.EPSS 0.1%CVE-2025-46711MEDIUMGPU DDK - NULL Pointer dereference occurs in LockHandle on bridge entry when connection misusedEPSS 0.1%