Falhas do tipo CWE-476

2.329 resultados

Desreferenciação de ponteiro nulo autenticado

O software permite que um usuário autenticado force a desreferenciação de um ponteiro ou referência nula, tipicamente ao passar valores inesperados ou inválidos a uma função. O aplicativo não valida adequadamente a entrada antes de usá-la, causando falha (crash) ou comportamento indefinido que pode levar a negação de serviço.

Exemplo

Um painel administrativo aceita um ID de usuário para deletar, mas não verifica se esse ID existe no banco antes de acessar seus atributos. Um admin autenticado passa ID=0 ou um valor que não corresponde a nenhum registro, e o código tenta acessar propriedades de um objeto nulo, derrubando a aplicação.

Como mitigar

Sempre valide e verifique que referências/ponteiros são válidos antes de desreferenciar: teste se o objeto existe, se o ID é válido e se está dentro do escopo esperado. Use assertions em desenvolvimento e tratamento de exceções robusto em produção para falhas inesperadas.

CVE-2019-1922MEDIUMCisco IP Phone 7800 and 8800 Series Session Initiation Protocol Denial of Service VulnerabilityEPSS 1.3%CVE-2023-28625HIGHmod_auth_openidc core dump when OIDCStripCookies is set and an empty Cookie header is suppliedEPSS 1.3%CVE-2023-1667A NULL pointer dereference was found In libssh during re-keying with algorithm guessing. This issue may allow an authenticated client to cauEPSS 1.3%CVE-2022-43972MEDIUMNull pointer dereference in Linksys WRT54GLEPSS 1.3%CVE-2021-0206HIGHJunos OS: NFX Series, SRX Series: PFE may crash upon receipt of specific packet when SSL Proxy is configured.EPSS 1.3%CVE-2022-2850MEDIUMA flaw was found In 389-ds-base. When the Content Synchronization plugin is enabled, an authenticated user can reach a NULL pointer derefereEPSS 1.3%CVE-2019-14873MEDIUMIn the __multadd function of the newlib libc library, prior to versions 3.3.0 (see newlib/libc/stdlib/mprec.c), Balloc is used to allocate aEPSS 1.3%CVE-2024-27405HIGHusb: gadget: ncm: Avoid dropping datagrams of properly parsed NTBsEPSS 1.3%CVE-2019-14875MEDIUMIn the __multiply function of the newlib libc library, all versions prior to 3.3.0 (see newlib/libc/stdlib/mprec.c), Balloc is used to allocEPSS 1.3%CVE-2022-2231HIGHNULL Pointer Dereference in vim/vimEPSS 1.3%CVE-2023-0122HIGHA NULL pointer dereference vulnerability in the Linux kernel NVMe functionality, in nvmet_setup_auth(), allows an attacker to perform a Pre-EPSS 1.3%CVE-2024-11650HIGHTenda i9 GetIPTV websReadEvent null pointer dereferenceEPSS 1.3%CVE-2025-29835MEDIUMWindows Remote Access Connection Manager Information Disclosure VulnerabilityEPSS 1.3%CVE-2022-43594MEDIUMMultiple denial of service vulnerabilities exist in the image output closing functionality of OpenImageIO Project OpenImageIO v2.4.4.2. SpecEPSS 1.3%CVE-2023-6683MEDIUMQemu: vnc: null pointer dereference in qemu_clipboard_request()EPSS 1.3%CVE-2021-40737MEDIUMAdobe Audition NULL Pointer Dereference Application denial-of-serviceEPSS 1.3%CVE-2021-40742MEDIUMAdobe Audition NULL Pointer Dereference Application denial-of-serviceEPSS 1.3%CVE-2024-37826HIGHA NULL pointer dereference in vercot Serva v4.6.0 allows attackers to cause a Denial of Service (DoS) via a crafted HTTP request.EPSS 1.2%CVE-2022-43595MEDIUMMultiple denial of service vulnerabilities exist in the image output closing functionality of OpenImageIO Project OpenImageIO v2.4.4.2. SpecEPSS 1.2%CVE-2025-5867HIGHRT-Thread lwp_syscall.c csys_sendto null pointer dereferenceEPSS 1.2%