Falhas do tipo CWE-476

2.331 resultados

Desreferenciação de ponteiro nulo autenticado

O software permite que um usuário autenticado force a desreferenciação de um ponteiro ou referência nula, tipicamente ao passar valores inesperados ou inválidos a uma função. O aplicativo não valida adequadamente a entrada antes de usá-la, causando falha (crash) ou comportamento indefinido que pode levar a negação de serviço.

Exemplo

Um painel administrativo aceita um ID de usuário para deletar, mas não verifica se esse ID existe no banco antes de acessar seus atributos. Um admin autenticado passa ID=0 ou um valor que não corresponde a nenhum registro, e o código tenta acessar propriedades de um objeto nulo, derrubando a aplicação.

Como mitigar

Sempre valide e verifique que referências/ponteiros são válidos antes de desreferenciar: teste se o objeto existe, se o ID é válido e se está dentro do escopo esperado. Use assertions em desenvolvimento e tratamento de exceções robusto em produção para falhas inesperadas.

CVE-2024-27660MEDIUMD-Link DIR-823G A1V1.0.2B05 was discovered to contain a Null-pointer dereferences in sub_41C488(). This vulnerability allows attackers to caEPSS 0.6%CVE-2025-53817MEDIUMGHSL-2025-059 - 7-Zip - Null pointer array write attempt in NArchive::NCom::CHandler::GetStreamEPSS 0.6%CVE-2026-92417HIGHOpen5GS PFCP types.c ogs_pfcp_parse_volume_measurement null pointer dereferenceEPSS 0.6%CVE-2026-37230HIGHFlexRIC v2.0.0 crashes when the near-RT RIC receives a RIC_INDICATION message with a ran_func_id that does not exist in its registry. The loEPSS 0.6%CVE-2026-37226HIGHFlexRIC v2.0.0 crashes when the iApp receives an E42_RIC_SUBSCRIPTION_REQUEST referencing a non-existent E2 Node. The lookup function returnEPSS 0.6%CVE-2023-48183HIGHQuickJS before c4cdd61 has a build_for_in_iterator NULL pointer dereference because of an erroneous lexical scope of "this" with eval.EPSS 0.6%CVE-2024-20266MEDIUMA vulnerability in the DHCP version 4 (DHCPv4) server feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to trEPSS 0.6%CVE-2026-58369MEDIUMWoodpecker < 3.15.0 - Unauthenticated NULL Pointer Dereference in /api/orgs/lookup Enables Log-Flooding Denial of ServiceEPSS 0.6%CVE-2024-37048MEDIUMQTS, QuTS heroEPSS 0.6%CVE-2025-0312HIGHNULL Pointer Dereference in ollama/ollamaEPSS 0.6%CVE-2021-3467A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.26 handled component references in CDEF box in the JP2 imageEPSS 0.6%CVE-2022-2279MEDIUMNULL Pointer Dereference in bfabiszewski/libmobiEPSS 0.6%CVE-2023-22839HIGHBIG-IP DNS profile vulnerabilityEPSS 0.6%CVE-2023-22340HIGHBIG-IP SIP profile vulnerabilityEPSS 0.6%CVE-2023-22341HIGHBIG-IP APM OAuth vulnerabilityEPSS 0.6%CVE-2024-42058HIGHA null pointer dereference vulnerability in Zyxel ATP series firmware versions from V4.32 through V5.38, USG FLEX series firmware versions fEPSS 0.6%CVE-2023-52991HIGHnet: fix NULL pointer in skb_segment_listEPSS 0.6%CVE-2021-3739A NULL pointer dereference flaw was found in the btrfs_rm_device function in fs/btrfs/volumes.c in the Linux Kernel, where triggering the buEPSS 0.6%CVE-2021-4217A flaw was found in unzip. The vulnerability occurs due to improper handling of Unicode strings, which can lead to a null pointer dereferencEPSS 0.6%CVE-2026-45816HIGHApache NimBLE: NULL pointer dereference vulnerability in SMP LTK requestEPSS 0.6%