Falhas do tipo CWE-476

2.321 resultados

Desreferenciação de ponteiro nulo autenticado

O software permite que um usuário autenticado force a desreferenciação de um ponteiro ou referência nula, tipicamente ao passar valores inesperados ou inválidos a uma função. O aplicativo não valida adequadamente a entrada antes de usá-la, causando falha (crash) ou comportamento indefinido que pode levar a negação de serviço.

Exemplo

Um painel administrativo aceita um ID de usuário para deletar, mas não verifica se esse ID existe no banco antes de acessar seus atributos. Um admin autenticado passa ID=0 ou um valor que não corresponde a nenhum registro, e o código tenta acessar propriedades de um objeto nulo, derrubando a aplicação.

Como mitigar

Sempre valide e verifique que referências/ponteiros são válidos antes de desreferenciar: teste se o objeto existe, se o ID é válido e se está dentro do escopo esperado. Use assertions em desenvolvimento e tratamento de exceções robusto em produção para falhas inesperadas.

CVE-2026-71922HIGHDrayTek VigorSwitch Multiple Models Pre-Authentication NULL Pointer Dereference via setget.cgiEPSS 0.5%CVE-2025-61102HIGHFRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_adj_sid function at oEPSS 0.5%CVE-2025-61100HIGHFRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the ospf_opaque_lsa_dump function at ospf_oEPSS 0.5%CVE-2025-61105HIGHFRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_link_info function at ospf_extEPSS 0.5%CVE-2025-61099HIGHFRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the opaque_info_detail function at ospf_opaEPSS 0.5%CVE-2025-61101HIGHFRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_rmt_itf_addr functionEPSS 0.5%CVE-2024-11706MEDIUMA null pointer dereference may have inadvertently occurred in `pk12util`, and specifically in the `SEC_ASN1DecodeItem_Util` function, when hEPSS 0.5%CVE-2025-55657HIGHA NULL pointer dereference in the gf_odf_vvc_cfg_write_bs function (odf/descriptors.c) of GPAC MP4Box v2.4 allows attackers to cause a DeniaEPSS 0.5%CVE-2026-24883LOWIn GnuPG before 2.5.17, a long signature packet length causes parse_signature to return success with sig->data[] set to a NULL value, leadinEPSS 0.5%CVE-2022-2153A flaw was found in the Linux kernel’s KVM when attempting to set a SynIC IRQ. This issue makes it possible for a misbehaving VMM to write tEPSS 0.5%CVE-2025-56225HIGHfluidsynth-2.4.6 and earlier versions is vulnerable to Null pointer dereference in fluid_synth_monopoly.c, that can be triggered when loadinEPSS 0.5%CVE-2024-34044MEDIUMThe O-RAN E2T I-Release buildPrometheusList function can have a NULL pointer dereference because peerInfo can be NULL.EPSS 0.5%CVE-2026-28224HIGHFirebird Null Pointer Dereference via CryptCallback causes DOSEPSS 0.5%CVE-2026-45084HIGHOpenSIPS: Denial of service in presence.handle_publish() from unchecked Content-Type stateEPSS 0.5%CVE-2025-53010LOWMaterialX's unchecked nodeGraph->getOutput return is vulnerable to NULL Pointer DereferenceEPSS 0.5%CVE-2025-53412LOWFile Station 5EPSS 0.5%CVE-2022-35965MEDIUMSegfault in `LowerBound` and `UpperBound` in TensorFlowEPSS 0.5%CVE-2025-62463MEDIUMDirectX Graphics Kernel Denial of Service VulnerabilityEPSS 0.5%CVE-2025-62465MEDIUMDirectX Graphics Kernel Denial of Service VulnerabilityEPSS 0.5%CVE-2024-12660MEDIUMIObit Advanced SystemCare Utimate IOCTL AscRegistryFilter.sys 0x8001E018 null pointer dereferenceEPSS 0.5%