Falhas do tipo CWE-476

2.328 resultados

Desreferenciação de ponteiro nulo autenticado

O software permite que um usuário autenticado force a desreferenciação de um ponteiro ou referência nula, tipicamente ao passar valores inesperados ou inválidos a uma função. O aplicativo não valida adequadamente a entrada antes de usá-la, causando falha (crash) ou comportamento indefinido que pode levar a negação de serviço.

Exemplo

Um painel administrativo aceita um ID de usuário para deletar, mas não verifica se esse ID existe no banco antes de acessar seus atributos. Um admin autenticado passa ID=0 ou um valor que não corresponde a nenhum registro, e o código tenta acessar propriedades de um objeto nulo, derrubando a aplicação.

Como mitigar

Sempre valide e verifique que referências/ponteiros são válidos antes de desreferenciar: teste se o objeto existe, se o ID é válido e se está dentro do escopo esperado. Use assertions em desenvolvimento e tratamento de exceções robusto em produção para falhas inesperadas.

CVE-2023-50432MEDIUMsimple-dhcp-server through ec976d2 allows remote attackers to cause a denial of service (daemon crash) by sending a DHCP packet without any EPSS 0.5%CVE-2024-39130HIGHA NULL Pointer Dereference discovered in DumpTS v0.1.0-nightly allows attackers to cause a denial of service via the function DumpOneStream(EPSS 0.5%CVE-2025-49832MEDIUMAsterisk is Vulnerable to Remote DoS and possible RCE Attacks During Memory AllocationEPSS 0.5%CVE-2025-62409MEDIUMEnvoy allows large requests and responses to cause TCP connection pool crashEPSS 0.5%CVE-2026-68901MEDIUMWeKan Board Export REST Endpoints: NULL Pointer Dereference on Invalid authToken Leads to Uncaught Exception / Remote Denial of ServiceEPSS 0.5%CVE-2025-66281MEDIUMQTS, QuTS heroEPSS 0.5%CVE-2026-48829HIGHIn GNU SASL before 2.2.3, DIGEST-MD5 has a NULL pointer dereference affecting both clients and servers, via a known token with no accompanyiEPSS 0.5%CVE-2026-65412MEDIUMA null pointer dereference was addressed with improved input validation. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS EPSS 0.5%CVE-2026-59949MEDIUMyawkat LZ4 Java: JVM Crash via Null Byte Array in lz4-java Streaming XXHash JNI (StreamingXXHash32JNI / StreamingXXHash64JNI)EPSS 0.5%CVE-2024-3186MEDIUMCWE-476 NULL Pointer Dereference vulnerability in the evalExpr() function of GoAhead Web Server (version <= 6.0.0) when compiled with the MEEPSS 0.5%CVE-2023-30756HIGHA vulnerability has been identified in SIMATIC CP 1242-7 V2 (incl. SIPLUS variants) (All versions < V3.5.20), SIMATIC CP 1243-1 (incl. SIPLUEPSS 0.5%CVE-2023-1355HIGHNULL Pointer Dereference in vim/vimEPSS 0.5%CVE-2023-28827HIGHA vulnerability has been identified in SIMATIC CP 1242-7 V2 (incl. SIPLUS variants) (All versions < V3.5.20), SIMATIC CP 1243-1 (incl. SIPLUEPSS 0.5%CVE-2023-3772MEDIUMKernel: xfrm: null pointer dereference in xfrm_update_ae_params()EPSS 0.5%CVE-2026-73502MEDIUMkin-openapi openapi3filter: unauthenticated nil-pointer panic when validating a request against a `content` parameter whose media type has no schemaEPSS 0.5%CVE-2025-58144HIGHArm issues with page refcountingEPSS 0.4%CVE-2026-63762MEDIUMSurrealDB before v2.6.1 Denial of Service via scriptingEPSS 0.4%CVE-2026-26983MEDIUMImageMagick: Invalid MSL <map> can result in a use after freeEPSS 0.4%CVE-2025-44008MEDIUMQsync CentralEPSS 0.4%CVE-2025-44009MEDIUMQsync CentralEPSS 0.4%