CWE-476: NULL Pointer Dereference

A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.

1,251
Total CVEs
20
Critical
303
High
6.1
Avg CVSS

Yearly Trend

2026
76
2025
628
2024
382
2023
55
2022
37

Top Affected Vendors

1 Linux 754
2 Debian 96
3 Qnap 44
4 Google 21
5 Adobe 21
6 Microsoft 20
7 Qualcomm 19
8 Fedoraproject 18
9 Linuxfoundation 11
10 Huawei 10

All NULL Pointer Dereference CVEs (1,251)

CVE-2022-50415
5.5

A NULL pointer dereference vulnerability in the Linux kernel's parisc LED driver could cause kernel panic or system crash when the create_singlethread...

Sep 18, 2025
CVE-2023-53382
5.5

A NULL pointer dereference vulnerability in the Linux kernel's SMC (Shared Memory Communications) subsystem allows local attackers to cause a kernel p...

Sep 18, 2025
CVE-2023-53384
5.5

This CVE describes a NULL pointer dereference vulnerability in the mwifiex WiFi driver in the Linux kernel. If exploited, it could cause a kernel pani...

Sep 18, 2025
CVE-2023-53380
5.5

This CVE describes a null pointer dereference vulnerability in the Linux kernel's RAID10 subsystem. An attacker with local access could trigger a kern...

Sep 18, 2025
CVE-2022-50383
5.5

A NULL pointer dereference vulnerability in the MediaTek vcodec driver of the Linux kernel can cause kernel crashes when video decoding errors occur. ...

Sep 18, 2025
CVE-2022-50380
5.5

This CVE-2022-50380 is a null pointer dereference vulnerability in the Linux kernel's /proc/pid/smaps_rollup interface. It allows local attackers to c...

Sep 18, 2025
CVE-2022-50381
5.5

A race condition vulnerability in the Linux kernel's MD (Multiple Devices) subsystem can cause a kernel crash when freeing memory pools. This affects ...

Sep 18, 2025
CVE-2023-53366
5.5

A NULL pointer dereference vulnerability in the Linux kernel's block layer when using polled I/O can cause kernel crashes. This occurs when two tasks ...

Sep 17, 2025
CVE-2023-53352
5.5

This CVE describes a null pointer dereference vulnerability in the Linux kernel's TTM (Translation Table Maps) memory management subsystem. When the k...

Sep 17, 2025
CVE-2023-53354
5.5

A NULL pointer dereference vulnerability in the Linux kernel's skbuff subsystem can cause kernel panics when processing network packets. This affects ...

Sep 17, 2025
CVE-2023-53356
5.5

This CVE describes a null pointer dereference vulnerability in the Linux kernel's USB gadget serial driver. An attacker could potentially cause a kern...

Sep 17, 2025
CVE-2023-53343
5.5

A NULL pointer dereference vulnerability in the Linux kernel's IPv6 ICMP6 implementation allows local attackers to cause a kernel panic (denial of ser...

Sep 17, 2025
CVE-2023-53335
5.5

A NULL pointer dereference vulnerability in the Linux kernel's RDMA/cxgb4 driver could allow local attackers to cause a kernel panic (denial of servic...

Sep 17, 2025
CVE-2022-50364
5.5

A NULL pointer dereference vulnerability in the Linux kernel's I2C multiplexer driver could cause kernel crashes or denial of service. This affects sy...

Sep 17, 2025
CVE-2022-50370
5.5

A NULL pointer dereference vulnerability in the Linux kernel's i2c-designware driver allows system crashes when unexpected device interrupts occur dur...

Sep 17, 2025
CVE-2022-50354
5.5

This CVE-2022-50354 is a NULL pointer dereference vulnerability in the Linux kernel's AMD GPU driver (amdkfd). It allows local attackers to cause a ke...

Sep 17, 2025
CVE-2022-50356
5.5

A NULL pointer dereference vulnerability in the Linux kernel's Stochastic Fair Blue (SFB) queueing discipline can cause a kernel panic when network de...

Sep 17, 2025
CVE-2022-50359
5.5

A null pointer dereference vulnerability in the Linux kernel's cx88 media driver allows local attackers to cause a kernel panic (denial of service) or...

Sep 17, 2025
CVE-2022-50361
5.5

This CVE is a NULL pointer dereference vulnerability in the Linux kernel's wilc1000 WiFi driver. When the driver fails to allocate a workqueue during ...

Sep 17, 2025
CVE-2023-53328
5.5

A NULL pointer dereference vulnerability in the Linux kernel's NTFS3 filesystem driver allows local attackers to cause a kernel panic (denial of servi...

Sep 16, 2025
CVE-2023-53325
5.5

This CVE addresses a NULL pointer dereference vulnerability in the MediaTek DisplayPort driver in the Linux kernel. The issue occurs when AUX transfer...

Sep 16, 2025
CVE-2023-53326
5.5

A NULL pointer dereference vulnerability in the Linux kernel's powerpc architecture allows kernel crashes when generating core dumps for PF_IO_WORKER ...

Sep 16, 2025
CVE-2023-53304
5.5

This vulnerability in the Linux kernel's netfilter nft_set_rbtree component causes improper cleanup of expired interval entries during garbage collect...

Sep 16, 2025
CVE-2022-50344
5.5

A null pointer dereference vulnerability in the Linux kernel's ext4 filesystem allows local attackers to cause a kernel panic (denial of service) duri...

Sep 16, 2025
CVE-2022-50347
5.5

This CVE describes a memory leak and potential kernel crash in the Linux kernel's mmc driver for Realtek RTSX USB SD/MMC card readers. If mmc_add_host...

Sep 16, 2025
CVE-2025-39820
5.5

A NULL pointer dereference vulnerability in the Linux kernel's DRM/MSM DPU driver could cause kernel panics or system crashes when specific graphics o...

Sep 16, 2025
CVE-2025-39814
5.5

A NULL pointer dereference vulnerability in the Linux kernel's ice driver allows local users to crash the system by triggering a device reset when RDM...

Sep 16, 2025
CVE-2025-39811
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's Direct Rendering Manager (DRM) Xe graphics driver. If exploited, it ...

Sep 16, 2025
CVE-2023-53289
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's bdisp media driver. If the create_workqueue function fails, the syst...

Sep 16, 2025
CVE-2023-53292
5.5

A NULL pointer dereference vulnerability in the Linux kernel's block multi-queue (blk-mq) subsystem could cause kernel panics or system crashes when e...

Sep 16, 2025
CVE-2023-53296
5.5

This Linux kernel vulnerability in the SCTP protocol implementation allows a race condition where a thread can send data to a non-existent stream afte...

Sep 16, 2025
CVE-2023-53284
5.5

A null pointer dereference vulnerability exists in the Linux kernel's DRM/MSM DPU driver where devm_kzalloc() may fail and return NULL, but the code d...

Sep 16, 2025
CVE-2023-53277
5.5

This CVE is a NULL pointer dereference vulnerability in the iwl3945 WiFi driver in the Linux kernel. It occurs when create_singlethread_workqueue fail...

Sep 16, 2025
CVE-2023-53280
5.5

This vulnerability is a NULL pointer dereference in the Linux kernel's qla2xxx SCSI driver that can cause a kernel panic and system crash when handlin...

Sep 16, 2025
CVE-2023-53248
5.5

A NULL pointer dereference vulnerability in the AMD GPU driver for Linux kernel could cause kernel crashes or denial of service when using CPU to upda...

Sep 15, 2025
CVE-2023-53250
5.5

A NULL pointer dereference vulnerability in the Linux kernel's DMI sysfs driver allows local attackers to cause a kernel panic and system crash. This ...

Sep 15, 2025
CVE-2023-53251
5.5

A NULL pointer dereference vulnerability in the Linux kernel's iwlwifi driver could cause kernel panics or system crashes when handling specific inter...

Sep 15, 2025
CVE-2023-53240
5.5

A race condition in the Linux kernel's AF_XDP socket implementation allows a NULL pointer dereference when transmitting packets via sendmsg() on a net...

Sep 15, 2025
CVE-2023-53244
5.5

This vulnerability in the Linux kernel's tw68 media driver allows a null pointer dereference when DMA memory allocation fails during buffer preparatio...

Sep 15, 2025
CVE-2023-53245
5.5

A NULL pointer dereference vulnerability in the Linux kernel's storvsc driver causes kernel panics when handling virtual Fibre Channel timeouts in Hyp...

Sep 15, 2025
CVE-2023-53246
5.5

A NULL pointer dereference vulnerability in the Linux kernel's CIFS filesystem driver causes kernel oops (system crash) when traversing DFS referral l...

Sep 15, 2025
CVE-2023-53228
5.5

This CVE describes a NULL pointer dereference vulnerability in the AMD GPU driver for Linux kernels. When command submission fails due to userptr inva...

Sep 15, 2025
CVE-2023-53209
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's mac80211_hwsim WiFi simulation module. If exploited, it could cause ...

Sep 15, 2025
CVE-2023-53210
5.5

A race condition in the Linux kernel's RAID5 cache subsystem can cause a null pointer dereference, leading to kernel panic and system crash. This affe...

Sep 15, 2025
CVE-2023-53203
5.5

This CVE addresses a NULL pointer dereference vulnerability in the mt7996 WiFi driver of the Linux kernel. If exploited, it could cause a kernel panic...

Sep 15, 2025
CVE-2022-50336
5.5

CVE-2022-50336 is a NULL pointer dereference vulnerability in the Linux kernel's NTFS3 filesystem driver. When mounting a specially crafted malicious ...

Sep 15, 2025
CVE-2022-50327
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's ACPI processor idle driver. If exploited, it could cause a kernel pa...

Sep 15, 2025
CVE-2022-50317
5.5

This is a null pointer dereference vulnerability in the Linux kernel's drm/bridge driver for Megachips display bridges. It allows local attackers to c...

Sep 15, 2025
CVE-2022-50295
5.5

This is a NULL pointer dereference vulnerability in the Linux kernel's io_uring subsystem that allows local attackers to cause a kernel panic (denial ...

Sep 15, 2025
CVE-2022-50272
5.5

This vulnerability is a null pointer dereference in the Linux kernel's DVB USB driver for the AZ6027 device. It allows local attackers to cause a kern...

Sep 15, 2025

About NULL Pointer Dereference (CWE-476)

A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.

Our database tracks 1,251 CVEs classified as CWE-476, with 20 rated critical and 303 rated high severity. The average CVSS score for NULL Pointer Dereference vulnerabilities is 6.1.

External reference: View CWE-476 on MITRE CWE →

Monitor NULL Pointer Dereference Vulnerabilities

Get alerted when new NULL Pointer Dereference CVEs affect your infrastructure.

Start Monitoring Free