CWE-476: NULL Pointer Dereference
A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.
Yearly Trend
Top Affected Vendors
All NULL Pointer Dereference CVEs (1,252)
A NULL pointer dereference vulnerability in the Linux kernel's powercap subsystem allows local attackers to crash the kernel when a CPU becomes unavai...
Aug 19, 2025A use-after-free vulnerability in the Linux kernel's RTL8187/8187B USB WiFi driver allows a NULL pointer dereference when stopping the device. This ca...
Aug 19, 2025A null pointer dereference vulnerability in the Linux kernel's ath12k WiFi driver allows local attackers to cause a kernel panic (denial of service) w...
Aug 19, 2025A flaw in the ARM64 BPF JIT compiler in the Linux kernel fails to initialize the frame pointer for exception boundary programs, potentially causing ke...
Aug 19, 2025A NULL pointer dereference vulnerability in the Linux kernel's AMD Cryptographic Coprocessor (CCP) driver causes a kernel crash when rebinding the CCP...
Aug 19, 2025A NULL pointer dereference vulnerability in the Linux kernel's USB gadget UVC driver causes kernel crashes when userspace configures frame-based video...
Aug 19, 2025This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's Intel Platform Monitoring Technology (PMT) driver. When accessing cr...
Aug 19, 2025A null pointer dereference vulnerability in the Linux kernel's ksmbd module could cause kernel crashes or denial of service when clients send multiple...
Aug 19, 2025This CVE is a NULL pointer dereference vulnerability in the Linux kernel's NVIDIA Tegra NVDEC driver. It occurs when dma_alloc_coherent fails to alloc...
Aug 16, 2025A NULL pointer dereference vulnerability in the Linux kernel's Intel Ethernet Controller (ice) driver could cause kernel panics or system crashes when...
Aug 16, 2025A NULL pointer dereference vulnerability in the Linux kernel's scheduler extension (SCX) subsystem could cause a kernel warning or system instability ...
Aug 16, 2025This CVE describes a potential deadlock vulnerability in the Linux kernel's KASAN (Kernel Address SANitizer) subsystem. When KASAN attempts to report ...
Aug 16, 2025A vulnerability in the Linux kernel's Qualcomm pinctrl-msm driver allows user-space applications to trigger a kernel BUG() and potentially crash the s...
Aug 16, 2025A NULL pointer dereference vulnerability in the Linux kernel's memory allocation tagging subsystem causes a kernel crash when attempting to lock a non...
Aug 16, 2025A NULL pointer dereference vulnerability in GStreamer's subparse plugin allows attackers to cause denial of service by crashing applications that proc...
Aug 7, 2025This CVE describes a null pointer dereference vulnerability in the Linux kernel's Bluetooth L2CAP socket implementation. When exploited, it can cause ...
Jul 28, 2025A type confusion vulnerability in the Linux kernel's SMC (Shared Memory Communications) subsystem allows non-INET sockets to incorrectly reuse INET so...
Jul 28, 2025This CVE describes a race condition vulnerability in the Linux kernel's KVM SVM implementation for SEV/SEV-ES virtual machines. It allows a crash or u...
Jul 25, 2025A NULL pointer dereference vulnerability in the Linux kernel's ATM CLIP (Classical IP over ATM) subsystem allows local attackers to cause a kernel pan...
Jul 25, 2025A NULL pointer dereference vulnerability in the Linux kernel's genirq/irq_sim module occurs when simulation work context pointers are not properly ini...
Jul 25, 2025A memory corruption vulnerability in the Linux kernel's SPI-QPIC-SNAND driver allows out-of-bounds memory access when handling NAND flash operations. ...
Jul 25, 2025A NULL pointer dereference vulnerability exists in the Linux kernel's cs40l50-vibra driver where memory allocation failure isn't properly handled. Thi...
Jul 25, 2025A race condition in the Linux kernel's v3d graphics driver allows interrupts to be triggered during GPU resets, leading to NULL pointer dereferences a...
Jul 25, 2025A null pointer dereference vulnerability in the Linux kernel's AMD display driver could cause kernel crashes or denial of service. This affects system...
Jul 25, 2025A Linux kernel vulnerability in the maple_tree subsystem causes improper handling of the MA_STATE_PREALLOC flag in mas_preallocate(). This can lead to...
Jul 25, 2025This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's tps6594-pfsm driver. If exploited, it could cause a kernel panic or ...
Jul 25, 2025This CVE addresses a null pointer dereference and data race condition in the Linux kernel's jbd2 journaling subsystem. Attackers could potentially cau...
Jul 10, 2025This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's AMD GPU driver. If exploited, it could cause a kernel panic or syste...
Jul 10, 2025A NULL pointer dereference vulnerability exists in the Linux kernel's Bluetooth subsystem within the eir_get_service_data function. This vulnerability...
Jul 10, 2025This CVE describes a null pointer dereference vulnerability in the Linux kernel's ASoC Intel AVS driver. If exploited, it could cause kernel crashes o...
Jul 10, 2025A NULL pointer dereference vulnerability in the Linux kernel's Btrfs filesystem could cause kernel panic or system crash when CONFIG_BUG is disabled. ...
Jul 10, 2025A NULL pointer dereference vulnerability exists in the Linux kernel's FPGA manager test function fpga_mgr_test_img_load_sgt(). This could cause kernel...
Jul 10, 2025A NULL pointer dereference vulnerability in the Linux kernel's MediaTek pinctrl subsystem causes kernel crashes on v1 platform devices. This affects L...
Jul 10, 2025A NULL pointer dereference vulnerability in the Linux kernel's bcache subsystem allows local attackers to cause a kernel panic (denial of service) by ...
Jul 9, 2025Adobe Framemaker versions 2020.8, 2022.6 and earlier contain a NULL pointer dereference vulnerability that allows attackers to cause denial-of-service...
Jul 8, 2025Adobe Illustrator versions 28.7.6, 29.5.1 and earlier contain a NULL pointer dereference vulnerability that allows attackers to crash the application ...
Jul 8, 2025Substance3D Viewer versions 0.22 and earlier contain a NULL pointer dereference vulnerability that allows attackers to cause denial-of-service by cras...
Jul 8, 2025A NULL pointer dereference vulnerability in the Linux kernel's ext4 filesystem can cause kernel crashes when processing orphaned symlink inodes. This ...
Jul 4, 2025A null pointer dereference vulnerability in the Linux kernel's framebuffer subsystem allows local attackers to cause a kernel panic (denial of service...
Jul 4, 2025A null pointer dereference vulnerability in the Linux kernel's JFS filesystem allows local attackers to trigger a kernel panic (denial of service) by ...
Jul 4, 2025This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's SMB client automount functionality. When tcon->origin_fullpath is se...
Jul 4, 2025A NULL pointer dereference vulnerability in the Linux kernel's ksmbd module allows denial-of-service attacks when clients set PreviousSessionId during...
Jul 4, 2025A NULL pointer dereference vulnerability in the Linux kernel's dell_rbu driver allows local attackers to cause denial of service or potentially escala...
Jul 4, 2025A null pointer dereference vulnerability in the Linux kernel's TIPC (Transparent Inter-Process Communication) subsystem allows local attackers to caus...
Jul 4, 2025A NULL pointer dereference vulnerability in the Linux kernel's v3d graphics driver allows local attackers to cause a kernel panic (denial of service) ...
Jul 4, 2025A NULL pointer dereference vulnerability in the Linux kernel's CALIPSO subsystem allows denial-of-service attacks when SYN cookies are enabled. The vu...
Jul 4, 2025A NULL pointer dereference vulnerability in the Linux kernel's NTFS3 filesystem driver could cause kernel crashes or denial of service. This affects s...
Jul 3, 2025A NULL pointer dereference vulnerability in the Linux kernel's max77705 power supply driver could cause kernel panics or system crashes when device pr...
Jul 3, 2025This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's F2FS filesystem driver. When processing a specially crafted filesyst...
Jul 3, 2025A NULL pointer dereference vulnerability exists in the Linux kernel's aspeed_lpc_enable_snoop() function due to missing NULL check after memory alloca...
Jul 3, 2025About NULL Pointer Dereference (CWE-476)
A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.
Our database tracks 1,252 CVEs classified as CWE-476, with 21 rated critical and 303 rated high severity. The average CVSS score for NULL Pointer Dereference vulnerabilities is 6.1.
External reference: View CWE-476 on MITRE CWE →
Monitor NULL Pointer Dereference Vulnerabilities
Get alerted when new NULL Pointer Dereference CVEs affect your infrastructure.
Start Monitoring Free