CWE-476: NULL Pointer Dereference

A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.

1,266
Total CVEs
23
Critical
315
High
6.1
Avg CVSS

Yearly Trend

2026
76
2025
628
2024
382
2023
55
2022
37

Top Affected Vendors

1 Linux 754
2 Debian 96
3 Qnap 44
4 Google 22
5 Adobe 22
6 Microsoft 20
7 Qualcomm 20
8 Fedoraproject 19
9 Linuxfoundation 11
10 Huawei 10

All NULL Pointer Dereference CVEs (1,266)

CVE-2024-56689
5.5

A NULL pointer dereference vulnerability in the Linux kernel's PCI endpoint MHI driver allows local attackers to cause a kernel panic (denial of servi...

Dec 28, 2024
CVE-2024-56667
5.5

A NULL pointer dereference vulnerability in the Linux kernel's Intel graphics driver (drm/i915) could cause kernel crashes or denial of service when t...

Dec 27, 2024
CVE-2024-56660
5.5

A NULL pointer dereference vulnerability in the Linux kernel's mlx5 driver could cause kernel crashes or denial of service. This affects systems using...

Dec 27, 2024
CVE-2024-56646
5.5

A NULL pointer dereference vulnerability in the Linux kernel's IPv6 implementation allows local attackers to cause a kernel panic (denial of service) ...

Dec 27, 2024
CVE-2024-56621
5.5

A NULL pointer dereference vulnerability in the Linux kernel's UFS (Universal Flash Storage) driver allows local attackers to cause a kernel panic and...

Dec 27, 2024
CVE-2024-56612
5.5

A NULL pointer dereference vulnerability in the Linux kernel's unpin_user_pages() function can cause kernel crashes when handling certain memory confi...

Dec 27, 2024
CVE-2024-56599
5.5

A NULL pointer dereference vulnerability in the Linux kernel's ath10k SDIO driver can cause kernel panic during module removal when CONFIG_INIT_ON_FRE...

Dec 27, 2024
CVE-2024-56593
5.5

This vulnerability is a NULL pointer dereference in the brcmfmac WiFi driver in the Linux kernel that can cause a kernel panic (system crash) when pro...

Dec 27, 2024
CVE-2024-56580
5.5

A NULL pointer dereference vulnerability in the Linux kernel's CAMSS driver allows local attackers to cause a kernel panic and system crash. This affe...

Dec 27, 2024
CVE-2024-56587
5.5

A race condition vulnerability in the Linux kernel's LED subsystem allows concurrent access to LED device structures during initialization, potentiall...

Dec 27, 2024
CVE-2024-56574
5.5

A null pointer dereference vulnerability in the Linux kernel's ts2020 media driver allows local attackers to cause a kernel panic or system crash by t...

Dec 27, 2024
CVE-2024-56578
5.5

A NULL pointer dereference vulnerability in the Linux kernel's imx-jpeg media driver could cause kernel oops (crashes) when accessing video device dat...

Dec 27, 2024
CVE-2024-56569
5.5

A null pointer dereference vulnerability in the Linux kernel's ftrace subsystem allows local attackers to crash the kernel by writing a malformed modu...

Dec 27, 2024
CVE-2024-56536
5.5

This CVE describes a NULL pointer dereference vulnerability in the cw1200 WiFi driver in the Linux kernel. If exploited, it could cause a kernel panic...

Dec 27, 2024
CVE-2024-53235
5.5

A null pointer dereference vulnerability in the Linux kernel's EROFS filesystem driver when mounted over FUSE can cause kernel crashes. This affects s...

Dec 27, 2024
CVE-2024-53231
5.5

A null pointer dereference vulnerability in the Linux kernel's cpufreq CPPC driver could cause kernel crashes or system instability when cpufreq_cpu_g...

Dec 27, 2024
CVE-2024-53233
5.5

A NULL pointer dereference vulnerability in the Linux kernel's unicode subsystem allows local attackers to cause a kernel panic (denial of service) by...

Dec 27, 2024
CVE-2024-53222
5.5

A NULL pointer dereference vulnerability in the Linux kernel's zram compression algorithm display function allows local users to crash the system by r...

Dec 27, 2024
CVE-2024-53224
5.5

A race condition vulnerability in the Linux kernel's RDMA/mlx5 driver allows a NULL pointer dereference during device deregistration. This can cause k...

Dec 27, 2024
CVE-2024-53226
5.5

A NULL pointer dereference vulnerability in the Linux kernel's RDMA/hns driver allows local attackers to cause a kernel panic (denial of service) by t...

Dec 27, 2024
CVE-2024-53199
5.5

This CVE is a NULL pointer dereference vulnerability in the Linux kernel's ASoC imx-audmix driver. If devm_kasprintf() fails and returns NULL, the cod...

Dec 27, 2024
CVE-2024-53201
5.5

This CVE describes a null pointer dereference vulnerability in the AMD display driver within the Linux kernel. If exploited, it could cause a kernel p...

Dec 27, 2024
CVE-2024-53167
5.5

A NULL pointer dereference vulnerability in the Linux kernel's NFS blocklayout driver can cause kernel crashes when unmounting pNFS SCSI layout-enable...

Dec 27, 2024
CVE-2024-53952
5.5

Adobe InDesign has a NULL pointer dereference vulnerability that allows attackers to crash the application by tricking users into opening malicious fi...

Dec 10, 2024
CVE-2024-53113
5.5

A NULL pointer dereference vulnerability in the Linux kernel's memory allocation subsystem allows local attackers to cause a kernel panic (denial of s...

Dec 2, 2024
CVE-2024-53115
5.5

This CVE addresses a null pointer dereference vulnerability in the Linux kernel's vmwgfx driver. If exploited, it could cause a kernel panic or system...

Dec 2, 2024
CVE-2024-53043
5.5

A NULL pointer dereference vulnerability in the Linux kernel's MCTP I2C subsystem could cause kernel panics or system crashes when processing network ...

Nov 19, 2024
CVE-2024-50265
5.5

A null pointer dereference vulnerability in the Linux kernel's OCFS2 filesystem allows local attackers to cause a kernel panic (denial of service) by ...

Nov 19, 2024
CVE-2024-48294
5.5

A NULL pointer dereference vulnerability in Wondershare PDF Reader's libPdfCore.dll component allows attackers to cause a Denial of Service (DoS) by t...

Nov 18, 2024
CVE-2024-47439
5.5

Substance3D Painter versions 10.1.0 and earlier contain a NULL pointer dereference vulnerability that allows attackers to crash the application by tri...

Nov 12, 2024
CVE-2024-47458
5.5

Adobe Bridge versions 13.0.9, 14.1.2 and earlier contain a NULL pointer dereference vulnerability that allows attackers to cause denial-of-service by ...

Nov 12, 2024
CVE-2024-50240
5.5

A NULL pointer dereference vulnerability in the Linux kernel's Qualcomm QMP USB PHY driver causes kernel panic on runtime suspend when runtime power m...

Nov 9, 2024
CVE-2024-50223
5.5

A NULL pointer dereference vulnerability in the Linux kernel's NUMA balancing scheduler allows local attackers to cause a kernel panic and system cras...

Nov 9, 2024
CVE-2024-50225
5.5

A NULL pointer dereference vulnerability in the Linux kernel's Btrfs filesystem occurs when split bios complete before their parent bio context is pro...

Nov 9, 2024
CVE-2024-50156
5.5

A NULL pointer dereference vulnerability in the Linux kernel's MSM display driver could cause kernel panics or system crashes when specific display op...

Nov 7, 2024
CVE-2024-50160
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's ALSA HDA CS8409 audio driver. If memory allocation fails in the dolp...

Nov 7, 2024
CVE-2024-50145
5.5

A NULL pointer dereference vulnerability exists in the Linux kernel's octeon_ep driver when handling SKB allocation failures during network packet pro...

Nov 7, 2024
CVE-2024-50147
5.5

A null pointer dereference vulnerability in the Linux kernel's mlx5 network driver allows local attackers to cause a kernel panic (denial of service) ...

Nov 7, 2024
CVE-2024-50133
5.5

A NULL pointer dereference vulnerability in the Linux kernel's LoongArch architecture allows kernel threads without vDSO mappings to crash when callin...

Nov 5, 2024
CVE-2024-50105
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's Soundwire driver for SC7280-based systems. When exploited, it causes...

Nov 5, 2024
CVE-2024-50118
5.5

This Linux kernel vulnerability in the Btrfs filesystem allows a local attacker to trigger a kernel crash (denial of service) by mounting a Btrfs file...

Nov 5, 2024
CVE-2024-50103
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's Qualcomm ASoC (Audio System on Chip) driver. If exploited, it could ...

Nov 5, 2024
CVE-2023-52919
5.5

A NULL pointer dereference vulnerability exists in the Linux kernel's NFC (Near Field Communication) subsystem. If memory allocation fails in the send...

Oct 22, 2024
CVE-2024-50045
5.5

A NULL pointer dereference vulnerability in the Linux kernel's br_netfilter module causes kernel panic when untagged traffic exceeding VxLAN MTU is fo...

Oct 21, 2024
CVE-2024-50049
5.5

This CVE addresses a null pointer dereference vulnerability in the AMD display driver component of the Linux kernel. If exploited, it could cause a ke...

Oct 21, 2024
CVE-2024-50058
5.5

This CVE addresses a NULL pointer dereference vulnerability in the Linux kernel's serial subsystem. When HUPCL flag is set and specific conditions occ...

Oct 21, 2024
CVE-2024-50039
5.5

This CVE describes a Linux kernel vulnerability in the network traffic control subsystem where allowing TCA_STAB (size table) configuration on non-roo...

Oct 21, 2024
CVE-2022-49019
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's nixge network driver. If the driver fails to allocate memory for rec...

Oct 21, 2024
CVE-2022-49021
5.5

This vulnerability is a NULL pointer dereference in the Linux kernel's PHY subsystem that occurs when a network PHY device probe fails. It allows loca...

Oct 21, 2024
CVE-2022-49010
5.5

A NULL pointer dereference vulnerability in the Linux kernel's coretemp hardware monitoring driver allows local attackers to crash the kernel by trigg...

Oct 21, 2024

About NULL Pointer Dereference (CWE-476)

A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.

Our database tracks 1,266 CVEs classified as CWE-476, with 23 rated critical and 315 rated high severity. The average CVSS score for NULL Pointer Dereference vulnerabilities is 6.1.

External reference: View CWE-476 on MITRE CWE →

Monitor NULL Pointer Dereference Vulnerabilities

Get alerted when new NULL Pointer Dereference CVEs affect your infrastructure.

Start Monitoring Free