CWE-476: NULL Pointer Dereference

A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.

1,266
Total CVEs
23
Critical
315
High
6.1
Avg CVSS

Yearly Trend

2026
76
2025
628
2024
382
2023
55
2022
37

Top Affected Vendors

1 Linux 754
2 Debian 96
3 Qnap 44
4 Google 22
5 Adobe 22
6 Microsoft 20
7 Qualcomm 20
8 Fedoraproject 19
9 Linuxfoundation 11
10 Huawei 10

All NULL Pointer Dereference CVEs (1,266)

CVE-2022-48992
5.5

This CVE-2022-48992 is a NULL pointer dereference vulnerability in the Linux kernel's ASoC (ALSA System on Chip) subsystem. It allows local attackers ...

Oct 21, 2024
CVE-2022-48984
5.5

This vulnerability in the Linux kernel's slcan driver allows a NULL pointer dereference when a freed work queue is accessed, causing a kernel crash. I...

Oct 21, 2024
CVE-2022-48970
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's AF_UNIX socket diagnostics subsystem. When processing certain netlin...

Oct 21, 2024
CVE-2022-48972
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's IEEE 802.15.4 (WPAN) subsystem. When adding a wireless personal area...

Oct 21, 2024
CVE-2024-50003
5.5

A NULL pointer dereference vulnerability in the Linux kernel's AMD display driver can cause system hangs when resuming from suspend with Thunderbolt m...

Oct 21, 2024
CVE-2024-50009
5.5

This CVE describes a NULL pointer dereference vulnerability in the AMD P-State CPU frequency scaling driver in the Linux kernel. If cpufreq_cpu_get() ...

Oct 21, 2024
CVE-2024-50000
5.5

A NULL pointer dereference vulnerability in the Linux kernel's mlx5e_tir_builder_alloc() function could cause kernel crashes or denial of service. Thi...

Oct 21, 2024
CVE-2024-49979
5.5

A vulnerability in the Linux kernel's network Generic Segmentation Offload (GSO) handling allows TCP fragmentation list (fraglist) segmentation to fai...

Oct 21, 2024
CVE-2024-49962
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's ACPICA subsystem. If the ACPI_ALLOCATE_ZEROED() memory allocation fa...

Oct 21, 2024
CVE-2024-49956
5.5

This CVE describes a double-free vulnerability in the Linux kernel's GFS2 filesystem implementation where destroy_workqueue() is called twice on the s...

Oct 21, 2024
CVE-2024-49942
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's Xe graphics driver. When the xe_migrate_copy function attempts to co...

Oct 21, 2024
CVE-2024-49919
5.5

This CVE addresses a null pointer dereference vulnerability in the AMD display driver within the Linux kernel. If exploited, it could cause a kernel p...

Oct 21, 2024
CVE-2024-49921
5.5

This CVE addresses a null pointer dereference vulnerability in the AMD display driver component of the Linux kernel. If exploited, it could cause a ke...

Oct 21, 2024
CVE-2024-49923
5.5

This CVE describes a null pointer dereference vulnerability in the AMD display driver within the Linux kernel. If exploited, it could cause a kernel p...

Oct 21, 2024
CVE-2024-49905
5.5

This CVE describes a null pointer dereference vulnerability in the AMD GPU display driver within the Linux kernel. If exploited, it could cause a kern...

Oct 21, 2024
CVE-2024-49907
5.5

This vulnerability is a NULL pointer dereference in the AMD display driver component of the Linux kernel. It could cause a kernel panic or system cras...

Oct 21, 2024
CVE-2024-49909
5.5

This CVE describes a null pointer dereference vulnerability in the AMD display driver within the Linux kernel. If exploited, it could cause a kernel p...

Oct 21, 2024
CVE-2024-49911
5.5

This CVE describes a null pointer dereference vulnerability in the AMD display driver component of the Linux kernel. If exploited, it could cause a ke...

Oct 21, 2024
CVE-2024-49913
5.5

This CVE describes a null pointer dereference vulnerability in the AMD display driver within the Linux kernel. If exploited, it could cause a kernel p...

Oct 21, 2024
CVE-2024-49915
5.5

This CVE describes a null pointer dereference vulnerability in the AMD display driver within the Linux kernel. If exploited, it could cause a kernel p...

Oct 21, 2024
CVE-2024-49917
5.5

This CVE describes a null pointer dereference vulnerability in the AMD display driver within the Linux kernel. If exploited, it could cause a kernel p...

Oct 21, 2024
CVE-2024-49896
5.5

This CVE addresses a NULL pointer dereference vulnerability in the AMD GPU display driver within the Linux kernel. The vulnerability occurs when the a...

Oct 21, 2024
CVE-2024-49898
5.5

This CVE addresses a NULL pointer dereference vulnerability in the AMD display driver component of the Linux kernel. If exploited, it could cause a ke...

Oct 21, 2024
CVE-2024-49891
5.5

A NULL pointer dereference vulnerability in the Linux kernel's lpfc SCSI driver allows local attackers to cause kernel crashes or denial of service. T...

Oct 21, 2024
CVE-2024-49893
5.5

This CVE addresses a NULL pointer dereference vulnerability in the AMD display driver component of the Linux kernel. If exploited, it could cause a ke...

Oct 21, 2024
CVE-2024-49871
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's adp5589-keys input driver. If the driver's probe function fails earl...

Oct 21, 2024
CVE-2024-49873
5.5

A NULL pointer dereference vulnerability in the Linux kernel's memory management subsystem causes kernel panic when using memfd_pin_folios with transp...

Oct 21, 2024
CVE-2024-47752
5.5

A NULL pointer dereference vulnerability in the MediaTek H264 stateless decoder driver in the Linux kernel can cause a kernel crash when frame buffer ...

Oct 21, 2024
CVE-2024-47754
5.5

A NULL pointer dereference vulnerability in the MediaTek video decoder driver for H.264 multi stateless decoding in the Linux kernel can cause a kerne...

Oct 21, 2024
CVE-2024-47756
5.5

This CVE-2024-47756 is a NULL pointer dereference vulnerability in the Linux kernel's PCI keystone driver. The bug occurs when an incorrect logical op...

Oct 21, 2024
CVE-2024-47743
5.5

A NULL pointer dereference vulnerability in the Linux kernel's find_asymmetric_key() function could cause kernel panic (system crash) when all id para...

Oct 21, 2024
CVE-2024-47717
5.5

A NULL pointer dereference vulnerability in the Linux kernel's KVM subsystem for RISC-V allows a local attacker to crash the host kernel when a guest ...

Oct 21, 2024
CVE-2024-47720
5.5

This CVE describes a null pointer dereference vulnerability in the AMD display driver within the Linux kernel. If exploited, it could cause a kernel p...

Oct 21, 2024
CVE-2024-47705
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's block subsystem. If exploited, it could cause a kernel panic leading...

Oct 21, 2024
CVE-2024-47707
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's IPv6 routing subsystem. The flaw occurs when the rt6_uncached_list_f...

Oct 21, 2024
CVE-2024-47699
5.5

A NULL pointer dereference vulnerability in the Linux kernel's nilfs2 filesystem driver allows local attackers to crash the system (kernel panic) by a...

Oct 21, 2024
CVE-2024-47680
5.5

A NULL pointer dereference vulnerability in the Linux kernel's F2FS filesystem when handling discard operations on conventional zones of zoned block d...

Oct 21, 2024
CVE-2024-47684
5.5

A NULL pointer dereference vulnerability in the Linux kernel's TCP implementation allows denial of service attacks. The vulnerability occurs when tcp_...

Oct 21, 2024
CVE-2024-47459
5.5

CVE-2024-47459 is a NULL pointer dereference vulnerability in Substance3D Sampler that allows attackers to cause a denial-of-service by crashing the a...

Oct 17, 2024
CVE-2024-46856
5.5

A NULL pointer dereference vulnerability in the Linux kernel's DP83822/DP83825/DP83826 PHY driver allows kernel crashes when specific network interfac...

Sep 27, 2024
CVE-2024-46860
5.5

This vulnerability in the Linux kernel's MediaTek MT7921 WiFi driver allows a NULL pointer dereference when disabling WiFi while IPv6 address changes ...

Sep 27, 2024
CVE-2024-46835
5.5

This CVE addresses a NULL pointer dereference vulnerability in the AMD GPU driver within the Linux kernel. If exploited, it could cause a kernel panic...

Sep 27, 2024
CVE-2024-46810
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's tc358767 display bridge driver. It occurs when the driver signals a ...

Sep 27, 2024
CVE-2024-46822
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's ACPI subsystem for ARM64 systems. If triggered, it could cause a ker...

Sep 27, 2024
CVE-2024-46824
5.5

A NULL pointer dereference vulnerability in the Linux kernel's iommufd subsystem allows local attackers to cause a kernel panic (denial of service) wh...

Sep 27, 2024
CVE-2024-46803
5.5

A NULL pointer dereference vulnerability in the Linux kernel's AMDKFD driver could cause kernel crashes or denial of service. This affects systems usi...

Sep 27, 2024
CVE-2024-46808
5.5

This CVE describes a NULL pointer dereference vulnerability in the AMD display driver component of the Linux kernel. The vulnerability occurs when kca...

Sep 27, 2024
CVE-2024-47290
5.5

An input validation vulnerability in the USB service module could allow attackers to cause denial of service conditions. This affects Huawei devices w...

Sep 27, 2024
CVE-2024-46793
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's ASoC (Audio System on Chip) subsystem for Intel BYT/CHT boards. The ...

Sep 18, 2024
CVE-2024-46795
5.5

A NULL pointer dereference vulnerability in the Linux kernel's ksmbd SMB server module allows attackers to cause a kernel panic (denial of service) wh...

Sep 18, 2024

About NULL Pointer Dereference (CWE-476)

A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.

Our database tracks 1,266 CVEs classified as CWE-476, with 23 rated critical and 315 rated high severity. The average CVSS score for NULL Pointer Dereference vulnerabilities is 6.1.

External reference: View CWE-476 on MITRE CWE →

Monitor NULL Pointer Dereference Vulnerabilities

Get alerted when new NULL Pointer Dereference CVEs affect your infrastructure.

Start Monitoring Free