CWE-476: NULL Pointer Dereference

A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.

1,267
Total CVEs
23
Critical
316
High
6.1
Avg CVSS

Yearly Trend

2026
76
2025
628
2024
382
2023
55
2022
37

Top Affected Vendors

1 Linux 754
2 Debian 96
3 Qnap 44
4 Google 22
5 Adobe 22
6 Microsoft 20
7 Qualcomm 20
8 Fedoraproject 19
9 Linuxfoundation 11
10 Huawei 10

All NULL Pointer Dereference CVEs (1,267)

CVE-2024-46795
5.5

A NULL pointer dereference vulnerability in the Linux kernel's ksmbd SMB server module allows attackers to cause a kernel panic (denial of service) wh...

Sep 18, 2024
CVE-2024-46776
5.5

This CVE fixes a NULL pointer dereference vulnerability in the AMD display driver component of the Linux kernel. The vulnerability occurs when DC_LOG_...

Sep 18, 2024
CVE-2024-46778
5.5

This CVE addresses a NULL pointer dereference vulnerability in the AMD display driver component of the Linux kernel. The vulnerability occurs when the...

Sep 18, 2024
CVE-2024-46788
5.5

A race condition vulnerability in the Linux kernel's tracing/osnoise subsystem allows improper kthread_stop() calls on user space threads, causing ker...

Sep 18, 2024
CVE-2024-46761
5.5

A NULL pointer dereference vulnerability in the Linux kernel's PowerNV PCI hotplug driver causes a kernel crash when hot-unplugging PCIe devices on Po...

Sep 18, 2024
CVE-2024-46763
5.5

A NULL pointer dereference vulnerability in the Linux kernel's FOU (Foo over UDP) implementation allows denial of service through kernel panic when sh...

Sep 18, 2024
CVE-2024-46768
5.5

A NULL pointer dereference vulnerability exists in the Linux kernel's hp-wmi-sensors hardware monitoring driver. When the BIOS returns no event data f...

Sep 18, 2024
CVE-2024-46742
5.5

A NULL pointer dereference vulnerability exists in the Linux kernel's SMB server implementation. When processing SMB2_OPLOCK_LEVEL_LEASE operations, a...

Sep 18, 2024
CVE-2024-46714
5.5

This CVE addresses a NULL pointer dereference vulnerability in the AMD display driver component of the Linux kernel. Attackers could potentially cause...

Sep 18, 2024
CVE-2024-46720
5.5

This CVE addresses a NULL pointer dereference vulnerability in the AMD GPU driver within the Linux kernel. An attacker could potentially cause a kerne...

Sep 18, 2024
CVE-2024-43759
5.5

Adobe Illustrator versions 28.6, 27.9.5 and earlier contain a NULL pointer dereference vulnerability that allows attackers to crash the application by...

Sep 13, 2024
CVE-2024-46698
5.5

A NULL pointer dereference vulnerability in the Linux kernel's video aperture subsystem can cause kernel panics when multiple PCI display devices are ...

Sep 13, 2024
CVE-2024-46685
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's pinctrl-single driver. If exploited, it could cause a kernel panic o...

Sep 13, 2024
CVE-2024-46691
5.5

This CVE addresses a NULL pointer dereference vulnerability in the Linux kernel's USB Type-C UCSI driver. The issue occurs when unregistering UCSI dur...

Sep 13, 2024
CVE-2024-46682
5.5

A NULL pointer dereference vulnerability in the Linux kernel's NFS server (nfsd) can cause kernel panics when reading /proc/fs/nfsd/clients/*/states f...

Sep 13, 2024
CVE-2024-45021
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's memory controller (memcg) event control interface. An attacker with ...

Sep 11, 2024
CVE-2024-45028
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's MMC (MultiMediaCard) test module. When the kernel fails to allocate ...

Sep 11, 2024
CVE-2024-45015
5.5

A NULL pointer dereference vulnerability in the Linux kernel's MSM DPU display driver allows local attackers to cause a kernel panic (denial of servic...

Sep 11, 2024
CVE-2024-44989
5.5

This CVE describes a null pointer dereference vulnerability in the Linux kernel's bonding driver that occurs when xfrm (IPsec) offload operations are ...

Sep 4, 2024
CVE-2024-44960
5.5

This CVE describes a null pointer dereference vulnerability in the Linux kernel's USB gadget core. If a USB gadget driver fails to properly set up end...

Sep 4, 2024
CVE-2024-43908
5.5

This CVE describes a null pointer dereference vulnerability in the AMD GPU driver within the Linux kernel. An attacker could potentially cause a kerne...

Aug 26, 2024
CVE-2024-43894
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's Direct Rendering Manager (DRM) client subsystem. When drm_mode_dupli...

Aug 26, 2024
CVE-2024-43896
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's cs-amp-lib component. If exploited, it could cause a kernel panic an...

Aug 26, 2024
CVE-2024-43899
5.5

A null pointer dereference vulnerability in the AMD GPU display driver for Linux kernels allows local attackers to cause a kernel panic and system cra...

Aug 26, 2024
CVE-2024-43902
5.5

This CVE addresses a NULL pointer dereference vulnerability in the AMD display driver component of the Linux kernel. Attackers could potentially cause...

Aug 26, 2024
CVE-2024-43904
5.5

This CVE describes a null pointer dereference vulnerability in the AMD display driver within the Linux kernel. If exploited, it could cause a kernel c...

Aug 26, 2024
CVE-2024-43906
5.5

This CVE-2024-43906 is a NULL pointer dereference vulnerability in the AMD GPU driver (drm/amdgpu) in the Linux kernel. When user space provides an in...

Aug 26, 2024
CVE-2024-43886
5.5

A null pointer dereference vulnerability in the AMD display driver component of the Linux kernel allows local attackers to cause a kernel panic or sys...

Aug 26, 2024
CVE-2022-48942
5.5

A NULL pointer dereference vulnerability in the Linux kernel's hardware monitoring (hwmon) subsystem occurs when sensor registration with a thermal zo...

Aug 22, 2024
CVE-2022-48918
5.5

A NULL pointer dereference vulnerability in the Linux kernel's iwlwifi driver allows local attackers to cause a kernel panic (denial of service) when ...

Aug 22, 2024
CVE-2023-52899
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's AXI DMA driver. When exceptional conditions occur, the axi_chan_hand...

Aug 21, 2024
CVE-2023-52901
5.5

A NULL pointer dereference vulnerability in the Linux kernel's xHCI USB driver allows local attackers to cause a kernel panic and system crash when th...

Aug 21, 2024
CVE-2023-52908
5.5

This CVE describes a NULL pointer dereference vulnerability in the AMD GPU driver within the Linux kernel. If exploited, it could cause a kernel panic...

Aug 21, 2024
CVE-2022-48894
5.5

A vulnerability in the Linux kernel's ARM SMMUv3 IOMMU driver where improper shutdown handling could cause NULL pointer dereferences. This affects sys...

Aug 21, 2024
CVE-2022-48875
5.5

A race condition vulnerability in the Linux kernel's WiFi subsystem (mac80211) where a NULL pointer dereference can occur during AMPDU session handlin...

Aug 21, 2024
CVE-2024-43875
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's PCI endpoint subsystem. The flaw occurs in the vpci_scan_bus() funct...

Aug 21, 2024
CVE-2024-43860
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's remoteproc driver for i.MX processors. The vulnerability occurs when...

Aug 17, 2024
CVE-2024-43836
5.5

This CVE describes a null pointer dereference vulnerability in the Linux kernel's ethtool PSE-PD subsystem. When a Power Sourcing Equipment (PSE) supp...

Aug 17, 2024
CVE-2024-43818
5.5

A NULL pointer dereference vulnerability in the Linux kernel's ASoC AMD driver occurs when acpi_get_first_physical_node() returns NULL, but the code d...

Aug 17, 2024
CVE-2024-43824
5.5

This CVE addresses a NULL pointer dereference vulnerability in the Linux kernel's PCI endpoint framework test function. The issue could cause kernel p...

Aug 17, 2024
CVE-2024-43827
5.5

This CVE addresses a null pointer dereference vulnerability in the AMD display driver component of the Linux kernel. If exploited, it could cause kern...

Aug 17, 2024
CVE-2024-43829
5.5

This CVE addresses a NULL pointer dereference vulnerability in the Linux kernel's QXL graphics driver. If the drm_cvt_mode() function fails and return...

Aug 17, 2024
CVE-2024-43816
5.5

A memory corruption vulnerability in the Linux kernel's lpfc SCSI driver could cause kernel crashes on big-endian systems when accessing zoned FCP tar...

Aug 17, 2024
CVE-2024-42298
5.5

This CVE describes a NULL pointer dereference vulnerability in the Linux kernel's fsl_qmc_audio driver. If devm_kasprintf() fails and returns NULL, th...

Aug 17, 2024
CVE-2024-42307
5.5

This CVE describes a null pointer dereference vulnerability in the Linux kernel's CIFS/SMB client implementation. During error handling in the init_ci...

Aug 17, 2024
CVE-2024-42309
5.5

This CVE describes a null pointer dereference vulnerability in the Linux kernel's drm/gma500 graphics driver. If exploited, it could cause a kernel pa...

Aug 17, 2024
CVE-2024-42286
5.5

A NULL pointer dereference vulnerability in the Linux kernel's QLogic Fibre Channel driver (qla2xxx) can cause kernel crashes when NVMe over Fabrics r...

Aug 17, 2024
CVE-2024-42270
5.5

A race condition in the Linux kernel's netfilter iptables NAT module allows a null pointer dereference during system boot when iptables-restore is cal...

Aug 17, 2024
CVE-2024-42277
5.5

A NULL pointer dereference vulnerability in the Linux kernel's Spreadtrum IOMMU driver allows local attackers to cause a kernel panic or system crash....

Aug 17, 2024
CVE-2024-42266
5.5

A race condition vulnerability in the Linux kernel's Btrfs filesystem can cause a kernel panic when handling write errors. This affects systems using ...

Aug 17, 2024

About NULL Pointer Dereference (CWE-476)

A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.

Our database tracks 1,267 CVEs classified as CWE-476, with 23 rated critical and 316 rated high severity. The average CVSS score for NULL Pointer Dereference vulnerabilities is 6.1.

External reference: View CWE-476 on MITRE CWE →

Monitor NULL Pointer Dereference Vulnerabilities

Get alerted when new NULL Pointer Dereference CVEs affect your infrastructure.

Start Monitoring Free