CWE-476Base1 in KEV

NULL Pointer Dereference

Stable in the CWE catalog · 1,679 CVEs mapped

1,679
CVEs mapped
1
In KEV
6.2
Median CVSS
What it is

The product dereferences a pointer that it expects to be valid but is NULL.

Recent examples
6.5cvss
CVE-2026-86097

CVE-2026-86097 - MEDIUM Severity Vulnerability

PX4 Autopilot through 1.17.0 contains a null pointer dereference vulnerability in param_set_default_file() and param_set_backup_file() functions that allows attackers to crash the autopilot process. Attackers can invoke 'param select' or 'param select-backup' commands with no path argument from any PX4 shell to trigger the crash.

MEDIUMno explanation yet
0%
epss
7.1cvss
CVE-2026-80118

CVE-2026-80118 - HIGH Severity Vulnerability

PassMark PerformanceTest before 11.1 build 1012, BurnInTest before 11.1 build 1000, and OSForensics before 11.1 build 1016 contain an unauthenticated physical memory disclosure in DirectIo64.sys, reachable by unprivileged local users through a single IOCTL with no caller-identity check. The handler writes a crash-dump-format (PAGEDU64) image of all physical memory to a caller-supplied file path in the SYSTEM context, allowing a standard user to create files in locations they cannot otherwise write and to recover memory belonging to processes of other users. The image is preceded by a header that exposes the kernel loaded-module list, active-process list and PFN database pointers, defeating KASLR. The same handler also dereferences the return value of an internal kernel-structure locator without a NULL check; that locator returns NULL on three distinct failure paths, and a kernel crash results on builds where any of those paths is taken.

HIGHno explanation yet
0%
epss
6.5cvss
CVE-2026-17273

CVE-2026-17273 - MEDIUM Severity Vulnerability

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to cause a denial of service due to a NULL pointer dereference.

MEDIUMno explanation yet
0%
epss
The record
Technical detail
CWE ID
CWE-476
Abstraction
Base
Structure
Simple
Status
Stable
References (7)