CWE-822 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Kategori: CWE-822 - CVE listesi
CWE 64 kayıt
High CVSS: 8.4

CVE-2024-36352

Improper input validation in the AMD Graphics Driver could allow an attacker to supply a specially crafted pointer, potentially leading to arbitrary writes or denial of service.
High CVSS: 7.8

CVE-2025-55230

Untrusted pointer dereference in Windows MBT Transport driver allows an authorized attacker to elevate privileges locally.
Critical CVSS: 9.8

CVE-2025-50165

Untrusted pointer dereference in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network.
Medium CVSS: 6.8

CVE-2025-20090

Untrusted Pointer Dereference for some Intel(R) QuickAssist Technology software before version 2.5.0 may allow an authenticated user to potentially enable denial of service via local access.
High CVSS: 7.8

CVE-2025-27069

Memory corruption while processing DDI command calls.
High CVSS: 7.8

CVE-2025-49661

Untrusted pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
High CVSS: 7.8

CVE-2025-47985

Untrusted pointer dereference in Windows Event Tracing allows an authorized attacker to elevate privileges locally.
High CVSS: 7.8

CVE-2025-21486

Memory corruption during dynamic process creation call when client is only passing address and length of shell binary.
Medium CVSS: 6.9

CVE-2025-20018

Untrusted pointer dereference for some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable escalation of privilege via local access.
High CVSS: 7.8

CVE-2025-29812

Untrusted pointer dereference in Windows Kernel Memory allows an authorized attacker to elevate privileges locally.
High CVSS: 7.8

CVE-2025-27747

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
High CVSS: 7.8

CVE-2025-27739

Untrusted pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally.
Medium CVSS: 6.1

CVE-2025-22464

An untrusted pointer dereference vulnerability in Ivanti Endpoint Manager before version 2024 SU1 or before version 2022 SU7 allows an attacker with local access to write arbitrary data into memory causing a denial-of-service condition.
High CVSS: 8.4

CVE-2025-24084

Untrusted pointer dereference in Windows Subsystem for Linux allows an unauthorized attacker to execute code locally.
High CVSS: 7.8

CVE-2025-24083

Untrusted pointer dereference in Microsoft Office allows an unauthorized attacker to execute code locally.
Medium CVSS: 5.5

CVE-2024-12576

Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger a crash of the FW running on the GPU freezing graphics output.
High CVSS: 7.8

CVE-2024-53034

Memory corruption occurs during an Escape call if an invalid Kernel Mode CPU event and sync object handle are passed with the DriverKnownEscape flag reset.
High CVSS: 7.8

CVE-2024-53033

Memory corruption while doing Escape call when user provides valid kernel address in the place of valid user buffer address.
Medium CVSS: 4.3

CVE-2023-32277

Untrusted Pointer Dereference in I/O subsystem for some Intel(R) QAT software before version 2.0.5 may allow authenticated user to potentially enable information disclosure via local operating system access.
High CVSS: 7.8

CVE-2025-21381

Microsoft Excel Remote Code Execution Vulnerability