CWE-822 非可信指针解引用 类弱点 172 条 CVE 漏洞汇总,含 AI 中文分析。
CWE-822 属于不信任指针解引用漏洞,指程序将不可信来源的值转换为指针并直接解引用。攻击者通过构造恶意指针,指向非预期的内存位置,若用于写入操作,可导致关键状态变量被篡改、程序崩溃或远程代码执行。开发者应严格验证指针来源,确保其指向合法且受控的内存区域,避免直接解引用外部输入数据,从而消除此类安全风险。
| CVE ID | 标题 | CVSS | 风险等级 | Published |
|---|---|---|---|---|
| CVE-2025-47408 | 电源优化固件不受信任指针解引用漏洞 — Snapdragon | 7.8 | High | 2026-05-04 |
| CVE-2025-47405 | Camera Untrusted Pointer Dereference 漏洞 — Snapdragon | 7.8 | High | 2026-05-04 |
| CVE-2026-33114 | Microsoft Word 安全漏洞 — Microsoft 365 Apps for Enterprise | 8.4 | High | 2026-04-14 |
| CVE-2026-32077 | Microsoft Windows 安全漏洞 — Windows 10 Version 1607 | 7.8 | High | 2026-04-14 |
| CVE-2026-27920 | Microsoft Windows 安全漏洞 — Windows 10 Version 1607 | 7.8 | High | 2026-04-14 |
| CVE-2026-33120 | Microsoft SQL Server 安全漏洞 — Microsoft SQL Server 2022 (GDR) | 8.8 | High | 2026-04-14 |
| CVE-2026-32222 | Microsoft Win32k 安全漏洞 — Windows 11 Version 24H2 | 7.8 | High | 2026-04-14 |
| CVE-2026-27919 | Microsoft Windows 安全漏洞 — Windows 10 Version 1607 | 7.8 | High | 2026-04-14 |
| CVE-2026-26161 | Microsoft Windows 安全漏洞 — Windows 10 Version 1809 | 7.8 | High | 2026-04-14 |
| CVE-2026-23670 | Microsoft Windows Virtualization-Based Security Enclave 安全漏洞 — Windows 10 Version 1607 | 5.7 | Medium | 2026-04-14 |
| CVE-2026-26112 | Microsoft Excel 安全漏洞 — Microsoft 365 Apps for Enterprise | 7.8 | High | 2026-03-10 |
| CVE-2026-26113 | Microsoft Office 安全漏洞 — Microsoft 365 Apps for Enterprise | 8.4 | High | 2026-03-10 |
| CVE-2021-26410 | AMD Ryzen 安全漏洞 — AMD Ryzen™ 5000 Series Desktop Processors with Radeon™ Graphics | 5.5AI | MediumAI | 2026-02-10 |
| CVE-2026-21232 | Microsoft HTTP.sys 安全漏洞 — Windows 11 version 22H3 | 7.8 | High | 2026-02-10 |
| CVE-2026-21250 | Microsoft HTTP.sys 安全漏洞 — Windows 11 Version 24H2 | 7.8 | High | 2026-02-10 |
| CVE-2025-59959 | Juniper Networks Junos OS和Juniper Networks Junos OS Evolved 安全漏洞 — Junos OS | 5.5 | Medium | 2026-01-15 |
| CVE-2026-20948 | Microsoft Word 安全漏洞 — Microsoft 365 Apps for Enterprise | 7.8 | High | 2026-01-13 |
| CVE-2026-20935 | Microsoft Windows Virtualization-Based Security Enclave 安全漏洞 — Windows 11 version 22H3 | 6.2 | Medium | 2026-01-13 |
| CVE-2026-20956 | Microsoft Excel 安全漏洞 — Microsoft 365 Apps for Enterprise | 7.8 | High | 2026-01-13 |
| CVE-2026-20955 | Microsoft Excel 安全漏洞 — Microsoft 365 Apps for Enterprise | 7.8 | High | 2026-01-13 |
| CVE-2026-20940 | Microsoft Windows Cloud Files Mini Filter Driver 安全漏洞 — Windows 10 Version 1607 | 7.8 | High | 2026-01-13 |
| CVE-2026-20938 | Microsoft Windows Virtualization-Based Security Enclave 安全漏洞 — Windows 11 version 22H3 | 7.8 | High | 2026-01-13 |
| CVE-2026-20857 | Microsoft Windows Cloud Files Mini Filter Driver 安全漏洞 — Windows 10 Version 1809 | 7.8 | High | 2026-01-13 |
| CVE-2026-20819 | Microsoft Windows Virtualization-Based Security Enclave 安全漏洞 — Windows 11 version 22H3 | 5.5 | Medium | 2026-01-13 |
| CVE-2025-47380 | Qualcomm Chipsets 安全漏洞 — Snapdragon | 7.8 | High | 2026-01-06 |
| CVE-2025-47343 | Qualcomm Chipsets 安全漏洞 — Snapdragon | 7.8 | High | 2026-01-06 |
| CVE-2025-47387 | Qualcomm Chipsets 安全漏洞 — Snapdragon | 7.8 | High | 2025-12-18 |
| CVE-2025-47325 | Qualcomm Chipsets 安全漏洞 — Snapdragon | 6.5 | Medium | 2025-12-18 |
| CVE-2025-62560 | Microsoft Excel 安全漏洞 — Microsoft 365 Apps for Enterprise | 7.8 | High | 2025-12-09 |
| CVE-2025-62556 | Microsoft Excel 安全漏洞 — Microsoft 365 Apps for Enterprise | 7.8 | High | 2025-12-09 |
CWE-822(非可信指针解引用) 是常见的弱点类别,本平台收录该类弱点关联的 172 条 CVE 漏洞。