CWE-170: Improper Null Termination
The product does not terminate or incorrectly terminates a string or array with a null character or equivalent terminator.
52 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2026-8721 — Crypt::OpenSSL::PKCS12 versions through 1.94 for Perl truncates passwords with embedded NULLs
- CVE-2026-5067 — Out-of-bounds read/write in HTTP WebSocket upgrade via non-null-terminated Sec-WebSocket-Key
- CVE-2026-34464 — Sandboxie-Plus NamedPipeServer OpenHandler stack overflow via unterminated server field
- CVE-2026-55738 — Stack Buffer Overflow in rxi/microtar raw_to_header() via non-null-terminated TAR name field
- CVE-2025-2026 — The NPort 6100-G2/6200-G2 Series is affected by a high-severity vulnerability (CVE-2025-2026) that allows remote attacke
- CVE-2025-62792 — Wazuh vulnerable to Heap-based Buffer Over-read in w_expression_match
- CVE-2026-45798 — Wazuh: Pre-auth stack-buffer-overflow in compare_wazuh_versions reachable from wazuh-authd (TCP/1515) via crafted enrollment V: field
- CVE-2026-24852 — iccDEV has a heap-buffer-overflow in icXmlParseTextString()
- CVE-2026-21488 — iccDEV has Out-of-bounds Read, Heap-based Buffer Overflow and Improper Null Termination
- CVE-2026-34462 — Sandboxie-Plus ProcessServer boxname stack buffer overflows via unterminated wide string copy
- CVE-2026-42010 — Gnutls: gnutls: authentication bypass via nul character in username
- CVE-2026-73324 — VLC media player 3.0.0 through 3.0.23 Heap Out-of-Bounds Read via Unterminated RealRTSP Response Line
- CVE-2025-61912 — python-ldap Vulnerable to Improper Encoding or Escaping of Output and Improper Null Termination
- CVE-2026-44452 — h2o is vulnerable to heap overrun
- CVE-2026-34032 — Apache HTTP Server: mod_proxy_ajp: Heap Buffer Over-Read Due to Missing Null-Termination Check (ajp_msg_get_string)
- CVE-2026-32837 — mackron / miniaudio Out-of-Bounds Read in BEXT Coding History Parsing
- CVE-2025-66220 — Envoy’s TLS certificate matcher for `match_typed_subject_alt_names` may incorrectly treat certificates containing an embedded null byte
- CVE-2026-12386 — Buffer Overflow in TUBITAK BILGEM's Pardus Pen
- CVE-2026-40334 — libgphoto2 missing null termination in ptp_unpack_Canon_FE() filename buffer in ptp-pack.c
- CVE-2026-2239 — Gimp: gimp: application crash (dos) via crafted psd file due to heap-buffer-overflow
Recently published
- CVE-2026-73324 — VLC media player 3.0.0 through 3.0.23 Heap Out-of-Bounds Read via Unterminated RealRTSP Response Line
- CVE-2026-45798 — Wazuh: Pre-auth stack-buffer-overflow in compare_wazuh_versions reachable from wazuh-authd (TCP/1515) via crafted enrollment V: field
- CVE-2026-44452 — h2o is vulnerable to heap overrun
- CVE-2026-12386 — Buffer Overflow in TUBITAK BILGEM's Pardus Pen
- CVE-2026-55738 — Stack Buffer Overflow in rxi/microtar raw_to_header() via non-null-terminated TAR name field
- CVE-2026-5067 — Out-of-bounds read/write in HTTP WebSocket upgrade via non-null-terminated Sec-WebSocket-Key
- CVE-2026-8721 — Crypt::OpenSSL::PKCS12 versions through 1.94 for Perl truncates passwords with embedded NULLs
- CVE-2026-42010 — Gnutls: gnutls: authentication bypass via nul character in username
- CVE-2026-34464 — Sandboxie-Plus NamedPipeServer OpenHandler stack overflow via unterminated server field
- CVE-2026-34462 — Sandboxie-Plus ProcessServer boxname stack buffer overflows via unterminated wide string copy
- CVE-2026-34032 — Apache HTTP Server: mod_proxy_ajp: Heap Buffer Over-Read Due to Missing Null-Termination Check (ajp_msg_get_string)
- CVE-2026-40334 — libgphoto2 missing null termination in ptp_unpack_Canon_FE() filename buffer in ptp-pack.c
- CVE-2026-33948 — jq: Embedded-NUL Truncation in CLI JSON Input Path Causes Prefix-Only Validation of Malformed Input
- CVE-2026-2239 — Gimp: gimp: application crash (dos) via crafted psd file due to heap-buffer-overflow
- CVE-2026-32837 — mackron / miniaudio Out-of-Bounds Read in BEXT Coding History Parsing
- CVE-2026-23749 — Golioth Firmware SDK < 0.22.0 Blockwise Transfer Path Out-of-Bounds Read
- CVE-2026-24852 — iccDEV has a heap-buffer-overflow in icXmlParseTextString()
- CVE-2026-21488 — iccDEV has Out-of-bounds Read, Heap-based Buffer Overflow and Improper Null Termination
- CVE-2025-2026 — The NPort 6100-G2/6200-G2 Series is affected by a high-severity vulnerability (CVE-2025-2026) that allows remote attacke
- CVE-2025-66220 — Envoy’s TLS certificate matcher for `match_typed_subject_alt_names` may incorrectly treat certificates containing an embedded null byte