CWE-835

Loop with Unreachable Exit Condition ('Infinite Loop')

Parent: CWE-834 - Excessive Iteration

The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.

825 vulnerabilities with CWE-835
CVE-2023-3255 MEDIUM
QEMU < 8.0.3 - Authenticated Denial of Service via VNC ClientCutText Message Handling
CVSS 6.5
CVE-2023-4511 MEDIUM
Wireshark 3.6.0-3.6.15 4.0.0-4.0.7 - Denial of Service via BT SDP Dissector Infinite Loop
CVSS 5.3
CVE-2023-20200 HIGH
Cisco Firepower and UCS Fabric Interconnect Firmware - Authenticated Denial of Service via SNMP Request
CVSS 7.7
CVE-2023-20197 HIGH
Cisco Secure Endpoint - Denial of Service via HFS+ Filesystem Image Parser
CVSS 7.5
CVE-2023-30188 HIGH
ONLYOFFICE Document Server 4.0.3-7.3.2 - Denial of Service via Crafted JavaScript File
CVSS 7.5
CVE-2023-4010 MEDIUM
Linux Kernel - Denial of Service via USB Host Controller Driver Descriptor Handling
CVSS 4.6
CVE-2023-3748 LOW
FRRouting < 8.5 - Denial of Service via Malformed Babeld Unicast Hello Message
CVSS 3.5
CVE-2023-34966 HIGH
Samba < 4.16.11 - Denial of Service via Spotlight mdssvc RPC Packet Parsing
CVSS 7.5
CVE-2023-37748 MEDIUM
ngiflib - Denial of Service via Infinite Loop in DecodeGifImg
CVSS 5.5
CVE-2023-38197 HIGH
Qt <5.15.15, <6.2.10, <=6.5.3 - Info Disclosure
CVSS 7.5
CVE-2023-36807 MEDIUM
pypdf 2.10.5 - Denial of Service via Infinite Loop in PDF Metadata Extraction
CVSS 6.2
CVE-2023-20116 MEDIUM
Cisco Unified Communications Manager - Authenticated Denial of Service via AXL API Input Validation
CVSS 6.8
CVE-2023-36464 MEDIUM
pypdf < 3.9.0 - Denial of Service via Infinite Loop in Content Stream Parser
CVSS 6.2
CVE-2023-35933 MEDIUM
OpenFGA < 1.1.1 - Denial of Service via Circular Relationship Definitions
CVSS 5.9
CVE-2023-33305 MEDIUM
Fortinet FortiOS <7.2.4 & FortiProxy <7.2.3 - DoS
CVSS 4.9
CVE-2023-2952 MEDIUM
Wireshark 3.6.0-3.6.13 and 4.0.0-4.0.5 - Denial of Service via XRA Dissector Infinite Loop
CVSS 5.3
CVE-2023-2879 MEDIUM
Wireshark 3.6.0-3.6.13 and 4.0.0-4.0.5 - Denial of Service via GDSDB Packet Parsing Infinite Loop
CVSS 6.3
CVE-2023-30300 MEDIUM
WebAssembly 1.0 - Infinite Loop in hang.wasm Component
CVSS 5.5
CVE-2023-20999 MEDIUM
Android 13 - Denial of Service via Persistent Reboot Loop
CVSS 5.5
CVE-2023-20998 MEDIUM
Android 13 - Denial of Service via Persistent Reboot Loop
CVSS 5.5
CVE-2023-20997 MEDIUM
Android 13 - Denial of Service via Persistent Reboot Loop
CVSS 5.5
CVE-2023-20996 MEDIUM
Android 13 - Denial of Service via Persistent Reboot Loop
CVSS 5.5
CVE-2023-27560 HIGH
phpseclib 3.0.0-3.0.18 - Denial of Service via Infinite Loop in PrimeField
CVSS 7.5
CVE-2023-25824 HIGH
mod_gnutls 0.9.0-0.12.0 - Denial of Service via TLS Read Operation Timeout
CVSS 7.5
CVE-2023-25653 HIGH
node-jose < 2.2.0 - Denial of Service via ECC Operations in Fallback Crypto Backend
CVSS 7.5
Details
Vulnerabilities 825