CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
Parent: CWE-834 - Excessive Iteration
The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.
887 vulnerabilities with CWE-835
CVE-2023-2593
MEDIUM
Red Hat Enterprise Linux - Denial of Service via TCP Connection Handling
CVSS 5.9
CVE-2023-53133
MEDIUM
Linux Kernel - Denial of Service via Infinite Loop in tcp_bpf_recvmsg_parser
CVSS 5.5
CVE-2023-53089
MEDIUM
Linux Kernel < 4.14.311 - Denial of Service via Infinite Loop in ext4_xattr_delete_inode
CVSS 5.5
CVE-2023-53051
MEDIUM
Linux Kernel 4.0-4.14.312 - Denial of Service via Infinite Loop in dmcrypt_write
CVSS 5.5
CVE-2023-53026
MEDIUM
Linux Kernel 5.2-5.4.231 - Infinite Loop via DMA Block Iterator Counter Overflow
CVSS 5.5
CVE-2023-50763
MEDIUM
SIMATIC CP 1542SP-1, CP 1543SP-1 < V2.3 - Authenticated DoS via PKCS12 Import
CVSS 4.9
CVE-2023-52726
MEDIUM
onos-ric-sdk-go 0.8.12 - Denial of Service via Infinite Loop in Subscribe Function
CVSS 6.5
CVE-2023-52635
MEDIUM
Linux Kernel < 5.10.210 - Denial of Service via Devfreq Monitor Timer Corruption
CVSS 5.5
CVE-2023-51890
HIGH
Mathtex < 1.05 - Denial of Service via Crafted URL String
CVSS 7.5
CVE-2023-45233
HIGH
EDK2 < 202311 - Denial of Service via IPv6 Destination Options Header PadN Parsing
CVSS 7.5
CVE-2023-45232
HIGH
EDK2 < 202311 - Infinite Loop in IPv6 Destination Options Header Parsing
CVSS 7.5
CVE-2023-0437
MEDIUM
MongoDB C Driver < 1.25.0 - Denial of Service via Infinite Loop in bson_utf8_validate
CVSS 5.3
CVE-2023-50120
MEDIUM
GPAC 2.3-DEV-rev636-gfbd7e13aa-master - Denial of Service via Infinite Loop in av1_uvlc Function
CVSS 5.5
CVE-2023-47997
MEDIUM
FreeImage 3.18.0 - Denial of Service via Infinite Loop in BitmapAccess.cpp
CVSS 6.5
CVE-2023-43511
HIGH
Qualcomm WLAN Firmware - Denial of Service via IPv6 Extension Header Parsing
CVSS 7.5
CVE-2023-50570
MEDIUM
seancfoley/ipaddress 5.1.0 - Denial of Service via Infinite Loop in IPAddressBitsDivision
CVSS 5.5
CVE-2023-51075
HIGH
hutool < 5.8.24 - Denial of Service via StrSplitter.splitByRegex Infinite Loop
CVSS 7.5
CVE-2023-50981
HIGH
Crypto++ < 8.9.0 - Denial of Service via ModularSquareRoot Infinite Loop
CVSS 7.5
CVE-2023-6245
HIGH
Candid 0.9.0-0.9.9 - Denial of Service via Empty Data Type Parsing
CVSS 7.5
CVE-2023-40458
HIGH
Sierra Wireless ALEOS < 4.9.8 - Denial of Service via ACEManager Infinite Loop
CVSS 7.5
CVE-2023-42815
LOW
Kyverno - Denial of Service via Malicious Notary Verifier Response
CVSS 3.1
CVE-2023-42814
LOW
Kyverno - Denial of Service in Notary Verifier
CVSS 3.1
CVE-2023-46737
LOW
sigstore/cosign < 2.2.1 - Denial of Service via High Number of Attestations
CVSS 3.1
CVE-2023-5825
MEDIUM
GitLab 16.2-16.3.5, 16.4-16.4.1, 16.5 - Denial of Service via CI/CD Component Path Manipulation
CVSS 6.5
CVE-2023-20083
HIGH
Cisco Firepower Threat Defense 6.2.3-6.2.3.18 - Unauthenticated Denial of Service via ICMPv6 Header Parsing
CVSS 8.6
Details
Vulnerabilities
887