CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
Parent: CWE-834 - Excessive Iteration
The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.
825 vulnerabilities with CWE-835
CVE-2021-28676
HIGH
Pillow < 8.2.0 - Denial of Service via FLI Block Advance Infinite Loop
CVSS 7.5
CVE-2021-33194
HIGH
golang.org/x/net <0.0.0-20210520170846-37e1c6afe023 - DoS
CVSS 7.5
CVE-2021-29591
HIGH
TensorFlow < 2.1.4 - Denial of Service via Infinite Loop in TFlite Graph Evaluation
CVSS 7.3
CVE-2021-29510
LOW
pydantic < 1.6.2 - Denial of Service via Infinite Loop in DateTime Validation
CVSS 3.3
CVE-2021-27385
HIGH
SIMATIC WinCC Runtime Advanced < V16 Update 4 - Denial of Service via SmartVNC Device Layout Handler
CVSS 7.5
CVE-2021-23009
HIGH
BIG-IP 15.1.0-15.1.2 - Denial of Service via Malformed HTTP/2 Request
CVSS 7.5
CVE-2021-29486
HIGH
cumulative-distribution-function < 2.0.0 - Denial of Service via Infinite Loop on Non-Numeric Data
CVSS 7.5
CVE-2021-29482
HIGH
XZ < 0.5.8 - Infinite Loop
CVSS 7.5
CVE-2021-3508
MEDIUM
PDFResurrect <0.22b - Buffer Overflow
CVSS 5.5
CVE-2021-25664
HIGH
Siemens Capital VSTAR and Nucleus - Denial of Service via IPv6 Hop-by-Hop Extension Header
CVSS 7.5
CVE-2021-25663
HIGH
Siemens Capital VSTAR and Nucleus - Denial of Service via IPv6 Extension Header Length Mismanagement
CVSS 7.5
CVE-2021-0273
MEDIUM
Juniper Junos OS and Junos OS Evolved - Denial of Service via Infinite Loop in Trio Chipset PFE UCODE
CVSS 5.3
CVE-2021-28484
HIGH
Yubico yubihsm-connector < 3.0.1 - Denial of Service via /api/connector Endpoint
CVSS 7.5
CVE-2021-1252
HIGH
ClamAV 0.103.0 and 0.103.1 - Denial of Service via Excel XLM Macro Parsing
CVSS 7.5
CVE-2021-22197
LOW
GitLab 10.6.0-13.8.6 - Authenticated Denial of Service via Merge Request Infinite Loop
CVSS 3.5
CVE-2021-28657
MEDIUM
Apache Tika <= 1.25 - Denial of Service via MP3 Parser Infinite Loop
CVSS 5.5
CVE-2021-20270
HIGH
Pygments 1.5-2.7.3 - Denial of Service via SMLLexer Infinite Loop
CVSS 7.5
CVE-2021-3416
MEDIUM
QEMU <= 5.2.0 - Denial of Service via Infinite Loop in NIC Emulator
CVSS 6.0
CVE-2021-28667
HIGH
StackStorm < 3.4.1 - Denial of Service via Unicode Logging in Non-UTF-8 Locale
CVSS 7.5
CVE-2021-25673
MEDIUM
SIMATIC S7-PLCSIM V5.4 - Denial of Service via Crafted File
CVSS 5.5
CVE-2021-27918
HIGH
Go <1.15.9, <1.16.1 - Infinite Loop
CVSS 7.5
CVE-2021-20255
MEDIUM
QEMU - Denial of Service via eepro100 i8255x Device Emulator Recursion
CVSS 5.5
CVE-2021-22161
MEDIUM
OpenWrt 19.07.0-19.07.6 - Denial of Service via IPv6 Routing Loop
CVSS 6.5
CVE-2021-0221
MEDIUM
Juniper Junos OS - Denial of Service via EVPN/VXLAN IP Multicast Traffic Loop
CVSS 6.5
CVE-2021-21235
MEDIUM
kamadak-exif <0.5.2 - Buffer Overflow
CVSS 5.7
Details
Vulnerabilities
825