CWE-835

Loop with Unreachable Exit Condition ('Infinite Loop')

Parent: CWE-834 - Excessive Iteration

The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.

887 vulnerabilities with CWE-835
CVE-2022-23437 MEDIUM
Apache Xerces-J < 2.12.1 - Denial of Service via Infinite Loop in XML Parser
CVSS 6.5
CVE-2021-47617 MEDIUM
Linux kernel 4.19.149-4.19.233 - Infinite Loop in PCIe Hotplug IRQ Handler
CVSS 5.5
CVE-2021-47448 MEDIUM
Linux Kernel 5.6-5.14.14 - Denial of Service via MPTCP recvmsg Infinite Loop
CVSS 5.5
CVE-2021-47406 MEDIUM
Linux Kernel 5.10-5.10.70 - Infinite Loop in ext4_ext_replay_set_iblocks
CVSS 5.5
CVE-2021-47159 MEDIUM
Linux Kernel 4.7-4.19.193 - Denial of Service via Negative Error Code in DSA get_sset_count Loop
CVSS 5.5
CVE-2021-42143 CRITICAL
Contiki-NG tinyDTLS < 2018-08-30 - Denial of Service via Malformed ClientHello Cipher Suite Length
CVSS 9.1
CVE-2021-33294 MEDIUM
elfutils 0.183 - Denial of Service via Infinite Loop in handle_symtab
CVSS 5.5
CVE-2021-33642 MEDIUM
byacc < 1.9.20200330 - Denial of Service via Infinite Loop in more_curly()
CVSS 5.5
CVE-2021-37819 HIGH
pdftk-java 3.2.3 - Denial of Service via Infinite Loop in PdfReader
CVSS 7.5
CVE-2021-44718 MEDIUM
wolfssl < 5.0.0 - Denial of Service via TLS Message Spoofing
CVSS 5.9
CVE-2021-46828 HIGH
libtirpc < 1.3.3 - Denial of Service via TCP Connection Mishandling
CVSS 7.5
CVE-2021-40592 MEDIUM
GPAC < 1.0.1 - Denial of Service via Infinite Loop in ISOBMFF Reader
CVSS 5.5
CVE-2021-20257 MEDIUM
QEMU < 6.2.0 - Denial of Service via e1000 NIC Emulator Infinite Loop
CVSS 6.5
CVE-2021-3737 HIGH
Python >=3.6.0 <3.6.14 - Denial of Service via HTTP Response Handling
CVSS 7.5
CVE-2021-23567 HIGH
colors.js > 1.4.0 - Denial of Service via Infinite Loop in americanFlag Module
CVSS 7.5
CVE-2021-45445 HIGH
Unisys ClearPath MCP TCP/IP Networking Services 59.1, 60.0, and 62.0 - Infinite Loop
CVSS 7.5
CVE-2021-40111 MEDIUM
Apache James < 3.6.1 - Authenticated Denial of Service via Crafted IMAP APPEND and STATUS Commands
CVSS 6.5
CVE-2021-4185 HIGH
Wireshark 3.4.0-3.4.10 and 3.6.0 - Denial of Service via RTMPT Dissector Infinite Loop
CVSS 7.5
CVE-2021-4184 HIGH
Wireshark 3.4.0-3.4.10 and 3.6.0 - Denial of Service via BitTorrent DHT Dissector Infinite Loop
CVSS 7.5
CVE-2021-4182 HIGH
Wireshark 3.4.0-3.4.10 and 3.6.0 - Denial of Service via RFC 7468 Dissector
CVSS 7.5
CVE-2021-45257 MEDIUM
NASM 2.16rc0 - Infinite Loop via gpaste_tokens Function
CVSS 5.5
CVE-2021-44924 MEDIUM
gpac 1.1.0 - Denial of Service via Infinite Loop in gf_log
CVSS 5.5
CVE-2021-45297 MEDIUM
Gpac 1.0.1 - Infinite Loop in gf_get_bit_size
CVSS 5.5
CVE-2021-4044 HIGH
OpenSSL 3.0.0 - Infinite Loop via Certificate Verification Error Handling
CVSS 7.5
CVE-2021-20041 HIGH
SonicWall SMA 200/210/400/410/500v Firmware - Unauthenticated Denial of Service via Crafted HTTP Requests
CVSS 7.5
Details
Vulnerabilities 887