CWE-835

Loop with Unreachable Exit Condition ('Infinite Loop')

Parent: CWE-834 - Excessive Iteration

The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.

887 vulnerabilities with CWE-835
CVE-2021-37623 MEDIUM
exiv2 < 0.27.4 - Denial of Service via Crafted Image File Metadata Deletion
CVSS 5.5
CVE-2021-34334 MEDIUM
exiv2 < 0.27.5 - Denial of Service via Crafted Image File
CVSS 5.5
CVE-2021-3679 MEDIUM
Linux Kernel < 5.14 - Authenticated Denial of Service via Trace Ring Buffer Resource Starvation
CVSS 5.5
CVE-2021-22235 HIGH
Wireshark 3.2.0-3.2.14 and 3.4.0-3.4.6 - Denial of Service in DNP Dissector
CVSS 7.5
CVE-2021-34332 MEDIUM
Siemens JT2Go and Teamcenter Visualization < 13.2.0 - Denial of Service via BMP File Parsing
CVSS 5.5
CVE-2021-35515 HIGH
Apache Commons Compress 1.6-1.19 - Denial of Service via Crafted 7Z Archive
CVSS 7.5
CVE-2021-36125 HIGH
MediaWiki < 1.36 - Denial of Service via Special:GlobalRenameRequest Infinite Loop
CVSS 7.5
CVE-2021-21279 HIGH
contiki-ng < 4.6 - Denial of Service via IPv6 Neighbor Solicitation Message Processing
CVSS 7.5
CVE-2021-30468 HIGH
Apache CXF < 3.3.11 and 3.4.0-3.4.4 - Denial of Service via Malformed JSON
CVSS 7.5
CVE-2021-31812 MEDIUM
Apache PDFBox 2.0.0-2.0.23 - Denial of Service via Infinite Loop
CVSS 5.5
CVE-2021-22222 HIGH
Wireshark 3.4.0-3.4.5 - Denial of Service via DVB-S2-BB Dissector Infinite Loop
CVSS 7.5
CVE-2021-3468 MEDIUM
avahi 0.6-0.8 - Denial of Service via Client Connection Termination Event
CVSS 5.5
CVE-2021-28676 HIGH
Pillow < 8.2.0 - Denial of Service via FLI Block Advance Infinite Loop
CVSS 7.5
CVE-2021-33194 HIGH
golang.org/x/net <0.0.0-20210520170846-37e1c6afe023 - DoS
CVSS 7.5
CVE-2021-29591 HIGH
TensorFlow < 2.1.4 - Denial of Service via Infinite Loop in TFlite Graph Evaluation
CVSS 7.3
CVE-2021-29510 LOW
pydantic < 1.6.2 - Denial of Service via Infinite Loop in DateTime Validation
CVSS 3.3
CVE-2021-27385 HIGH
SIMATIC WinCC Runtime Advanced < V16 Update 4 - Denial of Service via SmartVNC Device Layout Handler
CVSS 7.5
CVE-2021-23009 HIGH
BIG-IP 15.1.0-15.1.2 - Denial of Service via Malformed HTTP/2 Request
CVSS 7.5
CVE-2021-29486 HIGH
cumulative-distribution-function < 2.0.0 - Denial of Service via Infinite Loop on Non-Numeric Data
CVSS 7.5
CVE-2021-29482 HIGH
XZ < 0.5.8 - Infinite Loop
CVSS 7.5
CVE-2021-3508 MEDIUM
PDFResurrect <0.22b - Buffer Overflow
CVSS 5.5
CVE-2021-25664 HIGH
Siemens Capital VSTAR and Nucleus - Denial of Service via IPv6 Hop-by-Hop Extension Header
CVSS 7.5
CVE-2021-25663 HIGH
Siemens Capital VSTAR and Nucleus - Denial of Service via IPv6 Extension Header Length Mismanagement
CVSS 7.5
CVE-2021-0273 MEDIUM
Juniper Junos OS and Junos OS Evolved - Denial of Service via Infinite Loop in Trio Chipset PFE UCODE
CVSS 5.3
CVE-2021-28484 HIGH
Yubico yubihsm-connector < 3.0.1 - Denial of Service via /api/connector Endpoint
CVSS 7.5
Details
Vulnerabilities 887