CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
Parent: CWE-834 - Excessive Iteration
The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.
887 vulnerabilities with CWE-835
CVE-2021-37623
MEDIUM
exiv2 < 0.27.4 - Denial of Service via Crafted Image File Metadata Deletion
CVSS 5.5
CVE-2021-34334
MEDIUM
exiv2 < 0.27.5 - Denial of Service via Crafted Image File
CVSS 5.5
CVE-2021-3679
MEDIUM
Linux Kernel < 5.14 - Authenticated Denial of Service via Trace Ring Buffer Resource Starvation
CVSS 5.5
CVE-2021-22235
HIGH
Wireshark 3.2.0-3.2.14 and 3.4.0-3.4.6 - Denial of Service in DNP Dissector
CVSS 7.5
CVE-2021-34332
MEDIUM
Siemens JT2Go and Teamcenter Visualization < 13.2.0 - Denial of Service via BMP File Parsing
CVSS 5.5
CVE-2021-35515
HIGH
Apache Commons Compress 1.6-1.19 - Denial of Service via Crafted 7Z Archive
CVSS 7.5
CVE-2021-36125
HIGH
MediaWiki < 1.36 - Denial of Service via Special:GlobalRenameRequest Infinite Loop
CVSS 7.5
CVE-2021-21279
HIGH
contiki-ng < 4.6 - Denial of Service via IPv6 Neighbor Solicitation Message Processing
CVSS 7.5
CVE-2021-30468
HIGH
Apache CXF < 3.3.11 and 3.4.0-3.4.4 - Denial of Service via Malformed JSON
CVSS 7.5
CVE-2021-31812
MEDIUM
Apache PDFBox 2.0.0-2.0.23 - Denial of Service via Infinite Loop
CVSS 5.5
CVE-2021-22222
HIGH
Wireshark 3.4.0-3.4.5 - Denial of Service via DVB-S2-BB Dissector Infinite Loop
CVSS 7.5
CVE-2021-3468
MEDIUM
avahi 0.6-0.8 - Denial of Service via Client Connection Termination Event
CVSS 5.5
CVE-2021-28676
HIGH
Pillow < 8.2.0 - Denial of Service via FLI Block Advance Infinite Loop
CVSS 7.5
CVE-2021-33194
HIGH
golang.org/x/net <0.0.0-20210520170846-37e1c6afe023 - DoS
CVSS 7.5
CVE-2021-29591
HIGH
TensorFlow < 2.1.4 - Denial of Service via Infinite Loop in TFlite Graph Evaluation
CVSS 7.3
CVE-2021-29510
LOW
pydantic < 1.6.2 - Denial of Service via Infinite Loop in DateTime Validation
CVSS 3.3
CVE-2021-27385
HIGH
SIMATIC WinCC Runtime Advanced < V16 Update 4 - Denial of Service via SmartVNC Device Layout Handler
CVSS 7.5
CVE-2021-23009
HIGH
BIG-IP 15.1.0-15.1.2 - Denial of Service via Malformed HTTP/2 Request
CVSS 7.5
CVE-2021-29486
HIGH
cumulative-distribution-function < 2.0.0 - Denial of Service via Infinite Loop on Non-Numeric Data
CVSS 7.5
CVE-2021-29482
HIGH
XZ < 0.5.8 - Infinite Loop
CVSS 7.5
CVE-2021-3508
MEDIUM
PDFResurrect <0.22b - Buffer Overflow
CVSS 5.5
CVE-2021-25664
HIGH
Siemens Capital VSTAR and Nucleus - Denial of Service via IPv6 Hop-by-Hop Extension Header
CVSS 7.5
CVE-2021-25663
HIGH
Siemens Capital VSTAR and Nucleus - Denial of Service via IPv6 Extension Header Length Mismanagement
CVSS 7.5
CVE-2021-0273
MEDIUM
Juniper Junos OS and Junos OS Evolved - Denial of Service via Infinite Loop in Trio Chipset PFE UCODE
CVSS 5.3
CVE-2021-28484
HIGH
Yubico yubihsm-connector < 3.0.1 - Denial of Service via /api/connector Endpoint
CVSS 7.5
Details
Vulnerabilities
887