CWE-835

Loop with Unreachable Exit Condition ('Infinite Loop')

Parent: CWE-834 - Excessive Iteration

The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.

887 vulnerabilities with CWE-835
CVE-2019-19643 HIGH
ise smart connect KNX Vaillant <1.2.839 - DoS
CVSS 7.5
CVE-2019-20911 MEDIUM
GNU LibreDWG < 0.9.3 - Denial of Service via Infinite Loop in bit_calc_CRC
CVSS 6.5
CVE-2019-20907 HIGH
Python < 3.5.10 - Denial of Service via Crafted TAR Archive
CVSS 7.5
CVE-2019-19506 HIGH
Tenda PA6 Wi-Fi Powerline extender 1.0.1.21 - DoS
CVSS 7.5
CVE-2019-8741 HIGH
iCloud < 7.14 - Denial of Service via Infinite Loop
CVSS 7.5
CVE-2019-20421 HIGH
Exiv2 0.27.2 - Denial of Service via Infinite Loop in Jp2Image::readMetadata()
CVSS 7.5
CVE-2019-20201 MEDIUM
ezxml 0.8.3-0.8.6 - Denial of Service via XML Entity Parsing
CVSS 6.5
CVE-2019-5274 HIGH
USG9500 <V500R001C30;V500R001C60 - DoS
CVSS 7.5
CVE-2019-10485 HIGH
Qualcomm Snapdragon - Infinite Loop Denial of Service via Compressed Data Decoding
CVSS 7.5
CVE-2019-5091 HIGH
LEADTOOLS libltdic.so <20.0.2019.3.15 - DoS
CVSS 7.5
CVE-2019-19582 MEDIUM
Xen 4.8.0-4.12.0 - Denial of Service via Bitmap Bit Iteration
CVSS 6.5
CVE-2019-18180 MEDIUM
OTRS 5.0.0-5.0.38 and 7.0.0-7.0.12 - Denial of Service via Long Filename Extension
CVSS 5.3
CVE-2019-19588 HIGH
Validators <0.12.6 - Info Disclosure
CVSS 7.5
CVE-2019-5097 HIGH
GoAhead <v5.0.1, v4.1.1, v3.6.5 - DoS
CVSS 7.5
CVE-2019-19451 MEDIUM
GNOME Dia <2019-11-27 - Info Disclosure
CVSS 5.5
CVE-2019-18455 HIGH
GitLab 11.0.0-12.4.0 - Denial of Service via Nested GraphQL Query Loop
CVSS 7.5
CVE-2019-19307 CRITICAL
Cesanta Mongoose 6.16 - Remote Denial of Service via Crafted MQTT Packet
CVSS 9.8
CVE-2019-2335 HIGH
Qualcomm Snapdragon Firmware - Denial of Service via Infinite Loop in Attach Reject Message Processing
CVSS 7.5
CVE-2019-18817 HIGH
Istio 1.3.0-1.3.4 - Denial of Service via Listener Filter Timeout Configuration
CVSS 7.5
CVE-2019-18836 HIGH
Envoy 1.12.0 - Denial of Service via Resource Loop with continue_on_listener_filters_timeout
CVSS 7.5
CVE-2019-0205 HIGH
Apache Thrift <= 0.12.0 - Denial of Service via Infinite Loop
CVSS 7.5
CVE-2019-18217 HIGH
ProFTPD < 1.3.6b and 1.3.7rc < 1.3.7rc2 - Unauthenticated Denial of Service via Long Command Handling
CVSS 7.5
CVE-2019-17349 MEDIUM
Xen < 4.12.1 - Denial of Service via LoadExcl or StoreExcl Operation
CVSS 5.5
CVE-2019-17350 MEDIUM
Xen < 4.12.1 - Denial of Service via Compare-and-Exchange Operation
CVSS 5.5
CVE-2019-12068 LOW
QEMU - Denial of Service via Infinite Loop in LSI SCSI Adapter Emulator
CVSS 3.8
Details
Vulnerabilities 887