CWE-835

Loop with Unreachable Exit Condition ('Infinite Loop')

Parent: CWE-834 - Excessive Iteration

The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.

825 vulnerabilities with CWE-835
CVE-2026-23472 MEDIUM
serial: core: fix infinite loop in handle_tx() for PORT_UNKNOWN
CVSS 5.5
CVE-2026-23451 HIGH
bonding: prevent potential infinite loop in bond_header_parse()
CVSS 7.5
CVE-2026-33891 HIGH
Forge has Denial of Service via Infinite Loop in BigInteger.modInverse() with Zero Input
CVSS 7.5
CVE-2026-33699 HIGH
pypdf: Possible infinite loop during recovery attempts in DictionaryObject.read_from_stream
CVSS 7.5
CVE-2026-32287 HIGH
Infinite loop in github.com/antchfx/xpath
CVSS 7.5
CVE-2026-23298 MEDIUM
can: ucan: Fix infinite loop from zero-length messages
CVSS 5.5
CVE-2026-4598 HIGH
jsrsasign < 11.1.1 - Denial of Service via Infinite Loop in bnModInverse
CVSS 7.5
CVE-2026-33013 HIGH
Micronaut vulnerable to DoS via crafted form-urlencoded body binding with descending array indices
CVSS 7.5
CVE-2026-32889 MEDIUM
tinytag: Denial of Service via non-terminating SYLT frame parsing loop
CVSS 6.5
CVE-2026-32875 HIGH
UltraJSON 5.10-5.11.0 Indent Handling - Integer Overflow Denial of Service
CVSS 7.5
CVE-2026-32873 HIGH
ewe: Loop with Unreachable Exit Condition ('Infinite Loop')
CVSS 7.5
CVE-2026-32256 HIGH
music-metadata <11.12.3 ASF Parser - Infinite Loop
CVSS 7.5
CVE-2026-4179 MEDIUM
stm32: usb: Infinite while loop in Interrupt Handler
CVSS 6.1
CVE-2026-32777 MEDIUM
libexpat < 2.7.5 - Denial of Service via Infinite Loop in DTD Parsing
CVSS 4.0
CVE-2026-4111 HIGH
Red Hat Enterprise Linux - Denial of Service via RAR5 Archive Decompression Infinite Loop
CVSS 7.5
CVE-2026-31808 MEDIUM
file-type 13.0.0-21.3.0 - Denial of Service via ASF Sub-Header Size Field
CVSS 5.3
CVE-2026-2219 HIGH
dpkg 1.21.18-1.23.6 - Denial of Service via Zstd Decompression Infinite Loop
CVSS 7.5
CVE-2026-20054 MEDIUM
Cisco Snort 3 - Unauthenticated Denial of Service via VBA Decompression
CVSS 5.8
CVE-2026-27628 HIGH
pypdf < 6.7.2 - Denial of Service via Infinite Loop
CVSS 7.5
CVE-2026-26283 MEDIUM
ImageMagick <7.1.2-15/<6.9.13-40 - DoS
CVSS 6.2
CVE-2026-26066 MEDIUM
ImageMagick <7.1.2-15/6.9.13-40 - DoS
CVSS 6.2
CVE-2026-27024 MEDIUM
pypdf < 6.7.1 - Denial of Service via Infinite Loop in TreeObject Children Access
CVSS 5.5
CVE-2026-2739 MEDIUM
bn.js <5.2.3 - DoS
CVSS 5.3
CVE-2026-27114 HIGH
NanaZip 5.0.1252.0-6.0.1630.0 - DoS
CVSS 7.5
CVE-2026-23220 MEDIUM
Linux Kernel - Infinite Loop via SMB2 Signature Verification Error Handling
CVSS 5.5
Details
Vulnerabilities 825