CWE-835

Loop with Unreachable Exit Condition ('Infinite Loop')

Parent: CWE-834 - Excessive Iteration

The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.

829 vulnerabilities with CWE-835
CVE-2015-8903 MEDIUM
ImageMagick 6.0-6.9.0-5 - Denial of Service via Crafted VICAR File
CVSS 6.5
CVE-2015-8902 MEDIUM
ImageMagick 6.0-6.9.0-5 - Denial of Service via PDB File Infinite Loop
CVSS 6.5
CVE-2015-8901 MEDIUM
ImageMagick 6.0-6.8.9 - Denial of Service via Crafted MIFF File
CVSS 6.5
CVE-2015-8900 MEDIUM
ImageMagick 6.0-6.9.3-10 - Denial of Service via Crafted HDR File
CVSS 5.5
CVE-2015-8558 MEDIUM
QEMU < 2.5.1.1 - Denial of Service via Circular iTD List
CVSS 5.5
CVE-2015-8785 MEDIUM
Linux Kernel < 4.4 - Denial of Service via Zero-Length Writev Segment
CVSS 6.2
CVE-2014-0148 MEDIUM
Qemu < 2.0 - Denial of Service via Hyper-V VHDX Block Driver Infinite Loop
CVSS 5.5
CVE-2014-8561 MEDIUM
ImageMagick 6.8.9.6 - Denial of Service via Infinite Loop
CVSS 6.5
CVE-2013-10005 HIGH
Go Socks Library - Infinite Loop via RemoteAddr/LocalAddr
CVSS 7.5
CVE-2013-7488 HIGH
perl-Convert-ASN1 <0.28 - Infinite Loop
CVSS 7.5
CVE-2013-3722 HIGH
OpenSIPS < 1.10 - Denial of Service via Infinite Loop in lookup.c
CVSS 7.5
CVE-2013-2789
Kepware DNP Master Driver <5.12.140.0 - DoS
CVE-2012-1186 MEDIUM
ImageMagick < 6.7.5-8 - Denial of Service via Crafted IOP Tag Offsets in IFD
CVSS 5.5
CVE-2012-0248 MEDIUM
ImageMagick < 6.7.5-7 - Denial of Service via Crafted Image IFD IOP Tags
CVSS 5.5
CVE-2011-1474 MEDIUM
Linux Kernel - Denial of Service via MAP_GROWSDOWN mmap Bounds Check
CVSS 5.5
CVE-2011-4621 MEDIUM
Linux Kernel < 2.6.37 - Denial of Service via Clock-Update Optimization
CVSS 5.5
CVE-2011-2213
Linux Kernel < 2.6.39.3 - Denial of Service via INET_DIAG Bytecode Infinite Loop
CVE-2011-1142 HIGH
Wireshark 1.2.x-1.2.15 and 1.4.x-1.4.4 - Denial of Service via BER Dissector Infinite Loop
CVSS 7.5
CVE-2011-1002
avahi < 0.6.29 - Denial of Service via Empty mDNS UDP Packet
CVE-2010-0207 MEDIUM
xpdf - Denial of Service via Infinite Loop in Xref Table
CVSS 5.5
CVE-2010-3880
Linux Kernel < 2.6.37 - Denial of Service via INET_DIAG Bytecode Infinite Loop
CVE-2010-1282 MEDIUM
Adobe Shockwave Player <11.5.7.609 - DoS
CVSS 6.5
CVE-2009-2906
Samba < 3.0.37, 3.2 < 3.2.15, 3.3 < 3.3.8, 3.4 < 3.4.2 - Authenticated Denial of Service via Oplock Break Notification
CVE-2009-1270
ClamAV < 0.95 - Denial of Service via Crafted TAR File
CVE-2006-6499
Firefox 1.5-1.5.0.8 and 2.x < 2.0.0.1 - Denial of Service via Floating Point Precision Reduction
Details
Vulnerabilities 829