CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
Parent: CWE-834 - Excessive Iteration
The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.
829 vulnerabilities with CWE-835
CVE-2015-8903
MEDIUM
ImageMagick 6.0-6.9.0-5 - Denial of Service via Crafted VICAR File
CVSS 6.5
CVE-2015-8902
MEDIUM
ImageMagick 6.0-6.9.0-5 - Denial of Service via PDB File Infinite Loop
CVSS 6.5
CVE-2015-8901
MEDIUM
ImageMagick 6.0-6.8.9 - Denial of Service via Crafted MIFF File
CVSS 6.5
CVE-2015-8900
MEDIUM
ImageMagick 6.0-6.9.3-10 - Denial of Service via Crafted HDR File
CVSS 5.5
CVE-2015-8558
MEDIUM
QEMU < 2.5.1.1 - Denial of Service via Circular iTD List
CVSS 5.5
CVE-2015-8785
MEDIUM
Linux Kernel < 4.4 - Denial of Service via Zero-Length Writev Segment
CVSS 6.2
CVE-2014-0148
MEDIUM
Qemu < 2.0 - Denial of Service via Hyper-V VHDX Block Driver Infinite Loop
CVSS 5.5
CVE-2014-8561
MEDIUM
ImageMagick 6.8.9.6 - Denial of Service via Infinite Loop
CVSS 6.5
CVE-2013-10005
HIGH
Go Socks Library - Infinite Loop via RemoteAddr/LocalAddr
CVSS 7.5
CVE-2013-7488
HIGH
perl-Convert-ASN1 <0.28 - Infinite Loop
CVSS 7.5
CVE-2013-3722
HIGH
OpenSIPS < 1.10 - Denial of Service via Infinite Loop in lookup.c
CVSS 7.5
CVE-2013-2789
Kepware DNP Master Driver <5.12.140.0 - DoS
CVE-2012-1186
MEDIUM
ImageMagick < 6.7.5-8 - Denial of Service via Crafted IOP Tag Offsets in IFD
CVSS 5.5
CVE-2012-0248
MEDIUM
ImageMagick < 6.7.5-7 - Denial of Service via Crafted Image IFD IOP Tags
CVSS 5.5
CVE-2011-1474
MEDIUM
Linux Kernel - Denial of Service via MAP_GROWSDOWN mmap Bounds Check
CVSS 5.5
CVE-2011-4621
MEDIUM
Linux Kernel < 2.6.37 - Denial of Service via Clock-Update Optimization
CVSS 5.5
CVE-2011-2213
Linux Kernel < 2.6.39.3 - Denial of Service via INET_DIAG Bytecode Infinite Loop
CVE-2011-1142
HIGH
Wireshark 1.2.x-1.2.15 and 1.4.x-1.4.4 - Denial of Service via BER Dissector Infinite Loop
CVSS 7.5
CVE-2011-1002
avahi < 0.6.29 - Denial of Service via Empty mDNS UDP Packet
CVE-2010-0207
MEDIUM
xpdf - Denial of Service via Infinite Loop in Xref Table
CVSS 5.5
CVE-2010-3880
Linux Kernel < 2.6.37 - Denial of Service via INET_DIAG Bytecode Infinite Loop
CVE-2010-1282
MEDIUM
Adobe Shockwave Player <11.5.7.609 - DoS
CVSS 6.5
CVE-2009-2906
Samba < 3.0.37, 3.2 < 3.2.15, 3.3 < 3.3.8, 3.4 < 3.4.2 - Authenticated Denial of Service via Oplock Break Notification
CVE-2009-1270
ClamAV < 0.95 - Denial of Service via Crafted TAR File
CVE-2006-6499
Firefox 1.5-1.5.0.8 and 2.x < 2.0.0.1 - Denial of Service via Floating Point Precision Reduction
Details
Vulnerabilities
829