CWE-835

Loop with Unreachable Exit Condition ('Infinite Loop')

Parent: CWE-834 - Excessive Iteration

The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.

825 vulnerabilities with CWE-835
CVE-2025-13335 MEDIUM
GitLab 17.1-18.6.3, 18.7-18.7.1, 18.8-18.8.1 - Authenticated Denial of Service via Wiki Cycle Detection Bypass
CVSS 6.5
CVE-2025-68137 HIGH
EVerest < 2025.10.0 - Infinite Loop via SdpPacket Header Parsing
CVSS 8.3
CVE-2025-69227 HIGH
aiohttp < 3.13.3 - Denial of Service via POST Body Processing
CVSS 7.5
CVE-2025-13946 MEDIUM
Wireshark 4.4.0-4.4.11 and 4.6.0-4.6.1 - Denial of Service via MEGACO Dissector Infinite Loop
CVSS 5.5
CVE-2025-66252 HIGH
DB Electronica Mozart FM Transmitter DoS via Failed File Deletion in status_contents.php
CVSS 7.5
CVE-2025-41075 HIGH
LimeSurvey 6.13.0 - Denial of Service via Infinite Redirect Loop in /optin Endpoint
CVSS 7.5
CVE-2025-41074 HIGH
LimeSurvey 6.13.0 - Denial of Service via Infinite Redirect Loop in /optout Endpoint
CVSS 7.5
CVE-2025-63829 HIGH
eProsima Fast-DDS <v3.3 - Memory Corruption
CVSS 7.5
CVE-2025-60753 MEDIUM
libarchive < 3.8.1 - Denial of Service via Crafted Substitution Rules
CVSS 5.5
CVE-2025-11626 MEDIUM
Wireshark 4.2.0-4.2.13 4.4.0-4.4.9 - Denial of Service via MONGO Dissector Infinite Loop
CVSS 5.5
CVE-2025-20312 HIGH
Cisco IOS XE Software 17.2.1-17.3.3 DoS via SNMP Request Parsing
CVSS 7.7
CVE-2025-30187 LOW
DNSdist 1.9.0-1.9.10 and 2.0.0 - Denial of Service via nghttp2 DoH I/O Read Loop
CVSS 3.7
CVE-2025-55118 HIGH
Control-M/Agent <9.0.20,9.0.21,9.0.22 - Memory Corruption
CVSS 8.9
CVE-2025-38727 MEDIUM
Linux Kernel - Denial of Service via Infinite Loop in netlink_unicast()
CVSS 5.5
CVE-2025-38692 MEDIUM
Linux Kernel 5.7-6.6.102, 6.7-6.12.42, 6.13-6.15.10, 6.16-6.16.1 - Denial of Service via exFAT Cluster Chain Loop
CVSS 5.5
CVE-2025-38649 MEDIUM
Linux Kernel 6.14-6.15.9, 6.16.0 - Denial of Service via Coresight Infinite Loop
CVSS 5.5
CVE-2025-38588 MEDIUM
Linux Kernel - Infinite Loop in rt6_nlmsg_size() via fib6_siblings List Traversal
CVSS 5.5
CVE-2025-38587 MEDIUM
Linux Kernel - Infinite Loop in fib6_info_uses_dev()
CVSS 5.5
CVE-2025-51986 HIGH
cwalter-at freemodbus <2018-09-12 - DoS
CVSS 7.5
CVE-2025-20253 HIGH
Cisco Adaptive Security Appliance (ASA) Software - Denial of Service via IKEv2 Packet Processing
CVSS 8.6
CVE-2025-20243 HIGH
Cisco Secure Firewall ASA/FTD - DoS
CVSS 8.6
CVE-2025-20217 HIGH
Cisco Firepower Threat Defense Software - Denial of Service via Snort 3 Packet Inspection
CVSS 8.6
CVE-2025-20136 HIGH
Cisco ASA Software Unauthenticated DoS via NAT DNS Inspection Infinite Loop
CVSS 8.6
CVE-2025-7054 MEDIUM
Cloudflare quiche 0.15.0-0.24.5 - Unauthenticated Denial of Service via RETIRE_CONNECTION_ID Frame Infinite Loop
CVSS 6.5
CVE-2025-8194 HIGH
CPython TarFile Extraction Infinite Loop Vulnerability
CVSS 7.5
Details
Vulnerabilities 825