CWE-835

Loop with Unreachable Exit Condition ('Infinite Loop')

Parent: CWE-834 - Excessive Iteration

The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.

825 vulnerabilities with CWE-835
CVE-2025-21667 MEDIUM
Linux Kernel < 6.1.127 - Denial of Service via Infinite Loop in iomap_write_delalloc_scan
CVSS 5.5
CVE-2025-21665 MEDIUM
Linux Kernel 5.12-6.12.11 Infinite Loop via folio_seek_hole_data Offset Truncation
CVSS 5.5
CVE-2025-0290 MEDIUM
GitLab CE/EE <17.5.5-17.7.1 - Info Disclosure
CVSS 4.3
CVE-2025-23221 MEDIUM
Fedify 1.0.13-1.0.13, 1.1.0-1.1.10, 1.2.0-1.2.10, 1.3.0-1.3.3 - Denial of Service via Webfinger Mechanism
CVSS 5.4
CVE-2024-58261 LOW
sequoia-openpgp 1.13.0-1.20.9 - Denial of Service via RawCertParser Infinite Loop
CVSS 2.9
CVE-2024-22654 HIGH
tcpreplay 4.4.4 - Infinite Loop in tcprewrite get.c
CVSS 7.5
CVE-2024-58097 MEDIUM
Linux Kernel 5.6-6.14.1 - Denial of Service via ath11k Monitor Destination Ring Processing
CVSS 5.5
CVE-2024-9340 HIGH
zenml < 0.68.0 - Unauthenticated Denial of Service via Malformed Multipart Request Boundary
CVSS 7.5
CVE-2024-12704 HIGH
llamaindex < 0.12.6 - Denial of Service via LangChainLLM stream_complete Thread Termination
CVSS 7.5
CVE-2024-10907 HIGH
lm-sys FastChat v0.2.36 - Unauthenticated Denial of Service via Malformed Multipart Boundary
CVSS 7.5
CVE-2024-10829 HIGH
db-gpt v0.6.0 - Unauthenticated Denial of Service via Multipart Boundary Processing
CVSS 7.5
CVE-2024-10821 HIGH
InvokeAI v5.0.1 - Unauthenticated Denial of Service via Multipart Boundary Processing
CVSS 7.5
CVE-2024-6790 MEDIUM
Arm Ltd <r44p1-r51p0 - Infinite Loop
CVSS 6.1
CVE-2024-40675 HIGH
Android - Denial of Service via Intent URI Parsing Infinite Loop
CVSS 7.5
CVE-2024-57940 MEDIUM
Linux Kernel - Denial of Service via Infinite Loop in exfat_readdir()
CVSS 5.5
CVE-2024-57884 MEDIUM
Linux Kernel 4.8-6.12.8 - DoS via Infinite Loop in Memory Reclaim
CVSS 5.5
CVE-2024-53685 MEDIUM
Linux Kernel 2.6.35-6.12.7 - Denial of Service via ceph_mdsc_build_path Infinite Loop
CVSS 5.5
CVE-2024-47794 MEDIUM
Linux Kernel 5.6-6.12.4 - Infinite Loop via BPF Tail Call and Freplace Interaction
CVSS 5.5
CVE-2024-56703 MEDIUM
Linux Kernel 4.15-6.1.127, 6.2-6.6.74, 6.7-6.11.10, 6.12.0-6.12.1 - DoS via Infinite Loop in fib6_select_path
CVSS 5.5
CVE-2024-55565 MEDIUM
nanoid 4.0.0-5.0.8 - Denial of Service via Non-Integer Value Mishandling
CVSS 4.3
CVE-2024-11941 HIGH
Drupal Core <10.2.2-10.1.8 - Memory Corruption
CVSS 7.5
CVE-2024-53980 HIGH
RIOT < 2024.07 - Denial of Service via Spoofed IEEE 802.15.4 Packet Length
CVSS 7.5
CVE-2024-11612 MEDIUM
7-Zip 24.06-24.08 - Denial of Service via Infinite Loop in Stream Processing
CVSS 6.5
CVE-2024-11595 HIGH
Wireshark 4.2.0-4.2.8 and 4.4.0-4.4.1 - Denial of Service via FiveCo RAP Dissector Infinite Loop
CVSS 7.8
CVE-2024-53055 MEDIUM
Linux Kernel 5.11-6.11.6 - DoS via Infinite Loop in 6 GHz Scan
CVSS 5.5
Details
Vulnerabilities 825