Vulnerability index

Browse CVEs

869 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Infinite LoopCWE-835 × clear
Snapdragon 855\+\/860 Mobile Platform \(sm8150 Ac\) Firmware HIGH 7.5
CVE-2024-23352

Transient DOS when NAS receives ODAC criteria of length 1 and type 1 in registration accept OTA.

Mitigation only
Fix from $1,950 2024-08-05
Linux Kernel MEDIUM 5.5
CVE-2024-41088

In the Linux kernel, the following vulnerability has been resolved: can: mcp251xfd: fix infinite loop when xmit fails When the mcp251xfd_start_xmit…

Fix: 6.1.97 / 6.6.37+
Fix from $1,600 2024-07-29
Go Chart HIGH 7.5
CVE-2024-40060

go-chart v2.1.1 was discovered to contain an infinite loop via the drawCanvas() function.

Fix: after 2.1.1
Fix from $1,950 2024-07-23
Linux Kernel MEDIUM 5.5
CVE-2022-48862

In the Linux kernel, the following vulnerability has been resolved: vhost: fix hung thread due to erroneous iotlb entries In vhost_iotlb_add_range_…

Fix: 5.15.29 / 5.16.15+
Fix from $1,600 2024-07-16
Linux Kernel MEDIUM 5.5
CVE-2022-48840

In the Linux kernel, the following vulnerability has been resolved: iavf: Fix hang during reboot/shutdown Recent commit 974578017fc1 ("iavf: Add wa…

Fix: 5.15.31 / 5.16.17+
Fix from $1,600 2024-07-16
Linux Kernel MEDIUM 5.5
CVE-2022-48780

In the Linux kernel, the following vulnerability has been resolved: net/smc: Avoid overwriting the copies of clcsock callback functions The callbac…

Fix: 5.15.25 / 5.16.11+
Fix from $1,600 2024-07-16
Linux Kernel MEDIUM 5.5
CVE-2024-40995

In the Linux kernel, the following vulnerability has been resolved: net/sched: act_api: fix possible infinite loop in tcf_idr_check_alloc() syzbot …

Fix: 5.4.279 / 5.10.221+
Fix from $1,600 2024-07-12
Unclassified MEDIUM 6.2
CVE-2024-5569

A Denial of Service (DoS) vulnerability exists in the jaraco/zipp library, affecting all versions prior to 3.19.1. The vulnerability is triggered whe…

Patch available
Fix from $1,600 2024-07-09
Aim HIGH 7.5
CVE-2024-6227

A vulnerability in aimhubio/aim version 3.19.3 allows an attacker to cause an infinite loop by configuring the remote tracking server to point at its…

No fix yet
Fix from $1,950 2024-07-08
Splunk MEDIUM 6.5
CVE-2024-36990

In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.2.2403.100, an authenticated, low-privileged …

Fix: 9.0.10 / 9.1.5+
Fix from $1,600 2024-07-01
Linux Kernel MEDIUM 5.5
CVE-2024-36288

In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Fix loop termination condition in gss_free_in_token_pages() The in_toke…

Fix: 6.9.4+
Fix from $1,600 2024-06-21
Linux Kernel MEDIUM 5.5
CVE-2021-47617

In the Linux kernel, the following vulnerability has been resolved: PCI: pciehp: Fix infinite loop in IRQ handler upon power fault The Power Fault …

Fix: 4.19.233 / 5.4.177+
Fix from $1,600 2024-06-20
Gpac MEDIUM 5.5
CVE-2024-6061

A vulnerability has been found in GPAC 2.5-DEV-rev228-g11067ea92-master and classified as problematic. Affected by this vulnerability is the function…

Patch available
Fix from $1,600 2024-06-17
Dse855 Firmware MEDIUM 6.5
CVE-2024-5949

Deep Sea Electronics DSE855 Multipart Boundary Infinite Loop Denial-of-Service Vulnerability. This vulnerability allows network-adjacent attackers to…

Mitigation only
Fix from $1,600 2024-06-13
Oneflow HIGH 7.5
CVE-2024-36732

An issue in OneFlow-Inc. Oneflow v0.9.1 allows attackers to cause a Denial of Service (DoS) when an empty array is processed with oneflow.tensordot.

Mitigation only
Fix from $1,950 2024-06-06
Envoy HIGH 7.5
CVE-2024-32976

Envoy is a cloud-native, open source edge and service proxy. Envoyproxy with a Brotli filter can get into an endless loop during decompression of Bro…

Fix: 1.27.6 / 1.28.4+
Fix from $1,950 2024-06-04
Linux Kernel MEDIUM 5.5
CVE-2021-47448

In the Linux kernel, the following vulnerability has been resolved: mptcp: fix possible stall on recvmsg() recvmsg() can enter an infinite loop if …

Fix: 5.14.14+
Fix from $1,600 2024-05-22
Linux Kernel MEDIUM 5.5
CVE-2021-47406

In the Linux kernel, the following vulnerability has been resolved: ext4: add error checking to ext4_ext_replay_set_iblocks() If the call to ext4_m…

Fix: 5.10.71 / 5.14.10+
Fix from $1,600 2024-05-21
Linux Kernel MEDIUM 5.5
CVE-2024-35981

In the Linux kernel, the following vulnerability has been resolved: virtio_net: Do not send RSS key if it is not supported There is a bug when sett…

Fix: 6.1.90 / 6.6.29+
Fix from $1,600 2024-05-20
Linux Kernel MEDIUM 5.5
CVE-2024-35982

In the Linux kernel, the following vulnerability has been resolved: batman-adv: Avoid infinite loop trying to resize local TT If the MTU of one of …

Fix: 4.19.313 / 5.4.275+
Fix from $1,600 2024-05-20
Fedora HIGH 7.5
CVE-2024-4854

MONGO and ZigBee TLV dissector infinite loops in Wireshark 4.2.0 to 4.2.4, 4.0.0 to 4.0.14, and 3.6.0 to 3.6.22 allow denial of service via packet in…

Fix: after 4.2.4
Fix from $1,950 2024-05-14
Unclassified MEDIUM 5.9
CVE-2024-24788

A malformed DNS message in response to a query can cause the Lookup functions to get stuck in an infinite loop.

Mitigation only
Fix from $1,600 2024-05-08
Ryu HIGH 7.5
CVE-2024-34487

OFPFlowStats in parser.py in Faucet SDN Ryu 4.34 allows attackers to cause a denial of service (infinite loop) via inst.length=0.

No fix yet
Fix from $1,950 2024-05-05
Ryu HIGH 7.5
CVE-2024-34488

OFPMultipartReply in parser.py in Faucet SDN Ryu 4.34 allows attackers to cause a denial of service (infinite loop) via b.length=0.

No fix yet
Fix from $1,950 2024-05-05
Ryu HIGH 7.5
CVE-2024-34489

OFPHello in parser.py in Faucet SDN Ryu 4.34 allows attackers to cause a denial of service (infinite loop) via length=0.

No fix yet
Fix from $1,950 2024-05-05
Ryu MEDIUM 5.3
CVE-2024-34484

OFPBucket in parser.py in Faucet SDN Ryu 4.34 allows attackers to cause a denial of service (infinite loop) via action.len=0.

No fix yet
Fix from $1,600 2024-05-05
Aiohttp HIGH 7.5
CVE-2024-30251

aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. In affected versions an attacker can send a specially crafted POST (m…

Fix: 3.9.4+
Fix from $1,950 2024-05-02
Linux Kernel MEDIUM 6.3
CVE-2024-27032

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid potential panic during recovery During recovery, if FAULT_BL…

Fix: 4.20 / 5.5+
Fix from $1,600 2024-05-01
Onos Ric Sdk Go MEDIUM 6.5
CVE-2023-52726

Open Networking Foundation SD-RAN ONOS onos-ric-sdk-go 0.8.12 allows infinite repetition of the processing of an error (in the Subscribe function imp…

No fix yet
Fix from $1,600 2024-04-30
Linux Kernel MEDIUM 6.2
CVE-2022-48635

In the Linux kernel, the following vulnerability has been resolved: fsdax: Fix infinite loop in dax_iomap_rw() I got an infinite loop and a WARNING…

Fix: 5.15.71 / 5.19.12+
Fix from $1,600 2024-04-28