Vulnerability index

Browse CVEs

869 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Infinite LoopCWE-835 × clear
Dns Server HIGH 7.5
CVE-2022-48256

Technitium DNS Server before 10.0 allows a self-CNAME denial-of-service attack in which a CNAME loop causes an answer to contain hundreds of records.

Fix: 10.0+
Fix from $1,950 2023-01-13
Wireshark MEDIUM 6.5
CVE-2022-4345

Infinite loops in the BPv6, OpenFlow, and Kafka protocol dissectors in Wireshark 4.0.0 to 4.0.1 and 3.6.0 to 3.6.9 allows denial of service via packe…

Fix: 3.6.10 / 4.0.2+
Fix from $1,600 2023-01-12
Socks5 HIGH 7.5
CVE-2013-10005

The RemoteAddr and LocalAddr methods on the returned net.Conn may call themselves, leading to an infinite loop which will crash the program due to a …

Fix: 2013-08-07+
Fix from $1,950 2022-12-27
Apq8009 Firmware HIGH 7.5
CVE-2022-33238

Transient DOS due to loop with unreachable exit condition in WLAN while processing an incoming FTM frames. in Snapdragon Auto, Snapdragon Compute, Sn…

Mitigation only
Fix from $1,950 2022-12-13
Android MEDIUM 5.5
CVE-2022-20476

In setEnabledSetting of PackageManager.java, there is a possible way to get the device into an infinite reboot loop due to resource exhaustion. This …

Patch available
Fix from $1,600 2022-12-13
Mirage Firewall HIGH 7.5
CVE-2022-46770EPSS 21%

qubes-mirage-firewall (aka Mirage firewall for QubesOS) 0.8.x through 0.8.3 allows guest OS users to cause a denial of service (CPU consumption and l…

Fix: 0.8.4+
Fix from $1,950 2022-12-07
Lepton MEDIUM 5.5
CVE-2022-4104

A loop with an unreachable exit condition can be triggered by passing a crafted JPEG file to the Lepton image compression tool, resulting in a denial…

No fix yet
Fix from $1,600 2022-11-28
Ar8031 Firmware HIGH 7.5
CVE-2022-25742

Denial of service in modem due to infinite loop while parsing IGMPv2 packet from server in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdr…

Mitigation only
Fix from $1,950 2022-11-15
Apq8009 Firmware HIGH 7.5
CVE-2022-33239

Transient DOS due to loop with unreachable exit condition in WLAN firmware while parsing IPV6 extension header. in Snapdragon Auto, Snapdragon Comput…

Mitigation only
Fix from $1,950 2022-11-15
Otrs MEDIUM 6.5
CVE-2022-39052

An external attacker is able to send a specially crafted email (with many recipients) and trigger a potential DoS of the system

Fix: 7.0.39 / 8.0.26+
Fix from $1,600 2022-10-17
Linux Kernel MEDIUM 5.5
CVE-2022-42721

A list management bug in BSS handling in the mac80211 stack in the Linux kernel 5.1 through 5.19.x before 5.19.16 could be used by local attackers (a…

Fix: 5.19.16+
Fix from $1,600 2022-10-14
Virtualization MEDIUM 5.5
CVE-2014-0148

Qemu before 2.0 block driver for Hyper-V VHDX Images is vulnerable to infinite loops and other potential issues when calculating BAT entries, due to …

Patch available
Fix from $1,600 2022-09-29
PHP MEDIUM 5.5
CVE-2022-31628

In PHP versions before 7.4.31, 8.0.24 and 8.1.11, the phar uncompressor code would recursively uncompress "quines" gzip files, resulting in an infini…

Fix: 7.4.31 / 8.0.24+
Fix from $1,600 2022-09-28
Cloud Protection For Salesforce MEDIUM 5.5
CVE-2022-28886

A Denial-of-Service vulnerability was discovered in the F-Secure and WithSecure products where aerdl.so/aerdl.dll may go into an infinite loop when u…

Mitigation only
Fix from $1,600 2022-09-23
Swift Nio Extras HIGH 7.5
CVE-2022-3252

Improper detection of complete HTTP body decompression SwiftNIO Extras provides a pair of helpers for transparently decompressing received HTTP reque…

Fix: 1.9.2 / 1.10.3+
Fix from $1,950 2022-09-21
Wireshark MEDIUM 5.5
CVE-2022-3190

Infinite loop in the F5 Ethernet Trailer protocol dissector in Wireshark 3.6.0 to 3.6.7 and 3.4.0 to 3.4.15 allows denial of service via packet injec…

Fix: 3.4.16 / 3.6.8+
Fix from $1,600 2022-09-13
Pdftk Java HIGH 7.5
CVE-2021-37819

PDF Labs pdftk-java v3.2.3 was discovered to contain an infinite loop via the component /text/pdf/PdfReader.java.

Patch available
Fix from $1,950 2022-09-09
Business Suite HIGH 7.5
CVE-2022-28884

A Denial-of-Service vulnerability was discovered in the F-Secure and WithSecure products where aerdl.dll may go into an infinite loop when unpacking …

Mitigation only
Fix from $1,950 2022-09-06
Wolfssl MEDIUM 5.9
CVE-2021-44718

wolfSSL through 5.0.0 allows an attacker to cause a denial of service and infinite loop in the client component by sending crafted traffic from a Mac…

Fix: after 5.0.0
Fix from $1,600 2022-09-02
Elements Endpoint Protection HIGH 7.5
CVE-2022-28882

A Denial-of-Service (DoS) vulnerability was discovered in F-Secure & WithSecure products whereby the aegen.dll will go into an infinite loop when unp…

Mitigation only
Fix from $1,950 2022-08-23
Libjpeg HIGH 7.5
CVE-2022-37768

libjpeg commit 281daa9 was discovered to contain an infinite loop via the component Frame::ParseTrailer.

No fix yet
Fix from $1,950 2022-08-18
Bento4 MEDIUM 5.5
CVE-2022-35165

An issue in AP4_SgpdAtom::AP4_SgpdAtom() of Bento4-1.6.0-639 allows attackers to cause a Denial of Service (DoS) via a crafted mp4 input.

No fix yet
Fix from $1,600 2022-08-18
Libjpeg MEDIUM 5.5
CVE-2022-35166

libjpeg commit 842c7ba was discovered to contain an infinite loop via the component JPEG::ReadInternal.

No fix yet
Fix from $1,600 2022-08-18
Blender HIGH 7.5
CVE-2022-2833

Endless Infinite loop in Blender-thumnailing due to logical bugs.

Patch available
Fix from $1,950 2022-08-16
Teamcenter HIGH 7.5
CVE-2022-34661

A vulnerability has been identified in Teamcenter V12.4 (All versions < V12.4.0.15), Teamcenter V13.0 (All versions < V13.0.0.10), Teamcenter V13.1 (…

Fix: 12.4.0.15 / 13.0.0.10+
Fix from $1,950 2022-08-10
Avro HIGH 7.5
CVE-2022-35724

It is possible to provide data to be read that leads the reader to loop in cycles endlessly, consuming CPU. This issue affects Rust applications usin…

Fix: 0.14.0+
Fix from $1,950 2022-08-09
Big Ip Access Policy Manager HIGH 7.5
CVE-2022-34862

In BIG-IP Versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x, when an LTM virtual server is co…

Fix: 14.1.5 / 15.1.6.1+
Fix from $1,950 2022-08-04
File Type MEDIUM 5.5
CVE-2022-36313

An issue was discovered in the file-type package before 16.5.4 and 17.x before 17.1.3 for Node.js. A malformed MKV file could cause the file type det…

Fix: 16.5.4 / 17.1.3+
Fix from $1,600 2022-07-21
Debian Linux HIGH 7.5
CVE-2021-46828

In libtirpc before 1.3.3rc1, remote attackers could exhaust the file descriptors of a process that uses libtirpc because idle TCP connections are mis…

Fix: 1.3.3+
Fix from $1,950 2022-07-20
Go HIGH 7.5
CVE-2022-30634

Infinite loop in Read in crypto/rand before Go 1.17.11 and Go 1.18.3 on Windows allows attacker to cause an indefinite hang by passing a buffer large…

Fix: 1.17.11 / 1.18.3+
Fix from $1,950 2022-07-15