Vulnerability index

Browse CVEs

869 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Infinite LoopCWE-835 × clear
Linux Kernel MEDIUM 5.5
CVE-2024-57884

In the Linux kernel, the following vulnerability has been resolved: mm: vmscan: account for free pages to prevent infinite Loop in throttle_direct_r…

Fix: 5.4.289 / 5.10.233+
Fix from $1,600 2025-01-15
Linux Kernel MEDIUM 5.5
CVE-2024-53685

In the Linux kernel, the following vulnerability has been resolved: ceph: give up on paths longer than PATH_MAX If the full path to be built by cep…

Fix: 5.10.234 / 5.15.177+
Fix from $1,600 2025-01-11
Linux Kernel MEDIUM 5.5
CVE-2024-47794

In the Linux kernel, the following vulnerability has been resolved: bpf: Prevent tailcall infinite loop caused by freplace There is a potential inf…

Fix: 6.12.5+
Fix from $1,600 2025-01-11
Linux Kernel MEDIUM 5.5
CVE-2024-56703

In the Linux kernel, the following vulnerability has been resolved: ipv6: Fix soft lockups in fib6_select_path under high next hop churn Soft locku…

Fix: 6.1.128 / 6.6.75+
Fix from $1,600 2024-12-28
Drupal HIGH 7.5
CVE-2024-11941

A vulnerability in Drupal Core allows Excessive Allocation.This issue affects Drupal Core: from 10.2.0 before 10.2.2, from 10.1.0 before 10.1.8.

Fix: 10.1.8 / 10.2.2+
Fix from $1,950 2024-12-05
Riot HIGH 7.5
CVE-2024-53980

RIOT is an open-source microcontroller operating system, designed to match the requirements of Internet of Things (IoT) devices and other embedded de…

Fix: after 2024.07
Fix from $1,950 2024-11-29
7 Zip MEDIUM 6.5
CVE-2024-11612

7-Zip CopyCoder Infinite Loop Denial-of-Service Vulnerability. This vulnerability allows remote attackers to create a denial-of-service condition on …

Fix: 24.08+
Fix from $1,600 2024-11-22
Wireshark MEDIUM 5.5
CVE-2024-11595

FiveCo RAP dissector infinite loop in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial of service via packet injection or crafted capture fi…

Fix: 4.2.9 / 4.4.2+
Fix from $1,600 2024-11-21
Linux Kernel MEDIUM 5.5
CVE-2024-53055

In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: fix 6 GHz scan construction If more than 255 colocated APs …

Fix: 5.15.171 / 6.1.116+
Fix from $1,600 2024-11-19
Linux Kernel MEDIUM 5.5
CVE-2024-50272

In the Linux kernel, the following vulnerability has been resolved: filemap: Fix bounds checking in filemap_read() If the caller supplies an iocb->…

Fix: 3.17 / 4.8+
Fix from $1,600 2024-11-19
Android MEDIUM 6.5
CVE-2017-13313

In ElementaryStreamQueue::dequeueAccessUnitMPEG4Video of ESQueue.cpp, there is a possible infinite loop leading to resource exhaustion due to an inco…

Patch available
Fix from $1,600 2024-11-15
Avalanche HIGH 7.5
CVE-2024-50321

An infinite loop in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to cause a denial of service.

Fix: 6.4.6+
Fix from $1,950 2024-11-12
Avalanche HIGH 7.5
CVE-2024-50319

An infinite loop in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to cause a denial of service.

Fix: 6.4.6+
Fix from $1,950 2024-11-12
Avalanche HIGH 7.5
CVE-2024-50320EPSS 41%

An infinite loop in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to cause a denial of service.

Fix: 6.4.6+
Fix from $1,950 2024-11-12
Student Record Management System MEDIUM 5.5
CVE-2024-11097

A vulnerability has been found in SourceCodester Student Record Management System 1.0 and classified as problematic. This vulnerability affects unkno…

No fix yet
Fix from $1,600 2024-11-12
Libsoup HIGH 7.5
CVE-2024-52532

GNOME libsoup before 3.6.1 has an infinite loop, and memory consumption. during the reading of certain patterns of WebSocket data from clients.

Fix: 3.6.1+
Fix from $1,950 2024-11-11
Wbr 6012 Firmware HIGH 7.5
CVE-2024-33623EPSS 12%

A denial of service vulnerability exists in the Web Application functionality of LevelOne WBR-6012 R0.40e6. A specially crafted HTTP request can lead…

No fix yet
Fix from $1,950 2024-10-30
Linux Kernel MEDIUM 5.5
CVE-2024-50011

In the Linux kernel, the following vulnerability has been resolved: ASoC: Intel: soc-acpi-intel-rpl-match: add missing empty item There is no links…

Fix: 6.11.3+
Fix from $1,600 2024-10-21
Linux Kernel MEDIUM 5.5
CVE-2024-49856

In the Linux kernel, the following vulnerability has been resolved: x86/sgx: Fix deadlock in SGX NUMA node search When the current node doesn't hav…

Fix: 5.15.168 / 6.1.113+
Fix from $1,600 2024-10-21
Windows Server 2012 HIGH 7.5
CVE-2024-43512

Windows Standards-Based Storage Management Service Denial of Service Vulnerability

Fix: 10.0.14393.7428 / 10.0.17763.6414+
Fix from $1,950 2024-10-08
Linux Kernel MEDIUM 5.5
CVE-2024-46701

In the Linux kernel, the following vulnerability has been resolved: libfs: fix infinite directory reads for offset dir After we switch tmpfs dir op…

Fix: 6.10.7+
Fix from $1,600 2024-09-13
Virtualmin HIGH 7.5
CVE-2024-45692

Webmin before 2.202 and Virtualmin before 7.20.2 allow a network traffic loop via spoofed UDP packets on port 10000.

Fix: 2.202 / 7.20.2+
Fix from $1,950 2024-09-04
Sigstore Go HIGH 7.5
CVE-2024-45395

sigstore-go, a Go library for Sigstore signing and verification, is susceptible to a denial of service attack in versions prior to 0.6.1 when a verif…

Fix: 0.6.1+
Fix from $1,950 2024-09-04
Haproxy HIGH 7.5
CVE-2024-45506

HAProxy 2.9.x before 2.9.10, 3.0.x before 3.0.4, and 3.1.x through 3.1-dev6 allows a remote denial of service for HTTP/2 zero-copy forwarding (h2_sen…

Fix: 2.9.10 / 3.0.4+
Fix from $1,950 2024-09-04
Unclassified HIGH 8.7
CVE-2024-8088

There is a HIGH severity vulnerability affecting the CPython "zipfile" module affecting "zipfile.Path". Note that the more common API "zipfile.ZipFil…

Patch available
Fix from $1,950 2024-08-22
Linux Kernel MEDIUM 5.5
CVE-2024-43828

In the Linux kernel, the following vulnerability has been resolved: ext4: fix infinite loop when replaying fast_commit When doing fast_commit repla…

Fix: 5.10.224 / 5.15.165+
Fix from $1,600 2024-08-17
Zkvyper CRITICAL 9.1
CVE-2024-43366

zkvyper is a Vyper compiler. Starting in version 1.3.12 and prior to version 1.5.3, since LLL IR has no Turing-incompletness restrictions, it is comp…

Fix: 1.5.3+
Fix from $2,300 2024-08-15
Linux Kernel MEDIUM 5.5
CVE-2024-42246

In the Linux kernel, the following vulnerability has been resolved: net, sunrpc: Remap EPERM in case of connection failure in xs_tcp_setup_socket W…

Fix: 6.1.100 / 6.6.41+
Fix from $1,600 2024-08-07
Linux Kernel MEDIUM 5.5
CVE-2024-42240

In the Linux kernel, the following vulnerability has been resolved: x86/bhi: Avoid warning in #DB handler due to BHI mitigation When BHI mitigation…

Fix: 6.1.100 / 6.6.41+
Fix from $1,600 2024-08-07
Pdfio MEDIUM 5.5
CVE-2024-42358

PDFio is a simple C library for reading and writing PDF files. There is a denial of service (DOS) vulnerability in the TTF parser. Maliciously crafte…

Fix: 1.3.1+
Fix from $1,600 2024-08-06