Vulnerability index

Browse CVEs

869 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Infinite LoopCWE-835 × clear
HIGH 7.5 CVE-2022-48256 Technitium DNS Server before 10.0 allows a self-CNAME denial-of-service attack in which a CNAME loop causes an answer to contain hundreds of records. Dns Server 10.0+ Fix from $1,9502023-01-13 MEDIUM 6.5 CVE-2022-4345 Infinite loops in the BPv6, OpenFlow, and Kafka protocol dissectors in Wireshark 4.0.0 to 4.0.1 and 3.6.0 to 3.6.9 allows denial of service via packe… Wireshark 3.6.10 / 4.0.2+ Fix from $1,6002023-01-12 HIGH 7.5 CVE-2013-10005 The RemoteAddr and LocalAddr methods on the returned net.Conn may call themselves, leading to an infinite loop which will crash the program due to a … Socks5 2013-08-07+ Fix from $1,9502022-12-27 HIGH 7.5 CVE-2022-33238 Transient DOS due to loop with unreachable exit condition in WLAN while processing an incoming FTM frames. in Snapdragon Auto, Snapdragon Compute, Sn… Apq8009 Firmware Mitigation only Fix from $1,9502022-12-13 MEDIUM 5.5 CVE-2022-20476 In setEnabledSetting of PackageManager.java, there is a possible way to get the device into an infinite reboot loop due to resource exhaustion. This … Android Patch available Fix from $1,6002022-12-13 HIGH 7.5 CVE-2022-46770EPSS 21% qubes-mirage-firewall (aka Mirage firewall for QubesOS) 0.8.x through 0.8.3 allows guest OS users to cause a denial of service (CPU consumption and l… Mirage Firewall 0.8.4+ Fix from $1,9502022-12-07 MEDIUM 5.5 CVE-2022-4104 A loop with an unreachable exit condition can be triggered by passing a crafted JPEG file to the Lepton image compression tool, resulting in a denial… Lepton No fix yet Fix from $1,6002022-11-28 HIGH 7.5 CVE-2022-25742 Denial of service in modem due to infinite loop while parsing IGMPv2 packet from server in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdr… Ar8031 Firmware Mitigation only Fix from $1,9502022-11-15 HIGH 7.5 CVE-2022-33239 Transient DOS due to loop with unreachable exit condition in WLAN firmware while parsing IPV6 extension header. in Snapdragon Auto, Snapdragon Comput… Apq8009 Firmware Mitigation only Fix from $1,9502022-11-15 MEDIUM 6.5 CVE-2022-39052 An external attacker is able to send a specially crafted email (with many recipients) and trigger a potential DoS of the system Otrs 7.0.39 / 8.0.26+ Fix from $1,6002022-10-17 MEDIUM 5.5 CVE-2022-42721 A list management bug in BSS handling in the mac80211 stack in the Linux kernel 5.1 through 5.19.x before 5.19.16 could be used by local attackers (a… Linux Kernel 5.19.16+ Fix from $1,6002022-10-14 MEDIUM 5.5 CVE-2014-0148 Qemu before 2.0 block driver for Hyper-V VHDX Images is vulnerable to infinite loops and other potential issues when calculating BAT entries, due to … Virtualization Patch available Fix from $1,6002022-09-29 MEDIUM 5.5 CVE-2022-31628 In PHP versions before 7.4.31, 8.0.24 and 8.1.11, the phar uncompressor code would recursively uncompress "quines" gzip files, resulting in an infini… PHP 7.4.31 / 8.0.24+ Fix from $1,6002022-09-28 MEDIUM 5.5 CVE-2022-28886 A Denial-of-Service vulnerability was discovered in the F-Secure and WithSecure products where aerdl.so/aerdl.dll may go into an infinite loop when u… Cloud Protection For Salesforce Mitigation only Fix from $1,6002022-09-23 HIGH 7.5 CVE-2022-3252 Improper detection of complete HTTP body decompression SwiftNIO Extras provides a pair of helpers for transparently decompressing received HTTP reque… Swift Nio Extras 1.9.2 / 1.10.3+ Fix from $1,9502022-09-21 MEDIUM 5.5 CVE-2022-3190 Infinite loop in the F5 Ethernet Trailer protocol dissector in Wireshark 3.6.0 to 3.6.7 and 3.4.0 to 3.4.15 allows denial of service via packet injec… Wireshark 3.4.16 / 3.6.8+ Fix from $1,6002022-09-13 HIGH 7.5 CVE-2021-37819 PDF Labs pdftk-java v3.2.3 was discovered to contain an infinite loop via the component /text/pdf/PdfReader.java. Pdftk Java Patch available Fix from $1,9502022-09-09 HIGH 7.5 CVE-2022-28884 A Denial-of-Service vulnerability was discovered in the F-Secure and WithSecure products where aerdl.dll may go into an infinite loop when unpacking … Business Suite Mitigation only Fix from $1,9502022-09-06 MEDIUM 5.9 CVE-2021-44718 wolfSSL through 5.0.0 allows an attacker to cause a denial of service and infinite loop in the client component by sending crafted traffic from a Mac… Wolfssl after 5.0.0 Fix from $1,6002022-09-02 HIGH 7.5 CVE-2022-28882 A Denial-of-Service (DoS) vulnerability was discovered in F-Secure & WithSecure products whereby the aegen.dll will go into an infinite loop when unp… Elements Endpoint Protection Mitigation only Fix from $1,9502022-08-23 HIGH 7.5 CVE-2022-37768 libjpeg commit 281daa9 was discovered to contain an infinite loop via the component Frame::ParseTrailer. Libjpeg No fix yet Fix from $1,9502022-08-18 MEDIUM 5.5 CVE-2022-35165 An issue in AP4_SgpdAtom::AP4_SgpdAtom() of Bento4-1.6.0-639 allows attackers to cause a Denial of Service (DoS) via a crafted mp4 input. Bento4 No fix yet Fix from $1,6002022-08-18 MEDIUM 5.5 CVE-2022-35166 libjpeg commit 842c7ba was discovered to contain an infinite loop via the component JPEG::ReadInternal. Libjpeg No fix yet Fix from $1,6002022-08-18 HIGH 7.5 CVE-2022-2833 Endless Infinite loop in Blender-thumnailing due to logical bugs. Blender Patch available Fix from $1,9502022-08-16 HIGH 7.5 CVE-2022-34661 A vulnerability has been identified in Teamcenter V12.4 (All versions < V12.4.0.15), Teamcenter V13.0 (All versions < V13.0.0.10), Teamcenter V13.1 (… Teamcenter 12.4.0.15 / 13.0.0.10+ Fix from $1,9502022-08-10 HIGH 7.5 CVE-2022-35724 It is possible to provide data to be read that leads the reader to loop in cycles endlessly, consuming CPU. This issue affects Rust applications usin… Avro 0.14.0+ Fix from $1,9502022-08-09 HIGH 7.5 CVE-2022-34862 In BIG-IP Versions 16.1.x before 16.1.3.1, 15.1.x before 15.1.6.1, 14.1.x before 14.1.5, and all versions of 13.1.x, when an LTM virtual server is co… Big Ip Access Policy Manager 14.1.5 / 15.1.6.1+ Fix from $1,9502022-08-04 MEDIUM 5.5 CVE-2022-36313 An issue was discovered in the file-type package before 16.5.4 and 17.x before 17.1.3 for Node.js. A malformed MKV file could cause the file type det… File Type 16.5.4 / 17.1.3+ Fix from $1,6002022-07-21 HIGH 7.5 CVE-2021-46828 In libtirpc before 1.3.3rc1, remote attackers could exhaust the file descriptors of a process that uses libtirpc because idle TCP connections are mis… Debian Linux 1.3.3+ Fix from $1,9502022-07-20 HIGH 7.5 CVE-2022-30634 Infinite loop in Read in crypto/rand before Go 1.17.11 and Go 1.18.3 on Windows allows attacker to cause an indefinite hang by passing a buffer large… Go 1.17.11 / 1.18.3+ Fix from $1,9502022-07-15