Vulnerability index

Browse CVEs

870 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Infinite LoopCWE-835 × clear
HIGH 7.5 CVE-2021-28484 An issue was discovered in the /api/connector endpoint handler in Yubico yubihsm-connector before 3.0.1 (in YubiHSM SDK before 2021.04). The handler … Fedora 3.0.1+ Fix from $1,9502021-04-14 HIGH 7.5 CVE-2021-1252 A vulnerability in the Excel XLM macro parsing module in Clam AntiVirus (ClamAV) Software versions 0.103.0 and 0.103.1 could allow an unauthenticated… Clamav Mitigation only Fix from $1,9502021-04-08 MEDIUM 5.5 CVE-2020-36310 An issue was discovered in the Linux kernel before 5.8. arch/x86/kvm/svm/svm.c allows a set_memory_region_test infinite loop for certain nested page … Linux Kernel 5.8+ Fix from $1,6002021-04-07 MEDIUM 5.5 CVE-2021-28657 A carefully crafted or corrupt file may trigger an infinite loop in Tika's MP3Parser up to and including Tika 1.25. Apache Tika users should upgrade … Tika after 17.12 Fix from $1,6002021-03-31 HIGH 7.5 CVE-2021-20270 An infinite loop in SMLLexer in Pygments versions 1.5 to 2.7.3 may lead to denial of service when performing syntax highlighting of a Standard ML (SM… Openshift Container Platform after 2.7.3 Fix from $1,9502021-03-23 MEDIUM 6.0 CVE-2021-3416 A potential stack overflow via infinite loop issue was found in various NIC emulators of QEMU in versions up to and including 5.2.0. The issue occurs… Fedora after 5.2.0 Fix from $1,6002021-03-18 HIGH 7.5 CVE-2021-28667 StackStorm before 3.4.1, in some situations, has an infinite loop that consumes all available memory and disk space. This can occur if Python 3.x is … Stackstorm 3.4.1+ Fix from $1,9502021-03-18 MEDIUM 5.5 CVE-2020-11186 Modem will enter into busy mode in an infinite loop while parsing histogram dimension due to improper validation of input received in Snapdragon Auto… Csrb31024 Firmware Mitigation only Fix from $1,6002021-03-17 MEDIUM 5.5 CVE-2021-25673 A vulnerability has been identified in SIMATIC S7-PLCSIM V5.4 (All versions). An attacker with local access to the system could cause a Denial-of-Ser… Simatic S7 Plcsim Mitigation only Fix from $1,6002021-03-15 HIGH 7.5 CVE-2021-27918 encoding/xml in Go before 1.15.9 and 1.16.x before 1.16.1 has an infinite loop if a custom TokenReader (for xml.NewTokenDecoder) returns EOF in the m… Go 1.15.9 / 1.16.1+ Fix from $1,9502021-03-11 MEDIUM 5.5 CVE-2021-20255 A stack overflow via an infinite recursion vulnerability was found in the eepro100 i8255x device emulator of QEMU. This issue occurs while processing… Debian Linux Patch available Fix from $1,6002021-03-09 MEDIUM 5.5 CVE-2020-27618 The iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when processing invalid multi-byte input sequences in IBM1364, IBM1371… Debian Linux after 2.32 Fix from $1,6002021-02-26 MEDIUM 6.5 CVE-2020-9307 Hirschmann OS2, RSP, and RSPE devices before HiOS 08.3.00 allow a denial of service. An unauthenticated, adjacent attacker can cause an infinite loop… Hirschmann Hios 07.1.00 / 08.3.00+ Fix from $1,6002021-02-11 HIGH 7.5 CVE-2020-24944 picoquic (before 3rd of July 2020) allows attackers to cause a denial of service (infinite loop) via a crafted QUIC frame, related to the picoquic_de… Picoquic 2020-07-03+ Fix from $1,9502021-02-08 MEDIUM 6.5 CVE-2021-22161 In OpenWrt 19.07.x before 19.07.7, when IPv6 is used, a routing loop can occur that generates excessive network traffic between an affected device an… Openwrt after 19.07.6 Fix from $1,6002021-02-07 HIGH 7.5 CVE-2020-36227EPSS 78% A flaw was discovered in OpenLDAP before 2.4.57 leading to an infinite loop in slapd with the cancel_extop Cancel operation, resulting in denial of s… Debian Linux 2.4.57 / 11.4+ Fix from $1,9502021-01-26 MEDIUM 6.5 CVE-2021-0221 In an EVPN/VXLAN scenario, if an IRB interface with a virtual gateway address (VGA) is configured on a PE, a traffic loop may occur upon receipt of s… Junos Mitigation only Fix from $1,6002021-01-15 MEDIUM 6.5 CVE-2021-21235 kamadak-exif is an exif parsing library written in pure Rust. In kamadak-exif version 0.5.2, there is an infinite loop in parsing crafted PNG files. … Kamadak Exif Patch available Fix from $1,6002021-01-06 HIGH 7.5 CVE-2020-28095 On Tenda AC1200 (Model AC6) 15.03.06.51_multi devices, a large HTTP POST request sent to the change password API will trigger the router to crash and… Ac6 Firmware No fix yet Fix from $1,9502020-12-30 MEDIUM 5.5 CVE-2020-29385 GNOME gdk-pixbuf (aka GdkPixbuf) before 2.42.2 allows a denial of service (infinite loop) in lzw.c in the function write_indexes. if c->self_code equ… Ubuntu Linux 2.42.2+ Fix from $1,6002020-12-26 MEDIUM 5.5 CVE-2020-35609 A denial-of-service vulnerability exists in the asynchronous ioctl functionality of Microsoft Azure Sphere 20.05. A sequence of specially crafted ioc… Azure Sphere No fix yet Fix from $1,6002020-12-22 HIGH 7.5 CVE-2020-17444 An issue was discovered in picoTCP 1.7.0. The routine for processing the next header field (and deducing whether the IPv6 extension headers are valid… Picotcp after 1.7.0 Fix from $1,9502020-12-11 HIGH 7.5 CVE-2020-24337 An issue was discovered in picoTCP and picoTCP-NG through 1.7.0. When an unsupported TCP option with zero length is provided in an incoming TCP packe… Picotcp after 1.7.0 Fix from $1,9502020-12-11 HIGH 7.5 CVE-2020-13984 An issue was discovered in Contiki through 3.0. An infinite loop exists in the uIP TCP/IP stack component when processing IPv6 extension headers in e… Contiki after 3.0 Fix from $1,9502020-12-11 HIGH 7.5 CVE-2020-13986 An issue was discovered in Contiki through 3.0. An infinite loop exists in the uIP TCP/IP stack component when handling RPL extension headers of IPv6… Contiki after 3.0 Fix from $1,9502020-12-11 MEDIUM 5.5 CVE-2020-28916 hw/net/e1000e_core.c in QEMU 5.0.0 has an infinite loop via an RX descriptor with a NULL buffer address. Debian Linux Patch available Fix from $1,6002020-12-04 MEDIUM 6.5 CVE-2018-20803 A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries, which loop indefinitely in mathemat… MongoDB 3.4.19 / 3.6.10+ Fix from $1,6002020-11-23 MEDIUM 5.5 CVE-2020-16127 An Ubuntu-specific modification to AccountsService in versions before 0.6.55-0ubuntu13.2, among other earlier versions, would perform unbounded read … Accountsservice 0.6.55+ Fix from $1,6002020-11-11 MEDIUM 5.5 CVE-2020-27152 An issue was discovered in ioapic_lazy_update_eoi in arch/x86/kvm/ioapic.c in the Linux kernel before 5.9.2. It has an infinite loop related to impro… Linux Kernel 5.9.2+ Fix from $1,6002020-11-06 HIGH 7.5 CVE-2020-28030 In Wireshark 3.2.0 to 3.2.7, the GQUIC dissector could crash. This was addressed in epan/dissectors/packet-gquic.c by correcting the implementation o… Wireshark after 3.2.7 Fix from $1,9502020-11-02