Vulnerability index

Browse CVEs

870 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Infinite LoopCWE-835 × clear
MEDIUM 5.5 CVE-2018-18700 An issue was discovered in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31. There is a stack consumption vulnerability resulting … Binutils No fix yet Fix from $1,6002018-10-29 MEDIUM 5.5 CVE-2018-18701 An issue was discovered in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31. There is a stack consumption vulnerability resulting … Binutils No fix yet Fix from $1,6002018-10-29 MEDIUM 5.5 CVE-2017-18277 When dynamic memory allocation fails, currently the process sleeps for one second and continues with infinite loop without retrying for memory alloca… Mdm9206 Firmware Mitigation only Fix from $1,6002018-10-23 HIGH 7.5 CVE-2018-18385 Asciidoctor in versions < 1.5.8 allows remote attackers to cause a denial of service (infinite loop). The loop was caused by the fact that Parser.nex… Asciidoctor 1.5.8+ Fix from $1,9502018-10-16 MEDIUM 5.5 CVE-2018-12154 Denial of Service in Unified Shader Compiler in Intel Graphics Drivers before 10.18.x.5056 (aka 15.33.x.5056), 10.18.x.5057 (aka 15.36.x.5057) and 20… Graphics Driver Mitigation only Fix from $1,6002018-10-15 MEDIUM 6.5 CVE-2018-6977 VMware ESXi (6.7, 6.5, 6.0), Workstation (15.x and 14.x) and Fusion (11.x and 10.x) contain a denial-of-service vulnerability due to an infinite loop… Esxi after 15.0.2 Fix from $1,6002018-10-09 MEDIUM 5.9 CVE-2018-18070 An issue was discovered in Daimler Mercedes-Benz COMAND 17/13.0 50.12 on Mercedes-Benz C-Class 2018 vehicles. Defining or receiving a specific naviga… Comand Mitigation only Fix from $1,6002018-10-09 MEDIUM 6.5 CVE-2018-18024 In ImageMagick 7.0.8-13 Q16, there is an infinite loop in the ReadBMPImage function of the coders/bmp.c file. Remote attackers could leverage this vu… Imagemagick Patch available Fix from $1,6002018-10-07 HIGH 7.5 CVE-2018-17846 The html package (aka x/net/html) through 2018-09-25 in Go mishandles <table><math><select><mi><select></table>, leading to an infinite loop during a… Net after 2018-09-25 Fix from $1,9502018-10-01 MEDIUM 5.5 CVE-2018-8017 In Apache Tika 1.2 to 1.18, a carefully crafted file can trigger an infinite loop in the IptcAnpaParser. Tika after 1.18 Fix from $1,6002018-09-19 MEDIUM 5.5 CVE-2018-17042 An issue has been found in dbf2txt through 2012-07-19. It is a infinite loop. Dbf2txt after 2012-07-19 Fix from $1,6002018-09-14 MEDIUM 6.5 CVE-2018-16646 In Poppler 0.68.0, the Parser::getObj() function in Parser.cc may cause infinite recursion via a crafted file. A remote attacker can leverage this fo… Debian Linux Patch available Fix from $1,6002018-09-06 HIGH 7.5 CVE-2018-14621 An infinite loop vulnerability was found in libtirpc before version 1.0.2-rc2. With the port to using poll rather than select, exhaustion of file des… Libtirpc after 1.0.1 Fix from $1,9502018-08-30 MEDIUM 5.9 CVE-2018-10938 A flaw was found in the Linux kernel present since v4.0-rc1 and through v4.13-rc4. A crafted network packet sent remotely by an attacker may force th… Linux Kernel Patch available Fix from $1,6002018-08-27 MEDIUM 5.5 CVE-2018-15856 An infinite loop when reaching EOL unexpectedly in compose/parser.c (aka the keymap parser) in xkbcommon before 0.8.1 could be used by local attacker… Ubuntu Linux 0.8.1+ Fix from $1,6002018-08-25 MEDIUM 6.5 CVE-2018-1999044 A denial of service vulnerability exists in Jenkins 2.137 and earlier, 2.121.2 and earlier in CronTab.java that allows attackers with Overall/Read pe… Jenkins after 2.137 Fix from $1,6002018-08-23 MEDIUM 6.5 CVE-2018-14567 libxml2 2.9.8, if --with-lzma is used, allows remote attackers to cause a denial of service (infinite loop) via a crafted XML file that triggers LZMA… Ubuntu Linux Patch available Fix from $1,6002018-08-16 MEDIUM 5.5 CVE-2018-11771EPSS 5% When reading a specially crafted ZIP archive, the read method of Apache Commons Compress 1.7 to 1.17's ZipArchiveInputStream can fail to return the c… Commons Compress after 1.17.0 Fix from $1,6002018-08-16 HIGH 7.5 CVE-2018-1336EPSS 21% An improper handing of overflow in the UTF-8 decoder with supplementary characters can lead to an infinite loop in the decoder causing a Denial of Se… Tomcat after 9.0.7 Fix from $1,9502018-08-02 HIGH 8.8 CVE-2016-9581 An infinite loop vulnerability in tiftoimage that results in heap buffer overflow in convert_32s_C1P1 was found in openjpeg 2.1.2. Openjpeg Patch available Fix from $1,9502018-08-01 HIGH 7.5 CVE-2017-2646 It was found that when Keycloak before 2.5.5 receives a Logout request with a Extensions in the middle of the request, the SAMLSloRequestParser.parse… Keycloak 2.5.5+ Fix from $1,9502018-07-27 HIGH 7.5 CVE-2017-2670 It was found in Undertow before 1.3.28 that with non-clean TCP close, the Websocket server gets into infinite loop on every IO thread, effectively ca… Undertow 1.3.28+ Fix from $1,9502018-07-27 MEDIUM 6.5 CVE-2018-1999012 FFmpeg before commit 9807d3976be0e92e4ece3b4b1701be894cd7c2e1 contains a CWE-835: Infinite loop vulnerability in pva format demuxer that can result i… Ffmpeg after 4.0.1 Fix from $1,6002018-07-23 MEDIUM 6.5 CVE-2018-14445 In Bento4 v1.5.1-624, AP4_File::ParseStream in Ap4File.cpp allows remote attackers to cause a denial of service (infinite loop) via a crafted MP4 fil… Bento4 No fix yet Fix from $1,6002018-07-20 HIGH 7.5 CVE-2018-14339 In Wireshark 2.6.0 to 2.6.1, 2.4.0 to 2.4.7, and 2.2.0 to 2.2.15, the MMSE dissector could go into an infinite loop. This was addressed in epan/proto… Wireshark after 2.6.1 Fix from $1,9502018-07-19 HIGH 7.5 CVE-2018-14341 In Wireshark 2.6.0 to 2.6.1, 2.4.0 to 2.4.7, and 2.2.0 to 2.2.15, the DICOM dissector could go into a large or infinite loop. This was addressed in e… Wireshark after 2.6.1 Fix from $1,9502018-07-19 HIGH 7.5 CVE-2018-14368 In Wireshark 2.6.0 to 2.6.1, 2.4.0 to 2.4.7, and 2.2.0 to 2.2.15, the Bazaar protocol dissector could go into an infinite loop. This was addressed in… Wireshark after 2.6.1 Fix from $1,9502018-07-19 MEDIUM 6.5 CVE-2018-14347 GNU Libextractor before 1.7 contains an infinite loop vulnerability in EXTRACTOR_mpeg_extract_method (mpeg_extractor.c). Debian Linux 1.7+ Fix from $1,6002018-07-17 HIGH 7.5 CVE-2018-14051 The function wav_read in libwav.c in libwav through 2017-04-20 has an infinite loop. Libwav after 2017-04-20 Fix from $1,9502018-07-13 MEDIUM 6.5 CVE-2018-8036 In Apache PDFBox 1.8.0 to 1.8.14 and 2.0.0RC1 to 2.0.10, a carefully crafted (or fuzzed) file can trigger an infinite loop which leads to an out of m… Pdfbox after 2.0.10 Fix from $1,6002018-07-03