Vulnerability index

Browse CVEs

16 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Infinite LoopCWE-835 × clear
Hardened Images MEDIUM 5.1
CVE-2026-71227

A flaw was found in libkcapi. A local attacker can influence an application that uses the Asynchronous Input/Output (AIO) interface. By reusing an AI…

Fix: 1.5.1+
Fix from $1,600 2026-08-05
Hardened Images HIGH 7.5
CVE-2026-59849

A flaw was found in libssh. Logic errors in automatic certificate-based public key authentication can cause libssh clients to loop indefinitely when …

No fix yet
Fix from $1,950 2026-07-21
Hardened Images MEDIUM 6.5
CVE-2026-59843

A flaw was found in libssh. A remote authenticated peer can advertise a zero maximum packet size in SSH_MSG_CHANNEL_OPEN, causing later channel write…

No fix yet
Fix from $1,600 2026-07-21
Discovery HIGH 7.5
CVE-2025-71319

image-size through 2.0.2 contains a denial of service vulnerability that allows remote attackers to permanently block the Node.js event loop by suppl…

Fix: 1.4.2+
Fix from $1,950 2026-06-09
Enterprise Linux MEDIUM 5.5
CVE-2023-43786

A vulnerability was found in libX11 due to an infinite loop within the PutSubImage() function. This flaw allows a local user to consume all available…

Fix: 1.8.7+
Fix from $1,600 2023-10-10
Build Of Quarkus HIGH 7.5
CVE-2023-1108

A flaw was found in undertow. This issue makes achieving a denial of service possible due to an unexpected handshake status updated in SslConduit, wh…

Mitigation only
Fix from $1,950 2023-09-14
Enterprise Linux MEDIUM 6.5
CVE-2023-3255

A flaw was found in the QEMU built-in VNC server while processing ClientCutText messages. A wrong exit condition may lead to an infinite loop when in…

Fix: after 8.0.3
Fix from $1,600 2023-09-13
Virtualization MEDIUM 5.5
CVE-2014-0148

Qemu before 2.0 block driver for Hyper-V VHDX Images is vulnerable to infinite loops and other potential issues when calculating BAT entries, due to …

Patch available
Fix from $1,600 2022-09-29
Openshift Container Platform HIGH 7.5
CVE-2022-0711EPSS 17%

A flaw was found in the way HAProxy processed HTTP responses containing the "Set-Cookie2" header. This flaw could allow an attacker to send crafted H…

Fix: 2.2.21 / 2.3.18+
Fix from $1,950 2022-03-02
Openshift Container Platform HIGH 7.5
CVE-2021-20270

An infinite loop in SMLLexer in Pygments versions 1.5 to 2.7.3 may lead to denial of service when performing syntax highlighting of a Standard ML (SM…

Fix: after 2.7.3
Fix from $1,950 2021-03-23
Enterprise Linux Openstack Platform MEDIUM 6.5
CVE-2015-5694

Designate does not enforce the DNS protocol limit concerning record set sizes

Mitigation only
Fix from $1,600 2019-11-22
Keycloak HIGH 7.5
CVE-2017-2646

It was found that when Keycloak before 2.5.5 receives a Logout request with a Extensions in the middle of the request, the SAMLSloRequestParser.parse…

Fix: 2.5.5+
Fix from $1,950 2018-07-27
Undertow HIGH 7.5
CVE-2017-2670

It was found in Undertow before 1.3.28 that with non-clean TCP close, the Websocket server gets into infinite loop on every IO thread, effectively ca…

Fix: 1.3.28+
Fix from $1,950 2018-07-27
Jboss Enterprise Application Platform HIGH 7.5
CVE-2018-1041EPSS 16%

A vulnerability was found in the way RemoteMessageChannel, introduced in jboss-remoting versions 3.3.10, reads from an empty buffer. An attacker coul…

No fix yet
Fix from $1,950 2018-02-15
Enterprise Linux Desktop MEDIUM 6.5
CVE-2017-9461

smbd in Samba before 4.4.10 and 4.5.x before 4.5.6 has a denial of service vulnerability (fd_open_atomic infinite loop with high CPU usage and memory…

Fix: after 4.4.9
Fix from $1,600 2017-06-06
Jboss Data Grid HIGH 7.5
CVE-2016-4970EPSS 11%

handler/ssl/OpenSslEngine.java in Netty 4.0.x before 4.0.37.Final and 4.1.x before 4.1.1.Final allows remote attackers to cause a denial of service (…

Fix: 4.0.37 / 4.1.1+
Fix from $1,950 2017-04-13