Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
MEDIUM 5.1
CVE-2026-71227
A flaw was found in libkcapi. A local attacker can influence an application that uses the Asynchronous Input/Output (AIO) interface. By reusing an AI…
Hardened Images
1.5.1+
HIGH 7.5
CVE-2026-59849
A flaw was found in libssh. Logic errors in automatic certificate-based public key authentication can cause libssh clients to loop indefinitely when …
Hardened Images
No fix yet
MEDIUM 6.5
CVE-2026-59843
A flaw was found in libssh. A remote authenticated peer can advertise a zero maximum packet size in SSH_MSG_CHANNEL_OPEN, causing later channel write…
Hardened Images
No fix yet
HIGH 7.5
CVE-2025-71319
image-size through 2.0.2 contains a denial of service vulnerability that allows remote attackers to permanently block the Node.js event loop by suppl…
Discovery
1.4.2+
MEDIUM 5.5
CVE-2023-43786
A vulnerability was found in libX11 due to an infinite loop within the PutSubImage() function. This flaw allows a local user to consume all available…
Enterprise Linux
1.8.7+
HIGH 7.5
CVE-2023-1108
A flaw was found in undertow. This issue makes achieving a denial of service possible due to an unexpected handshake status updated in SslConduit, wh…
Build Of Quarkus
Mitigation only
MEDIUM 6.5
CVE-2023-3255
A flaw was found in the QEMU built-in VNC server while processing ClientCutText messages. A wrong exit condition may lead to an infinite loop when in…
Enterprise Linux
after 8.0.3
MEDIUM 5.5
CVE-2014-0148
Qemu before 2.0 block driver for Hyper-V VHDX Images is vulnerable to infinite loops and other potential issues when calculating BAT entries, due to …
Virtualization
Patch available
HIGH 7.5
CVE-2022-0711EPSS 17%
A flaw was found in the way HAProxy processed HTTP responses containing the "Set-Cookie2" header. This flaw could allow an attacker to send crafted H…
Openshift Container Platform
2.2.21 / 2.3.18+
HIGH 7.5
CVE-2021-20270
An infinite loop in SMLLexer in Pygments versions 1.5 to 2.7.3 may lead to denial of service when performing syntax highlighting of a Standard ML (SM…
Openshift Container Platform
after 2.7.3
MEDIUM 6.5
CVE-2015-5694
Designate does not enforce the DNS protocol limit concerning record set sizes
Enterprise Linux Openstack Platform
Mitigation only
HIGH 7.5
CVE-2017-2646
It was found that when Keycloak before 2.5.5 receives a Logout request with a Extensions in the middle of the request, the SAMLSloRequestParser.parse…
Keycloak
2.5.5+
HIGH 7.5
CVE-2017-2670
It was found in Undertow before 1.3.28 that with non-clean TCP close, the Websocket server gets into infinite loop on every IO thread, effectively ca…
Undertow
1.3.28+
HIGH 7.5
CVE-2018-1041EPSS 16%
A vulnerability was found in the way RemoteMessageChannel, introduced in jboss-remoting versions 3.3.10, reads from an empty buffer. An attacker coul…
Jboss Enterprise Application Platform
No fix yet
MEDIUM 6.5
CVE-2017-9461
smbd in Samba before 4.4.10 and 4.5.x before 4.5.6 has a denial of service vulnerability (fd_open_atomic infinite loop with high CPU usage and memory…
Enterprise Linux Desktop
after 4.4.9
HIGH 7.5
CVE-2016-4970EPSS 11%
handler/ssl/OpenSslEngine.java in Netty 4.0.x before 4.0.37.Final and 4.1.x before 4.1.1.Final allows remote attackers to cause a denial of service (…
Jboss Data Grid
4.0.37 / 4.1.1+