Vulnerabilities > Loop with Unreachable Exit Condition ('Infinite Loop')

DATE CVE VULNERABILITY TITLE RISK
2024-11-12 CVE-2024-50319 Infinite Loop vulnerability in Ivanti Avalanche
An infinite loop in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to cause a denial of service.
network
low complexity
ivanti CWE-835
7.5
2024-11-12 CVE-2024-50320 Infinite Loop vulnerability in Ivanti Avalanche
An infinite loop in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to cause a denial of service.
network
low complexity
ivanti CWE-835
7.5
2024-11-12 CVE-2024-50321 Infinite Loop vulnerability in Ivanti Avalanche
An infinite loop in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to cause a denial of service.
network
low complexity
ivanti CWE-835
7.5
2024-11-12 CVE-2024-11097 Infinite Loop vulnerability in Razormist Student Record Management System 1.0
A vulnerability has been found in SourceCodester Student Record Management System 1.0 and classified as problematic.
local
low complexity
razormist CWE-835
5.5
2024-10-30 CVE-2024-33623 Infinite Loop vulnerability in Level1 Wbr-6012 Firmware R0.40E6
A denial of service vulnerability exists in the Web Application functionality of LevelOne WBR-6012 R0.40e6.
network
low complexity
level1 CWE-835
7.5
2024-10-21 CVE-2024-50011 Infinite Loop vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: ASoC: Intel: soc-acpi-intel-rpl-match: add missing empty item There is no links_num in struct snd_soc_acpi_mach {}, and we test !link->num_adr as a condition to end the loop in hda_sdw_machine_select(). So an empty item in struct snd_soc_acpi_link_adr array is required.
local
low complexity
linux CWE-835
5.5
2024-10-21 CVE-2024-49856 Infinite Loop vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: x86/sgx: Fix deadlock in SGX NUMA node search When the current node doesn't have an EPC section configured by firmware and all other EPC sections are used up, CPU can get stuck inside the while loop that looks for an available EPC page from remote nodes indefinitely, leading to a soft lockup.
local
low complexity
linux CWE-835
5.5
2024-09-13 CVE-2024-46701 Infinite Loop vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: libfs: fix infinite directory reads for offset dir After we switch tmpfs dir operations from simple_dir_operations to simple_offset_dir_operations, every rename happened will fill new dentry to dest dir's maple tree(&SHMEM_I(inode)->dir_offsets->mt) with a free key starting with octx->newx_offset, and then set newx_offset equals to free key + 1.
local
low complexity
linux CWE-835
5.5
2024-09-04 CVE-2024-45692 Infinite Loop vulnerability in multiple products
Webmin before 2.202 and Virtualmin before 7.20.2 allow a network traffic loop via spoofed UDP packets on port 10000.
network
low complexity
virtualmin webmin CWE-835
7.5
2024-09-04 CVE-2024-45395 Infinite Loop vulnerability in Sigstore Sigstore-Go
sigstore-go, a Go library for Sigstore signing and verification, is susceptible to a denial of service attack in versions prior to 0.6.1 when a verifier is provided a maliciously crafted Sigstore Bundle containing large amounts of verifiable data, in the form of signed transparency log entries, RFC 3161 timestamps, and attestation subjects.
network
low complexity
sigstore CWE-835
7.5