Vulnerabilities > Loop with Unreachable Exit Condition ('Infinite Loop')

DATE CVE VULNERABILITY TITLE RISK
2022-01-14 CVE-2021-23567 Infinite Loop vulnerability in Colors.Js Project Colors.Js 1.4.1/1.4.44Liberty2
The package colors after 1.4.0 are vulnerable to Denial of Service (DoS) that was introduced through an infinite loop in the americanFlag module.
network
low complexity
colors-js-project CWE-835
7.5
2022-01-12 CVE-2021-45445 Infinite Loop vulnerability in Unisys Clearpath MCP Tcp/Ip Networking Services 59.1/60.0/62.0
Unisys ClearPath MCP TCP/IP Networking Services 59.1, 60.0, and 62.0 has an Infinite Loop.
network
low complexity
unisys CWE-835
7.5
2022-01-04 CVE-2021-40111 Infinite Loop vulnerability in Apache James 2.2.0/3.3.0/3.4.0
In Apache James, while fuzzing with Jazzer the IMAP parsing stack, we discover that crafted APPEND and STATUS IMAP command could be used to trigger infinite loops resulting in expensive CPU computations and OutOfMemory exceptions.
network
low complexity
apache CWE-835
6.5
2021-12-30 CVE-2021-4182 Infinite Loop vulnerability in multiple products
Crash in the RFC 7468 dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file
network
low complexity
wireshark fedoraproject oracle CWE-835
7.5
2021-12-30 CVE-2021-4184 Infinite Loop vulnerability in multiple products
Infinite loop in the BitTorrent DHT dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file
network
low complexity
wireshark fedoraproject debian oracle CWE-835
7.5
2021-12-30 CVE-2021-4185 Infinite Loop vulnerability in multiple products
Infinite loop in the RTMPT dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file
network
low complexity
wireshark fedoraproject debian oracle CWE-835
7.5
2021-12-22 CVE-2021-45257 Infinite Loop vulnerability in Nasm Netwide Assembler 2.16
An infinite loop vulnerability exists in nasm 2.16rc0 via the gpaste_tokens function.
local
low complexity
nasm CWE-835
5.5
2021-12-21 CVE-2021-44924 Infinite Loop vulnerability in Gpac 1.1.0
An infinite loop vulnerability exists in gpac 1.1.0 in the gf_log function, which causes a Denial of Service.
local
low complexity
gpac CWE-835
5.5
2021-12-21 CVE-2021-45297 Infinite Loop vulnerability in Gpac 1.1.0
An infinite loop vulnerability exists in Gpac 1.0.1 in gf_get_bit_size.
local
low complexity
gpac CWE-835
5.5
2021-12-14 CVE-2021-4044 Infinite Loop vulnerability in multiple products
Internally libssl in OpenSSL calls X509_verify_cert() on the client side to verify a certificate supplied by a server.
network
low complexity
openssl netapp nodejs CWE-835
7.5