Vulnerabilities > Loop with Unreachable Exit Condition ('Infinite Loop')

DATE CVE VULNERABILITY TITLE RISK
2021-09-07 CVE-2021-39194 Infinite Loop vulnerability in Kaml Project Kaml
kaml is an open source implementation of the YAML format with support for kotlinx.serialization.
network
low complexity
kaml-project CWE-835
6.5
2021-09-07 CVE-2021-33599 Infinite Loop vulnerability in F-Secure products
A vulnerability affecting F-Secure Antivirus engine was discovered whereby scanning WIM archive file can lead to denial-of-service (infinite loop and freezes AV engine scanner).
local
low complexity
f-secure CWE-835
5.5
2021-08-27 CVE-2021-28698 Infinite Loop vulnerability in multiple products
long running loops in grant table handling In order to properly monitor resource use, Xen maintains information on the grant mappings a domain may create to map grants offered by other domains.
local
low complexity
xen fedoraproject debian CWE-835
5.5
2021-08-23 CVE-2021-39140 Infinite Loop vulnerability in multiple products
XStream is a simple library to serialize objects to XML and back again.
6.3
2021-08-19 CVE-2021-27565 Infinite Loop vulnerability in Hcc-Embedded Nichestack 3.0
The web server in InterNiche NicheStack through 4.0.1 allows remote attackers to cause a denial of service (infinite loop and networking outage) via an unexpected valid HTTP request such as OPTIONS.
network
low complexity
hcc-embedded CWE-835
7.5
2021-08-19 CVE-2021-31400 Infinite Loop vulnerability in Hcc-Embedded Nichestack 3.0
An issue was discovered in tcp_pulloutofband() in tcp_in.c in HCC embedded InterNiche 4.0.1.
network
low complexity
hcc-embedded CWE-835
7.5
2021-08-18 CVE-2021-37714 Infinite Loop vulnerability in multiple products
jsoup is a Java library for working with HTML.
network
low complexity
jsoup quarkus oracle netapp CWE-835
7.5
2021-08-12 CVE-2021-37686 Infinite Loop vulnerability in Google Tensorflow
TensorFlow is an end-to-end open source platform for machine learning.
local
low complexity
google CWE-835
5.5
2021-08-10 CVE-2021-38387 Infinite Loop vulnerability in Contiki-Os Contiki 3.0
In Contiki 3.0, a Telnet server that silently quits (before disconnection with clients) leads to connected clients entering an infinite loop and waiting forever, which may cause excessive CPU consumption.
network
low complexity
contiki-os CWE-835
7.5
2021-08-09 CVE-2021-38311 Infinite Loop vulnerability in Contiki-Os Contiki 3.0
In Contiki 3.0, potential nonterminating acknowledgment loops exist in the Telnet service.
network
low complexity
contiki-os CWE-835
7.5