Vulnerabilities > Loop with Unreachable Exit Condition ('Infinite Loop')

DATE CVE VULNERABILITY TITLE RISK
2019-07-17 CVE-2019-13453 Infinite Loop vulnerability in Zipios Project Zipios 0.1.5/0.1.6
Zipios before 0.1.7 does not properly handle certain malformed zip archives and can go into an infinite loop, causing a denial of service.
network
low complexity
zipios-project CWE-835
6.5
2019-07-03 CVE-2019-6638 Infinite Loop vulnerability in F5 products
On BIG-IP 14.1.0-14.1.0.5 and 14.0.0-14.0.0.4, Malformed http requests made to an undisclosed iControl REST endpoint can lead to infinite loop of the restjavad process.
network
low complexity
f5 CWE-835
6.5
2019-05-06 CVE-2018-17202 Infinite Loop vulnerability in Apache Commons Imaging 0.97
Certain input files could make the code to enter into an infinite loop when Apache Sanselan 0.97-incubator was used to parse them, which could be used in a DoS attack.
network
low complexity
apache CWE-835
7.5
2019-04-29 CVE-2019-3560 Infinite Loop vulnerability in Facebook Fizz
An improperly performed length calculation on a buffer in PlaintextRecordLayer could lead to an infinite loop and denial-of-service based on user input.
network
low complexity
facebook CWE-835
7.5
2019-04-09 CVE-2019-10900 Infinite Loop vulnerability in multiple products
In Wireshark 3.0.0, the Rbm dissector could go into an infinite loop.
network
low complexity
wireshark fedoraproject CWE-835
7.5
2019-04-09 CVE-2019-10898 Infinite Loop vulnerability in multiple products
In Wireshark 3.0.0, the GSUP dissector could go into an infinite loop.
network
low complexity
wireshark fedoraproject CWE-835
7.5
2019-04-09 CVE-2019-10897 Infinite Loop vulnerability in multiple products
In Wireshark 3.0.0, the IEEE 802.11 dissector could go into an infinite loop.
network
low complexity
wireshark fedoraproject CWE-835
7.5
2019-03-21 CVE-2018-16789 Infinite Loop vulnerability in Shellinabox Project Shellinabox
libhttp/url.c in shellinabox through 2.20 has an implementation flaw in the HTTP request parsing logic.
network
low complexity
shellinabox-project CWE-835
7.5
2019-03-13 CVE-2019-9747 Infinite Loop vulnerability in Tinysvcmdns Project Tinysvcmdns 20160718/20171105/20180116
In tinysvcmdns through 2018-01-16, a maliciously crafted mDNS (Multicast DNS) packet triggers an infinite loop while parsing an mDNS query.
network
low complexity
tinysvcmdns-project CWE-835
7.5
2019-02-26 CVE-2019-6594 Infinite Loop vulnerability in F5 products
On BIG-IP 11.5.1-11.6.3.2, 12.1.3.4-12.1.3.7, 13.0.0 HF1-13.1.1.1, and 14.0.0-14.0.0.2, Multi-Path TCP (MPTCP) does not protect against multiple zero length DATA_FINs in the reassembly queue, which can lead to an infinite loop in some circumstances.
network
high complexity
f5 CWE-835
5.9