Vulnerabilities > Loop with Unreachable Exit Condition ('Infinite Loop')

DATE CVE VULNERABILITY TITLE RISK
2018-10-09 CVE-2018-6977 Infinite Loop vulnerability in VMWare Esxi, Fusion and Workstation
VMware ESXi (6.7, 6.5, 6.0), Workstation (15.x and 14.x) and Fusion (11.x and 10.x) contain a denial-of-service vulnerability due to an infinite loop in a 3D-rendering shader.
local
low complexity
vmware CWE-835
4.9
2018-10-09 CVE-2018-18070 Infinite Loop vulnerability in Mercedes-Benz Comand 17/13.050.12
An issue was discovered in Daimler Mercedes-Benz COMAND 17/13.0 50.12 on Mercedes-Benz C-Class 2018 vehicles.
7.1
2018-10-07 CVE-2018-18024 Infinite Loop vulnerability in Imagemagick 7.0.813
In ImageMagick 7.0.8-13 Q16, there is an infinite loop in the ReadBMPImage function of the coders/bmp.c file.
4.3
2018-10-01 CVE-2018-17846 Infinite Loop vulnerability in multiple products
The html package (aka x/net/html) through 2018-09-25 in Go mishandles <table><math><select><mi><select></table>, leading to an infinite loop during an html.Parse call because inSelectIM and inSelectInTableIM do not comply with a specification.
network
low complexity
golang fedoraproject CWE-835
7.5
2018-09-19 CVE-2018-8017 Infinite Loop vulnerability in Apache Tika
In Apache Tika 1.2 to 1.18, a carefully crafted file can trigger an infinite loop in the IptcAnpaParser.
local
low complexity
apache CWE-835
5.5
2018-09-14 CVE-2018-17042 Infinite Loop vulnerability in Scalabium Dbf2Txt
An issue has been found in dbf2txt through 2012-07-19.
network
scalabium CWE-835
4.3
2018-09-06 CVE-2018-16646 Infinite Loop vulnerability in multiple products
In Poppler 0.68.0, the Parser::getObj() function in Parser.cc may cause infinite recursion via a crafted file.
4.3
2018-08-30 CVE-2018-14621 Infinite Loop vulnerability in Libtirpc Project Libtirpc
An infinite loop vulnerability was found in libtirpc before version 1.0.2-rc2.
network
low complexity
libtirpc-project CWE-835
7.5
2018-08-27 CVE-2018-10938 Infinite Loop vulnerability in multiple products
A flaw was found in the Linux kernel present since v4.0-rc1 and through v4.13-rc4.
7.1
2018-08-25 CVE-2018-15856 Infinite Loop vulnerability in multiple products
An infinite loop when reaching EOL unexpectedly in compose/parser.c (aka the keymap parser) in xkbcommon before 0.8.1 could be used by local attackers to cause a denial of service during parsing of crafted keymap files.
local
low complexity
xkbcommon canonical CWE-835
2.1