Vulnerabilities > Loop with Unreachable Exit Condition ('Infinite Loop')

DATE CVE VULNERABILITY TITLE RISK
2019-09-15 CVE-2019-16319 Infinite Loop vulnerability in multiple products
In Wireshark 3.0.0 to 3.0.3 and 2.6.0 to 2.6.10, the Gryphon dissector could go into an infinite loop.
network
low complexity
wireshark opensuse debian CWE-835
7.5
2019-08-30 CVE-2019-12402 Infinite Loop vulnerability in multiple products
The file name encoding algorithm used internally in Apache Commons Compress 1.15 to 1.18 can get into an infinite loop when faced with specially crafted inputs.
network
low complexity
apache fedoraproject oracle CWE-835
7.5
2019-08-27 CVE-2019-15702 Infinite Loop vulnerability in Riot-Os Riot
In the TCP implementation (gnrc_tcp) in RIOT through 2019.07, the parser for TCP options does not terminate on all inputs, allowing a denial-of-service, because sys/net/gnrc/transport_layer/tcp/gnrc_tcp_option.c has an infinite loop for an unknown zero-length option.
network
low complexity
riot-os CWE-835
7.5
2019-08-18 CVE-2019-15143 Infinite Loop vulnerability in multiple products
In DjVuLibre 3.5.27, the bitmap reader component allows attackers to cause a denial-of-service error (resource exhaustion caused by a GBitmap::read_rle_raw infinite loop) by crafting a corrupted image file, related to libdjvu/DjVmDir.cpp and libdjvu/GBitmap.cpp.
5.5
2019-07-30 CVE-2019-14442 Infinite Loop vulnerability in multiple products
In mpc8_read_header in libavformat/mpc8.c in Libav 12.3, an input file can result in an avio_seek infinite loop and hang, with 100% CPU consumption.
network
low complexity
libav debian CWE-835
6.5
2019-07-28 CVE-2019-14372 Infinite Loop vulnerability in Libav 12.3
In Libav 12.3, there is an infinite loop in the function wv_read_block_header() in the file wvdec.c.
network
low complexity
libav CWE-835
6.5
2019-07-28 CVE-2019-14371 Infinite Loop vulnerability in Libav 12.3
An issue was discovered in Libav 12.3.
network
low complexity
libav CWE-835
6.5
2019-07-24 CVE-2019-1010189 Infinite Loop vulnerability in Mgetty Project Mgetty 1.1.28
mgetty prior to version 1.2.1 is affected by: Infinite Loop.
local
low complexity
mgetty-project CWE-835
5.5
2019-07-23 CVE-2019-14241 Infinite Loop vulnerability in Haproxy
HAProxy through 2.0.2 allows attackers to cause a denial of service (ha_panic) via vectors related to htx_manage_client_side_cookies in proto_htx.c.
network
low complexity
haproxy CWE-835
7.5
2019-07-21 CVE-2019-14207 Infinite Loop vulnerability in Foxitsoftware Phantompdf
An issue was discovered in Foxit PhantomPDF before 8.3.11.
network
low complexity
foxitsoftware CWE-835
7.5