Vulnerabilities > Loop with Unreachable Exit Condition ('Infinite Loop')

DATE CVE VULNERABILITY TITLE RISK
2024-03-25 CVE-2021-47159 Infinite Loop vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: net: dsa: fix a crash if ->get_sset_count() fails If ds->ops->get_sset_count() fails then it "count" is a negative error code such as -EOPNOTSUPP.
local
low complexity
linux CWE-835
5.5
2024-03-07 CVE-2024-1931 Infinite Loop vulnerability in multiple products
NLnet Labs Unbound version 1.18.0 up to and including version 1.19.1 contain a vulnerability that can cause denial of service by a certain code path that can lead to an infinite loop.
network
low complexity
nlnetlabs fedoraproject CWE-835
7.5
2024-03-05 CVE-2022-48630 Infinite Loop vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: crypto: qcom-rng - fix infinite loop on requests not multiple of WORD_SZ The commit referenced in the Fixes tag removed the 'break' from the else branch in qcom_rng_read(), causing an infinite loop whenever 'max' is not a multiple of WORD_SZ.
local
low complexity
linux CWE-835
5.5
2024-02-26 CVE-2024-26603 Infinite Loop vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: x86/fpu: Stop relying on userspace for info to fault in xsave buffer Before this change, the expected size of the user space buffer was taken from fx_sw->xstate_size.
local
low complexity
linux CWE-835
5.5
2024-01-24 CVE-2021-42143 Infinite Loop vulnerability in Contiki-Ng Tinydtls 20180830
An issue was discovered in Contiki-NG tinyDTLS through master branch 53a0d97.
network
low complexity
contiki-ng CWE-835
critical
9.1
2024-01-24 CVE-2023-51890 Infinite Loop vulnerability in Ctan Mathtex
An infinite loop issue discovered in Mathtex 1.05 and before allows a remote attackers to consume CPU resources via crafted string in the application URL.
network
low complexity
ctan CWE-835
7.5
2024-01-16 CVE-2023-45232 Infinite Loop vulnerability in Tianocore Edk2
EDK2's Network Package is susceptible to an infinite loop vulnerability when parsing unknown options in the Destination Options header of IPv6.
network
low complexity
tianocore CWE-835
7.5
2024-01-16 CVE-2023-45233 Infinite Loop vulnerability in Tianocore Edk2
EDK2's Network Package is susceptible to an infinite lop vulnerability when parsing a PadN option in the Destination Options header of IPv6.
network
low complexity
tianocore CWE-835
7.5
2024-01-12 CVE-2023-0437 Infinite Loop vulnerability in Mongodb C Driver
When calling bson_utf8_validate on some inputs a loop with an exit condition that cannot be reached may occur, i.e.
network
low complexity
mongodb CWE-835
7.5
2024-01-10 CVE-2023-50120 Infinite Loop vulnerability in Gpac 2.3
MP4Box GPAC version 2.3-DEV-rev636-gfbd7e13aa-master was discovered to contain an infinite loop in the function av1_uvlc at media_tools/av_parsers.c.
local
low complexity
gpac CWE-835
5.5