Vulnerabilities > Uncontrolled Recursion

DATE CVE VULNERABILITY TITLE RISK
2019-12-09 CVE-2019-19645 Uncontrolled Recursion vulnerability in multiple products
alter.c in SQLite through 3.30.1 allows attackers to trigger infinite recursion via certain types of self-referential views in conjunction with ALTER TABLE statements.
local
low complexity
sqlite netapp oracle tenable siemens CWE-674
2.1
2019-12-04 CVE-2019-11937 Uncontrolled Recursion vulnerability in Facebook Mcrouter
In Mcrouter prior to v0.41.0, a large struct input provided to the Carbon protocol reader could result in stack exhaustion and denial of service.
network
low complexity
facebook CWE-674
5.0
2019-11-11 CVE-2019-18854 Uncontrolled Recursion vulnerability in 10Up Safe SVG
A Denial Of Service vulnerability exists in the safe-svg (aka Safe SVG) plugin through 1.9.4 for WordPress, related to unlimited recursion for a '<use ...
network
low complexity
10up CWE-674
7.5
2019-11-11 CVE-2019-18853 Uncontrolled Recursion vulnerability in Imagemagick
ImageMagick before 7.0.9-0 allows remote attackers to cause a denial of service because XML_PARSE_HUGE is not properly restricted in coders/svg.c, related to SVG and libxml2.
4.3
2019-11-06 CVE-2019-18797 Uncontrolled Recursion vulnerability in Sass-Lang Libsass
LibSass 3.6.1 has uncontrolled recursion in Sass::Eval::operator()(Sass::Binary_Expression*) in eval.cpp.
network
sass-lang CWE-674
4.3
2019-10-31 CVE-2018-4002 Uncontrolled Recursion vulnerability in Cujo Smart Firewall Firmware 7003
An exploitable denial-of-service vulnerability exists in the mdnscap binary of the CUJO Smart Firewall running firmware 7003.
network
low complexity
cujo CWE-674
7.5
2019-10-10 CVE-2019-17450 Uncontrolled Recursion vulnerability in multiple products
find_abstract_instance in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32, allows remote attackers to cause a denial of service (infinite recursion and application crash) via a crafted ELF file.
network
low complexity
gnu opensuse canonical CWE-674
6.5
2019-10-03 CVE-2018-16452 Uncontrolled Recursion vulnerability in Tcpdump
The SMB parser in tcpdump before 4.9.3 has stack exhaustion in smbutil.c:smb_fdata() via recursion.
network
low complexity
tcpdump CWE-674
7.5
2019-10-03 CVE-2018-16300 Uncontrolled Recursion vulnerability in Tcpdump
The BGP parser in tcpdump before 4.9.3 allows stack consumption in print-bgp.c:bgp_attr_print() because of unlimited recursion.
network
low complexity
tcpdump CWE-674
7.5
2019-09-30 CVE-2019-13124 Uncontrolled Recursion vulnerability in Foxitsoftware Foxit Reader
Foxit Reader 9.6.0.25114 and earlier has two unique RecursiveCall bugs involving 3 functions exhausting available stack memory because of Uncontrolled Recursion in the V8 JavaScript engine (issue 2 of 2).
network
low complexity
foxitsoftware CWE-674
5.0