Vulnerabilities > Uncontrolled Recursion

DATE CVE VULNERABILITY TITLE RISK
2019-10-03 CVE-2018-16300 Uncontrolled Recursion vulnerability in Tcpdump
The BGP parser in tcpdump before 4.9.3 allows stack consumption in print-bgp.c:bgp_attr_print() because of unlimited recursion.
network
low complexity
tcpdump CWE-674
7.5
2019-09-30 CVE-2019-13124 Uncontrolled Recursion vulnerability in Foxitsoftware Foxit Reader
Foxit Reader 9.6.0.25114 and earlier has two unique RecursiveCall bugs involving 3 functions exhausting available stack memory because of Uncontrolled Recursion in the V8 JavaScript engine (issue 2 of 2).
network
low complexity
foxitsoftware CWE-674
7.5
2019-09-30 CVE-2019-13123 Uncontrolled Recursion vulnerability in Foxitsoftware Foxit Reader
Foxit Reader 9.6.0.25114 and earlier has two unique RecursiveCall bugs involving 3 functions exhausting available stack memory because of Uncontrolled Recursion in the V8 JavaScript engine (issue 1 of 2).
network
low complexity
foxitsoftware CWE-674
7.5
2019-09-19 CVE-2019-11779 Uncontrolled Recursion vulnerability in multiple products
In Eclipse Mosquitto 1.5.0 to 1.6.5 inclusive, if a malicious MQTT client sends a SUBSCRIBE packet containing a topic that consists of approximately 65400 or more '/' characters, i.e.
6.5
2019-09-09 CVE-2019-16163 Uncontrolled Recursion vulnerability in multiple products
Oniguruma before 6.9.3 allows Stack Exhaustion in regcomp.c because of recursion in regparse.c.
7.5
2019-09-06 CVE-2019-16088 Uncontrolled Recursion vulnerability in Glyphandcog Xpdfreader 3.04
Xpdf 3.04 has a SIGSEGV in XRef::fetch in XRef.cc after many recursive calls to Catalog::countPageTree in Catalog.cc.
local
low complexity
glyphandcog CWE-674
5.5
2019-08-26 CVE-2019-15542 Uncontrolled Recursion vulnerability in Ammonia Project Ammonia
An issue was discovered in the ammonia crate before 2.1.0 for Rust.
network
low complexity
ammonia-project CWE-674
7.5
2019-08-26 CVE-2018-20994 Uncontrolled Recursion vulnerability in Trust-Dns-Proto Project Trust-Dns-Proto
An issue was discovered in the trust-dns-proto crate before 0.5.0-alpha.3 for Rust.
network
low complexity
trust-dns-proto-project CWE-674
7.5
2019-08-26 CVE-2018-20993 Uncontrolled Recursion vulnerability in Yaml-Rust Project Yaml-Rust
An issue was discovered in the yaml-rust crate before 0.4.1 for Rust.
network
low complexity
yaml-rust-project CWE-674
7.5
2019-08-18 CVE-2019-15144 Uncontrolled Recursion vulnerability in multiple products
In DjVuLibre 3.5.27, the sorting functionality (aka GArrayTemplate<TYPE>::sort) allows attackers to cause a denial-of-service (application crash due to an Uncontrolled Recursion) by crafting a PBM image file that is mishandled in libdjvu/GContainer.h.
5.5