Vulnerabilities > Uncontrolled Recursion

DATE CVE VULNERABILITY TITLE RISK
2017-12-09 CVE-2017-16419 Uncontrolled Recursion vulnerability in Adobe products
An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.30355 and earlier versions, and 11.0.22 and earlier versions.
network
low complexity
adobe CWE-674
6.5
2017-09-29 CVE-2017-14861 Uncontrolled Recursion vulnerability in Exiv2 0.26
There is a stack consumption vulnerability in the Exiv2::Internal::stringFormat function of image.cpp in Exiv2 0.26.
local
low complexity
exiv2 CWE-674
5.5
2017-08-18 CVE-2017-12964 Uncontrolled Recursion vulnerability in Libsass 3.4.5
There is a stack consumption issue in LibSass 3.4.5 that is triggered in the function Sass::Eval::operator() in eval.cpp.
network
low complexity
libsass CWE-674
7.5
2017-07-23 CVE-2017-11556 Uncontrolled Recursion vulnerability in Libsass 3.4.5
There is a stack consumption vulnerability in the Parser::advanceToNextToken function in parser.cpp in LibSass 3.4.5.
network
low complexity
libsass CWE-674
7.5
2017-07-23 CVE-2017-11554 Uncontrolled Recursion vulnerability in Libsass 3.4.5
There is a stack consumption vulnerability in the lex function in parser.hpp (as used in sassc) in LibSass 3.4.5.
network
low complexity
libsass CWE-674
7.5
2017-07-11 CVE-2017-11164 Uncontrolled Recursion vulnerability in Pcre 8.41
In PCRE 8.41, the OP_KETRMAX feature in the match function in pcre_exec.c allows stack exhaustion (uncontrolled recursion) when processing a crafted regular expression.
network
low complexity
pcre CWE-674
7.5
2017-07-06 CVE-2017-0692 Uncontrolled Recursion vulnerability in Google Android
A denial of service vulnerability in the Android media framework.
local
low complexity
google CWE-674
5.5
2017-06-21 CVE-2017-9766 Uncontrolled Recursion vulnerability in multiple products
In Wireshark 2.2.7, PROFINET IO data with a high recursion depth allows remote attackers to cause a denial of service (stack exhaustion) in the dissect_IODWriteReq function in plugins/profinet/packet-dcerpc-pn-io.c.
network
low complexity
wireshark debian CWE-674
7.5
2017-06-16 CVE-2017-9729 Uncontrolled Recursion vulnerability in Uclibc 0.9.33.2
In uClibc 0.9.33.2, there is stack exhaustion (uncontrolled recursion) in the check_dst_limits_calc_pos_1 function in misc/regex/regexec.c when processing a crafted regular expression.
network
low complexity
uclibc CWE-674
7.5
2017-06-14 CVE-2017-9617 Uncontrolled Recursion vulnerability in Wireshark 2.2.7
In Wireshark 2.2.7, deeply nested DAAP data may cause stack exhaustion (uncontrolled recursion) in the dissect_daap_one_tag function in epan/dissectors/packet-daap.c in the DAAP dissector.
local
low complexity
wireshark CWE-674
5.5