Skip to main content

CWE archive

CWE-835 CVEs

Programmatic archive

878 CVEs tagged with CWE-83510 Critical, 372 High, 474 Medium, 22 Low, 0 Unrated.

CVE-2020-35139

Published Aug 11, 2023

An issue was discovered in OFPBundleCtrlMsg in parser.py in Faucet SDN Ryu version 4.34, allows remote attackers to cause a denial of service (DoS) (infinite loop).

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2020-24221

Published Aug 11, 2023

An issue was discovered in GetByte function in miniupnp ngiflib version 0.4, allows local attackers to cause a denial of service (DoS) via crafted .gif file (infinite loop).

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-4010

Published Jul 31, 2023

A flaw was found in the USB Host Controller Driver framework in the Linux kernel. The usb_giveback_urb function has a logic loophole in its implementation. Due to the inappropriat…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-3748

Published Jul 24, 2023

A flaw was found in FRRouting when parsing certain babeld unicast hello messages that are intended to be ignored. This issue may allow an attacker to send specially crafted hello…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-33294

Published Jul 18, 2023

In elfutils 0.183, an infinite loop was found in the function handle_symtab in readelf.c .Which allows attackers to cause a denial of service (infinite loop) via crafted file.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-38197

Published Jul 13, 2023

An issue was discovered in Qt before 5.15.15, 6.x before 6.2.10, and 6.3.x through 6.5.x before 6.5.3. There are infinite loops in recursive entity expansion.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-36807

Published Jun 30, 2023

pypdf is a pure-python PDF library capable of splitting, merging, cropping, and transforming the pages of PDF files. In version 2.10.5 an attacker who uses this vulnerability can…

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-20116

Published Jun 28, 2023

A vulnerability in the Administrative XML Web Service (AXL) API of Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Ed…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-36464

Published Jun 27, 2023

pypdf is an open source, pure-python PDF library. In affected versions an attacker may craft a PDF which leads to an infinite loop if `__parse_content_stream` is executed. That is…

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-35933

Published Jun 26, 2023

OPenFGA is an open source authorization/permission engine built for developers. OpenFGA versions v1.1.0 and prior are vulnerable to a DoS attack when Check and ListObjects calls a…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-30300

Published May 3, 2023

An issue in the component hang.wasm of WebAssembly 1.0 causes an infinite loop.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-10103

Published Apr 17, 2023

A vulnerability, which was classified as problematic, was found in InternalError503 Forget It up to 1.3. This affects an unknown part of the file js/settings.js. The manipulation…

CVSS 2.8 · Low
Vendor/product tagsBeta · best-effort

CVE-2022-37013

Published Mar 29, 2023

This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Unified Automation OPC UA C++ Demo Server 1.7.6-537 [with vendor ro…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-20999

Published Mar 24, 2023

In multiple locations, there is a possible way to trigger a persistent reboot loop due to improper input validation. This could lead to local denial of service with User execution…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-20998

Published Mar 24, 2023

In multiple locations, there is a possible way to trigger a persistent reboot loop due to improper input validation. This could lead to local denial of service with User execution…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-20997

Published Mar 24, 2023

In multiple locations, there is a possible way to trigger a persistent reboot loop due to improper input validation. This could lead to local denial of service with User execution…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-20996

Published Mar 24, 2023

In multiple locations, there is a possible way to trigger a persistent reboot loop due to improper input validation. This could lead to local denial of service with User execution…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-27560

Published Mar 3, 2023

Math/PrimeField.php in phpseclib 3.x before 3.0.19 has an infinite loop with composite primefields.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-25824

Published Feb 23, 2023

Mod_gnutls is a TLS module for Apache HTTPD based on GnuTLS. Versions from 0.9.0 to 0.12.0 (including) did not properly fail blocking read operations on TLS connections when the t…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-25653

Published Feb 16, 2023

node-jose is a JavaScript implementation of the JSON Object Signing and Encryption (JOSE) for web browsers and node.js-based servers. Prior to version 2.2.0, when using the non-de…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 351-375 of 878 CVEsPage 15 of 36