Skip to main content

CWE archive

CWE-835 CVEs

Programmatic archive

905 CVEs tagged with CWE-83512 Critical, 393 High, 477 Medium, 23 Low, 0 Unrated.

CVE-2021-44718

Published Sep 2, 2022

wolfSSL through 5.0.0 allows an attacker to cause a denial of service and infinite loop in the client component by sending crafted traffic from a Machine-in-the-Middle (MITM) posi…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-28882

Published Aug 23, 2022

A Denial-of-Service (DoS) vulnerability was discovered in F-Secure & WithSecure products whereby the aegen.dll will go into an infinite loop when unpacking PE files. This eventual…

CVSS 4.3 · Medium

CVE-2022-37768

Published Aug 18, 2022

libjpeg commit 281daa9 was discovered to contain an infinite loop via the component Frame::ParseTrailer.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-35166

Published Aug 18, 2022

libjpeg commit 842c7ba was discovered to contain an infinite loop via the component JPEG::ReadInternal.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-35165

Published Aug 18, 2022

An issue in AP4_SgpdAtom::AP4_SgpdAtom() of Bento4-1.6.0-639 allows attackers to cause a Denial of Service (DoS) via a crafted mp4 input.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-34661

Published Aug 10, 2022

A vulnerability has been identified in Teamcenter V12.4 (All versions < V12.4.0.15), Teamcenter V13.0 (All versions < V13.0.0.10), Teamcenter V13.1 (All versions < V13.1.0.10), Te…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-35724

Published Aug 9, 2022

It is possible to provide data to be read that leads the reader to loop in cycles endlessly, consuming CPU. This issue affects Rust applications using Apache Avro Rust SDK prior t…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-36313

Published Jul 21, 2022

An issue was discovered in the file-type package before 16.5.4 and 17.x before 17.1.3 for Node.js. A malformed MKV file could cause the file type detector to get caught in an infi…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-25851

Published Jun 10, 2022

The package jpeg-js before 0.4.4 are vulnerable to Denial of Service (DoS) where a particular piece of input will cause to enter an infinite loop and never return.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-40592

Published Jun 8, 2022

GPAC version before commit 71460d72ec07df766dab0a4d52687529f3efcf0a (version v1.0.1 onwards) contains loop with unreachable exit condition ('infinite loop') vulnerability in ISOBM…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-29190

Published May 21, 2022

Pion DTLS is a Go implementation of Datagram Transport Layer Security. Prior to version 2.1.4, an attacker can send packets that sends Pion DTLS into an infinite loop when process…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-24792

Published Apr 25, 2022

PJSIP is a free and open source multimedia communication library written in C. A denial-of-service vulnerability affects applications on a 32-bit systems that use PJSIP versions 2…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-24859

Published Apr 18, 2022

PyPDF2 is an open source python PDF library capable of splitting, merging, cropping, and transforming the pages of PDF files. In versions prior to 1.27.5 an attacker who uses this…

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort
Showing 426-450 of 905 CVEsPage 18 of 37