Skip to main content

CWE archive

CWE-835 CVEs

Programmatic archive

902 CVEs tagged with CWE-83512 Critical, 392 High, 475 Medium, 23 Low, 0 Unrated.

CVE-2015-6815

Published Jan 31, 2020

The process_tx_desc function in hw/net/e1000.c in QEMU before 2.4.0.1 does not properly process transmit descriptor data when sending a network packet, which allows attackers to c…

CVSS 3.5 · Low

CVE-2020-1600

Published Jan 15, 2020

In a Point-to-Multipoint (P2MP) Label Switched Path (LSP) scenario, an uncontrolled resource consumption vulnerability in the Routing Protocol Daemon (RPD) in Juniper Networks Jun…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-20201

Published Dec 31, 2019

An issue was discovered in ezXML 0.8.3 through 0.8.6. The ezxml_parse_* functions mishandle XML entities, leading to an infinite loop in which memory allocations occur.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-5274

Published Dec 26, 2019

USG9500 with versions of V500R001C30;V500R001C60 have a denial of service vulnerability. Due to a flaw in the X.509 implementation in the affected products which can result in an…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2011-1474

Published Dec 26, 2019

A locally locally exploitable DOS vulnerability was found in pax-linux versions 2.6.32.33-test79.patch, 2.6.38-test3.patch, and 2.6.37.4-test14.patch. A bad bounds check in arch_g…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-5091

Published Dec 12, 2019

An exploitable denial-of-service vulnerability exists in the Dicom-packet parsing functionality of LEADTOOLS libltdic.so version 20.0.2019.3.15. A specially crafted packet can cau…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-19582

Published Dec 11, 2019

An issue was discovered in Xen through 4.12.x allowing x86 guest OS users to cause a denial of service (infinite loop) because certain bit iteration is mishandled. In a number of…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-18180

Published Dec 5, 2019

Improper Check for filenames with overly long extensions in PostMaster (sending in email) or uploading files (e.g. attaching files to mails) of ((OTRS)) Community Edition and OTRS…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-19588

Published Dec 5, 2019

The validators package 0.12.2 through 0.12.5 for Python enters an infinite loop when validators.domain is called with a crafted domain string. This is fixed in 0.12.6.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-5097

Published Dec 3, 2019

A denial-of-service vulnerability exists in the processing of multi-part/form-data requests in the base GoAhead web server application in versions v5.0.1, v.4.1.1 and v3.6.5. A sp…

CVSS 7.5 · High
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2019-18455

Published Nov 26, 2019

An issue was discovered in GitLab Community and Enterprise Edition 11 through 12.4 when building Nested GraphQL queries. It has a large or infinite loop.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-19307

Published Nov 26, 2019

An integer overflow in parse_mqtt in mongoose.c in Cesanta Mongoose 6.16 allows an attacker to achieve remote DoS (infinite loop), or possibly cause an out-of-bounds write, by sen…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2019-18817

Published Nov 12, 2019

Istio 1.3.x before 1.3.5 allows Denial of Service because continue_on_listener_filters_timeout is set to True, a related issue to CVE-2019-18836.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-18836

Published Nov 11, 2019

Envoy 1.12.0 allows a remote denial of service because of resource loops, as demonstrated by a single idle TCP connection being able to keep a worker thread in an infinite busy lo…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2010-0207

Published Oct 30, 2019

In xpdf, the xref table contains an infinite loop which allows remote attackers to cause a denial of service (application crash) in xpdf-based PDF viewers.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 601-625 of 902 CVEsPage 25 of 37