CWE-835— Loop with Unreachable Exit Condition (Infinite Loop)
The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.— MITRE CWE catalog
981 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-835page 13 of 20
- CVE-2024-42358MEDIUMCVSS 6.2EG 6.22024-08-06
PDFio is a simple C library for reading and writing PDF files. There is a denial of service (DOS) vulnerability in the TTF parser. Maliciously crafted TTF files can cause the program to utilize 100% of the Memory and enter an infinite loop…
- CVE-2024-5569MEDIUMCVSS 6.2EG 6.22024-07-09
A Denial of Service (DoS) vulnerability exists in the jaraco/zipp library, affecting all versions prior to 3.19.1. The vulnerability is triggered when processing a specially crafted zip file that leads to an infinite loop. This issue also …
- CVE-2022-48635MEDIUMCVSS 6.2EG 6.22024-04-28
In the Linux kernel, the following vulnerability has been resolved: fsdax: Fix infinite loop in dax_iomap_rw() I got an infinite loop and a WARNING report when executing a tail command in virtiofs. WARNING: CPU: 10 PID: 964 at fs/ioma…
- CVE-2024-2397MEDIUMCVSS 6.2EG 6.22024-04-12
Due to a bug in packet data buffers management, the PPP printer in tcpdump can enter an infinite loop when reading a crafted DLT_PPP_SERIAL .pcap savefile. This problem does not affect any tcpdump release, but it affected the git master b…
- CVE-2023-36807MEDIUMCVSS 6.2EG 6.22023-06-30
pypdf is a pure-python PDF library capable of splitting, merging, cropping, and transforming the pages of PDF files. In version 2.10.5 an attacker who uses this vulnerability can craft a PDF which leads to an infinite loop. This infinite l…
- CVE-2023-36464MEDIUMCVSS 6.2EG 6.22023-06-27
pypdf is an open source, pure-python PDF library. In affected versions an attacker may craft a PDF which leads to an infinite loop if `__parse_content_stream` is executed. That is, for example, the case if the user extracted text from such…
- CVE-2022-24859MEDIUMCVSS 6.2EG 6.22022-04-18
PyPDF2 is an open source python PDF library capable of splitting, merging, cropping, and transforming the pages of PDF files. In versions prior to 1.27.5 an attacker who uses this vulnerability can craft a PDF which leads to an infinite lo…
- CVE-2015-8785MEDIUMCVSS 6.2EG 6.22016-02-08
The fuse_fill_write_pages function in fs/fuse/file.c in the Linux kernel before 4.4 allows local users to cause a denial of service (infinite loop) via a writev system call that triggers a zero length for the first segment of an iov.
- CVE-2026-34962MEDIUMCVSS 5.5EG 6.22026-05-11
barebox version prior to 2026.04.0 contains a denial-of-service vulnerability in ext4 directory parsing in fs/ext4/ext4_common.c where the ext4fs_iterate_dir() function fails to validate that directory entry length values are non-zero. Att…
- CVE-2026-34852MEDIUMCVSS 6.1EG 6.12026-04-13
Stack overflow vulnerability in the media platform. Impact: Successful exploitation of this vulnerability may affect availability.
- CVE-2026-4179MEDIUMCVSS 6.1EG 6.12026-03-16
Issues in stm32 USB device driver (drivers/usb/device/usb_dc_stm32.c) can lead to an infinite while loop.
- CVE-2024-6790MEDIUMCVSS 6.1EG 6.12025-02-03
Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a non-privileged user process to make v…
- CVE-2018-16845MEDIUMCVSS 6.1EG 6.12018-11-07
nginx before versions 1.15.6, 1.14.1 has a vulnerability in the ngx_http_mp4_module, which might allow an attacker to cause infinite loop in a worker process, cause a worker process crash, or might result in worker process memory disclosur…
- CVE-2026-102726MEDIUMCVSS 6.0EG 6.02026-09-29
Unbounded PPP IPCP Option Parsing Causes a Worker Stall and Out-of-bounds Read
- CVE-2026-82579MEDIUMCVSS 6.0EG 6.02026-08-31
Loop with Unreachable Exit Condition (Infinite Loop) vulnerability in ash-project ash_ai allows an attacker who can influence a model's output to hang the tool loop and drive unbounded, repeated model requests. AshAi.ToolLoop classifies a…
- CVE-2026-0619MEDIUMCVSS 6.0EG 6.02026-02-12
A reachable infinite loop via an integer wraparound is present in Silicon Labs' Matter SDK which allows an attacker to trigger a denial of service. A hard reset is required to recover the device.
- CVE-2025-27560MEDIUMCVSS 6.0EG 6.02026-02-10
Loop with unreachable exit condition ('infinite loop') for some Intel(R) Platform within Ring 0: Kernel may allow a denial of service. System software adversary with a privileged user combined with a low complexity attack may enable denial…
- CVE-2021-3416MEDIUMCVSS 6.0EG 6.02021-03-18
A potential stack overflow via infinite loop issue was found in various NIC emulators of QEMU in versions up to and including 5.2.0. The issue occurs in loopback mode of a NIC wherein reentrant DMA checks get bypassed. A guest user/process…
- CVE-2020-13800MEDIUMCVSS 6.0EG 6.02020-06-04
ati-vga in hw/display/ati.c in QEMU 4.2.0 allows guest OS users to trigger infinite recursion via a crafted mm_index value during an ati_mm_read or ati_mm_write call.
- CVE-2016-8910MEDIUMCVSS 6.0EG 6.02016-11-04
The rtl8139_cplus_transmit function in hw/net/rtl8139.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and CPU consumption) by leveraging failure to limit the ring descriptor c…
- CVE-2016-8909MEDIUMCVSS 6.0EG 6.02016-11-04
The intel_hda_xfer function in hw/audio/intel-hda.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and CPU consumption) via an entry with the same value for buffer length and p…
- CVE-2026-106567MEDIUMCVSS 5.9EG 5.92026-10-07
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-32 and 6.9.13-57, a crafted PSD file can trigger an integer-conversion error in the PSD decoder on 32-bit builds, causing an infi…
- CVE-2026-106565MEDIUMCVSS 5.9EG 5.92026-10-07
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-32 and 6.9.13-57, a missing end-of-file check while reading bzip2-compressed image data can cause an infinite loop and exhaust pr…
- CVE-2026-80489MEDIUMCVSS 5.9EG 5.92026-09-15
Converting crafted EUC_JISX0213 input to UCS-4 or the internal wide character encoding, for example with iconv, in the GNU C Library version 2.3 to 2.44 may result in the converter making no progress, causing the calling application to han…
- CVE-2026-77117MEDIUMCVSS 5.9EG 5.92026-09-15
Converting crafted SHIFT_JISX0213 input to UCS-4 or the internal wide character encoding, for example with iconv, in the GNU C Library version 2.3 to 2.44 may result in the converter making no progress, causing the calling application to h…
- CVE-2026-78129MEDIUMCVSS 5.9EG 5.92026-09-11
strongSwan 4.6.2 through 6.0.7 has an infinite loop in PKCS#5 decryption.
- CVE-2026-68762MEDIUMCVSS 5.9EG 5.92026-08-17
In JetBrains Ktor before 3.4.1 potential DoS attack via WebSocket decompression was possible
- CVE-2026-50324MEDIUMCVSS 5.9EG 5.92026-07-14
Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.
- CVE-2023-2593MEDIUMCVSS 5.9EG 5.92025-07-30
A flaw exists within the Linux kernel's handling of new TCP connections. The issue results from the lack of memory release after its effective lifetime. This vulnerability allows an unauthenticated attacker to create a denial of service co…
- CVE-2024-24788MEDIUMCVSS 5.9EG 5.92024-05-08
A malformed DNS message in response to a query can cause the Lookup functions to get stuck in an infinite loop.
- CVE-2023-22325MEDIUMCVSS 5.9EG 5.92023-10-12
A denial of service vulnerability exists in the DCRegister DDNS_RPC_MAX_RECV_SIZE functionality of SoftEther VPN 4.41-9782-beta, 5.01.9674 and 5.02. A specially crafted network packet can lead to denial of service. An attacker can perform …
- CVE-2023-43645MEDIUMCVSS 5.9EG 5.92023-09-27
OpenFGA is an authorization/permission engine built for developers and inspired by Google Zanzibar. OpenFGA is vulnerable to a denial of service attack when certain Check calls are executed against authorization models that contain circula…
- CVE-2023-35933MEDIUMCVSS 5.9EG 5.92023-06-26
OPenFGA is an open source authorization/permission engine built for developers. OpenFGA versions v1.1.0 and prior are vulnerable to a DoS attack when Check and ListObjects calls are executed against authorization models that contain circul…
- CVE-2021-44718MEDIUMCVSS 5.9EG 5.92022-09-02
wolfSSL through 5.0.0 allows an attacker to cause a denial of service and infinite loop in the client component by sending crafted traffic from a Machine-in-the-Middle (MITM) position. The root cause is that the client module accepts TLS m…
- CVE-2021-3908MEDIUMCVSS 5.9EG 5.92021-11-11
OctoRPKI does not limit the depth of a certificate chain, allowing for a CA to create children in an ad-hoc fashion, thereby making tree traversal never end.
- CVE-2019-6594MEDIUMCVSS 5.9EG 5.92019-02-26
On BIG-IP 11.5.1-11.6.3.2, 12.1.3.4-12.1.3.7, 13.0.0 HF1-13.1.1.1, and 14.0.0-14.0.0.2, Multi-Path TCP (MPTCP) does not protect against multiple zero length DATA_FINs in the reassembly queue, which can lead to an infinite loop in some circ…
- CVE-2018-18070MEDIUMCVSS 5.9EG 5.92018-10-09
An issue was discovered in Daimler Mercedes-Benz COMAND 17/13.0 50.12 on Mercedes-Benz C-Class 2018 vehicles. Defining or receiving a specific navigation route might cause the system to freeze and reboot after a few transmissions. When the…
- CVE-2018-10938MEDIUMCVSS 5.9EG 5.92018-08-27
A flaw was found in the Linux kernel present since v4.0-rc1 and through v4.13-rc4. A crafted network packet sent remotely by an attacker may force the kernel to enter an infinite loop in the cipso_v4_optptr() function in net/ipv4/cipso_ipv…
- CVE-2026-20054MEDIUMCVSS 5.8EG 5.82026-03-04
Multiple Cisco products are affected by a vulnerability in the Snort 3 VBA feature that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to crash. This vulnerability is due to improper error ch…
- CVE-2021-21235MEDIUMCVSS 5.7EG 5.72021-01-06
kamadak-exif is an exif parsing library written in pure Rust. In kamadak-exif version 0.5.2, there is an infinite loop in parsing crafted PNG files. Specifically, reader::read_from_container can cause an infinite loop when a crafted PNG fi…
- CVE-2017-17131MEDIUMCVSS 5.7EG 5.72018-03-05
Huawei DP300 V500R002C00; RP200 V500R002C00; V600R006C00; TE30 V100R001C10; V600R006C00; TE50 V600R006C00; TE60 V100R001C10; V500R002C00; V600R006C00; VP9660 V500R002C10 have an DoS vulnerability due to insufficient validation of the param…
- CVE-2017-9330MEDIUMCVSS 5.6EG 5.62017-06-08
QEMU (aka Quick Emulator) before 2.9.0, when built with the USB OHCI Emulation support, allows local guest OS users to cause a denial of service (infinite loop) by leveraging an incorrect return value, a different vulnerability than CVE-20…
- CVE-2017-9310MEDIUMCVSS 5.6EG 5.62017-06-08
QEMU (aka Quick Emulator), when built with the e1000e NIC emulation support, allows local guest OS privileged users to cause a denial of service (infinite loop) via vectors related to setting the initial receive / transmit descriptor head …
- CVE-2024-11595MEDIUMCVSS 7.8EG 5.52024-11-21
FiveCo RAP dissector infinite loop in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial of service via packet injection or crafted capture file
- CVE-2026-95386MEDIUMCVSS 5.5EG 5.52026-09-29
TTL file parser infinite loop in 4.6.0 to 4.6.8 allows denial of service
- CVE-2026-96418MEDIUMCVSS 5.5EG 5.52026-09-29
TIFF protocol dissector infinite loop in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service
- CVE-2026-81885MEDIUMCVSS 5.5EG 5.52026-09-22
radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's NE relocation fixup-chain parser was vulnerable because the NE relocation parser followed fixup chains without an active iteration lim…
- CVE-2026-6554MEDIUMCVSS 5.5EG 5.52026-09-05
libpcap BPF interpreter treats the offset in the 'ja L' BPF instruction as a signed integer to implement looping via backward jumps, but it does not limit the number of loop iterations. In particular uncommon use cases a crafted filter pr…
- CVE-2026-84309MEDIUMCVSS 5.5EG 5.52026-09-01
pypdf is a free and open-source pure-python PDF library. Prior to 6.16.0, an attacker can craft a PDF whose cyclic tree structure causes pypdf/generic/_data_structures.py TreeObject.insert_child to follow /Next links indefinitely when a wr…
- CVE-2026-45271MEDIUMCVSS 5.5EG 5.52026-08-21
Picotls is a TLS protocol library that allows users select different crypto backends based on their use case. Picotls implements its own ASN.1 validation helper, which is used by the minicrypto backend while parsing local PKCS#8 private ke…
Map vulnerabilities like CWE-835 to your infrastructure
EchelonGraph correlates every CVE — across CWE-835 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →