Show filters
60 Total Results
Displaying 1-10 of 60
Sort by:
Attacker Value
Unknown

CVE-2020-36691

Disclosure Date: March 24, 2023 (last updated February 23, 2025)
An issue was discovered in the Linux kernel before 5.8. lib/nlattr.c allows attackers to cause a denial of service (unbounded recursion) via a nested Netlink policy with a back reference.
Attacker Value
Unknown

CVE-2021-38569

Disclosure Date: August 11, 2021 (last updated February 23, 2025)
An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows stack consumption via recursive function calls during the handling of XFA forms or link objects.
Attacker Value
Unknown

CVE-2021-38566

Disclosure Date: August 11, 2021 (last updated February 23, 2025)
An issue was discovered in Foxit PDF Reader before 11.0.1 and PDF Editor before 11.0.1. It allows stack consumption during recursive processing of embedded XML nodes.
Attacker Value
Unknown

CVE-2021-22144

Disclosure Date: July 26, 2021 (last updated February 23, 2025)
In Elasticsearch versions before 7.13.3 and 6.8.17 an uncontrolled recursion vulnerability that could lead to a denial of service attack was identified in the Elasticsearch Grok parser. A user with the ability to submit arbitrary queries to Elasticsearch could create a malicious Grok query that will crash the Elasticsearch node.
Attacker Value
Unknown

CVE-2021-36773

Disclosure Date: July 18, 2021 (last updated February 23, 2025)
uBlock Origin before 1.36.2 and nMatrix before 4.4.9 support an arbitrary depth of parameter nesting for strict blocking, which allows crafted web sites to cause a denial of service (unbounded recursion that can trigger memory consumption and a loss of all blocking functionality).
Attacker Value
Unknown

CVE-2021-36154

Disclosure Date: July 09, 2021 (last updated February 23, 2025)
HTTP2ToRawGRPCServerCodec in gRPC Swift 1.1.1 and earlier allows remote attackers to deny service via the delivery of many small messages within a single HTTP/2 frame, leading to Uncontrolled Recursion and stack consumption.
Attacker Value
Unknown

CVE-2020-20213

Disclosure Date: July 07, 2021 (last updated February 23, 2025)
Mikrotik RouterOs 6.44.5 (long-term tree) suffers from an stack exhaustion vulnerability in the /nova/bin/net process. An authenticated remote attacker can cause a Denial of Service due to overloading the systems CPU.
Attacker Value
Unknown

CVE-2021-28210

Disclosure Date: June 11, 2021 (last updated February 22, 2025)
An unlimited recursion in DxeCore in EDK II.
Attacker Value
Unknown

CVE-2021-3530

Disclosure Date: June 02, 2021 (last updated February 22, 2025)
A flaw was discovered in GNU libiberty within demangle_path() in rust-demangle.c, as distributed in GNU Binutils version 2.36. A crafted symbol can cause stack memory to be exhausted leading to a crash.
Attacker Value
Unknown

CVE-2020-36370

Disclosure Date: May 28, 2021 (last updated February 22, 2025)
Stack overflow vulnerability in parse_unary Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (DoS) via a crafted file.