Show filters
198 Total Results
Displaying 11-20 of 198
Sort by:
Attacker Value
Unknown

CVE-2022-24191

Disclosure Date: April 04, 2022 (last updated February 23, 2025)
In HTMLDOC 1.9.14, an infinite loop in the gif_read_lzw function can lead to a pointer arbitrarily pointing to heap memory and resulting in a buffer overflow.
Attacker Value
Unknown

CVE-2022-1222

Disclosure Date: April 04, 2022 (last updated February 23, 2025)
Inf loop in GitHub repository gpac/gpac prior to 2.1.0-DEV.
Attacker Value
Unknown

CVE-2022-24763

Disclosure Date: March 30, 2022 (last updated February 23, 2025)
PJSIP is a free and open source multimedia communication library written in the C language. Versions 2.12 and prior contain a denial-of-service vulnerability that affects PJSIP users that consume PJSIP's XML parsing in their apps. Users are advised to update. There are no known workarounds.
Attacker Value
Unknown

CVE-2022-23352

Disclosure Date: March 21, 2022 (last updated February 23, 2025)
An issue in BigAnt Software BigAnt Server v5.6.06 can lead to a Denial of Service (DoS).
Attacker Value
Unknown

CVE-2021-3737

Disclosure Date: March 04, 2022 (last updated February 23, 2025)
A flaw was found in python. An improperly handled HTTP response in the HTTP client code of python may allow a remote attacker, who controls the HTTP server, to make the client script enter an infinite loop, consuming CPU time. The highest threat from this vulnerability is to system availability.
Attacker Value
Unknown

CVE-2022-0711

Disclosure Date: March 02, 2022 (last updated February 23, 2025)
A flaw was found in the way HAProxy processed HTTP responses containing the "Set-Cookie2" header. This flaw could allow an attacker to send crafted HTTP response packets which lead to an infinite loop, eventually resulting in a denial of service condition. The highest threat from this vulnerability is availability.
Attacker Value
Unknown

CVE-2022-21159

Disclosure Date: February 28, 2022 (last updated February 23, 2025)
A denial of service vulnerability exists in the parseNormalModeParameters functionality of MZ Automation GmbH libiec61850 1.5.0. A specially-crafted series of network requests can lead to denial of service. An attacker can send a sequence of malformed iec61850 messages to trigger this vulnerability.
Attacker Value
Unknown

CVE-2021-4021

Disclosure Date: February 24, 2022 (last updated February 23, 2025)
A vulnerability was found in Radare2 in versions prior to 5.6.2, 5.6.0, 5.5.4 and 5.5.2. Mapping a huge section filled with zeros of an ELF64 binary for MIPS architecture can lead to uncontrolled resource consumption and DoS.
Attacker Value
Unknown

CVE-2022-0585

Disclosure Date: February 18, 2022 (last updated February 23, 2025)
Large loops in multiple protocol dissectors in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allow denial of service via packet injection or crafted capture file
Attacker Value
Unknown

CVE-2022-23641

Disclosure Date: February 15, 2022 (last updated February 23, 2025)
Discourse is an open source discussion platform. In versions prior to 2.8.1 in the `stable` branch, 2.9.0.beta2 in the `beta` branch, and 2.9.0.beta2 in the `tests-passed` branch, users can trigger a Denial of Service attack by posting a streaming URL. Parsing Oneboxes in the background job trigger an infinite loop, which cause memory leaks. This issue is patched in version 2.8.1 of the `stable` branch, 2.9.0.beta2 of the `beta` branch, and 2.9.0.beta2 of the `tests-passed` branch. As a workaround, disable onebox in admin panel completely or specify allow list of domains that will be oneboxed.