RIOT is an open-source microcontroller operating system, designed to match the requirements of Internet of Things (IoT)
A vulnerability in Drupal Core allows Excessive Allocation.This issue affects Drupal Core: from 10.2.0 before 10.2.2, fr
In the Linux kernel, the following vulnerability has been resolved: ipv6: Fix soft lockups in fib6_select_path under hi
An issue discovered in BitmapAccess.cpp::FreeImage_AllocateBitmap in FreeImage 3.18.0 leads to an infinite loop and allo
In FRRouting (FRR) through 9.1, an infinite loop can occur when receiving a MP/GR capability as a dynamic capability bec
Open Networking Foundation SD-RAN ONOS onos-ric-sdk-go 0.8.12 allows infinite repetition of the processing of an error (
Deep Sea Electronics DSE855 Multipart Boundary Infinite Loop Denial-of-Service Vulnerability. This vulnerability allows
In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.2.2403.100, an a
Windows Standards-Based Storage Management Service Denial of Service Vulnerability
In ElementaryStreamQueue::dequeueAccessUnitMPEG4Video of ESQueue.cpp, there is a possible infinite loop leading to resou
7-Zip CopyCoder Infinite Loop Denial-of-Service Vulnerability. This vulnerability allows remote attackers to create a de
MONGO and ZigBee TLV dissector infinite loops in Wireshark 4.2.0 to 4.2.4, 4.0.0 to 4.0.14, and 3.6.0 to 3.6.22 allow de
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid potential panic during recovery
Due to a bug in packet data buffers management, the PPP printer in tcpdump can enter an infinite loop when reading a cra
In the Linux kernel, the following vulnerability has been resolved: fsdax: Fix infinite loop in dax_iomap_rw() I got a
A Denial of Service (DoS) vulnerability exists in the jaraco/zipp library, affecting all versions prior to 3.19.1. The v
PDFio is a simple C library for reading and writing PDF files. There is a denial of service (DOS) vulnerability in the T
A malformed DNS message in response to a query can cause the Lookup functions to get stuck in an infinite loop.
MP4Box GPAC version 2.3-DEV-rev636-gfbd7e13aa-master was discovered to contain an infinite loop in the function av1_uvlc
In the Linux kernel, the following vulnerability has been resolved: x86/fpu: Stop relying on userspace for info to faul
In the Linux kernel, the following vulnerability has been resolved: crypto: qcom-rng - fix infinite loop on requests no
Windows Hyper-V Denial of Service Vulnerability
In the Linux kernel, the following vulnerability has been resolved: PM / devfreq: Synchronize devfreq_monitor_[start/st
In the Linux kernel, the following vulnerability has been resolved: netdevsim: avoid potential loop in nsim_dev_trap_re
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: fixed integer types and null check
In the Linux kernel, the following vulnerability has been resolved: af_unix: Fix task hung while purging oob_skb in GC.
In the Linux kernel, the following vulnerability has been resolved: virtio_net: Do not send RSS key if it is not suppor
In the Linux kernel, the following vulnerability has been resolved: batman-adv: Avoid infinite loop trying to resize lo
In the Linux kernel, the following vulnerability has been resolved: ext4: add error checking to ext4_ext_replay_set_ibl
In the Linux kernel, the following vulnerability has been resolved: PCI: pciehp: Fix infinite loop in IRQ handler upon
In the Linux kernel, the following vulnerability has been resolved: net/sched: act_api: fix possible infinite loop in t
In the Linux kernel, the following vulnerability has been resolved: net/smc: Avoid overwriting the copies of clcsock ca
In the Linux kernel, the following vulnerability has been resolved: iavf: Fix hang during reboot/shutdown Recent commi
In the Linux kernel, the following vulnerability has been resolved: vhost: fix hung thread due to erroneous iotlb entri
In the Linux kernel, the following vulnerability has been resolved: can: mcp251xfd: fix infinite loop when xmit fails
In the Linux kernel, the following vulnerability has been resolved: x86/bhi: Avoid warning in #DB handler due to BHI mi
In the Linux kernel, the following vulnerability has been resolved: net, sunrpc: Remap EPERM in case of connection fail
In the Linux kernel, the following vulnerability has been resolved: ext4: fix infinite loop when replaying fast_commit
In the Linux kernel, the following vulnerability has been resolved: libfs: fix infinite directory reads for offset dir
In the Linux kernel, the following vulnerability has been resolved: x86/sgx: Fix deadlock in SGX NUMA node search When
In the Linux kernel, the following vulnerability has been resolved: ASoC: Intel: soc-acpi-intel-rpl-match: add missing
In the Linux kernel, the following vulnerability has been resolved: filemap: Fix bounds checking in filemap_read() If
In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: fix 6 GHz scan construction If
An issue was discovered in Mbed TLS 3.5.x before 3.6.0. When negotiating the TLS version on the server side, it can fall
When calling bson_utf8_validate on some inputs a loop with an exit condition that cannot be reached may occur, i.e. an i
OFPBucket in parser.py in Faucet SDN Ryu 4.34 allows attackers to cause a denial of service (infinite loop) via action.l
Vitess is a database clustering system for horizontal scaling of MySQL. When executing the following simple query, the `
A vulnerability has been identified in SIMATIC CP 1542SP-1 (6GK7542-6UX00-0XE0) (All versions < V2.3), SIMATIC CP 1542SP
The frame iterator could get stuck in a loop when encountering certain wasm frames leading to incorrect stack traces. Th
nanoid (aka Nano ID) before 5.0.9 mishandles non-integer values. 3.3.8 is also a fixed version.
Frequently Asked Questions
What is CWE-835?
CWE-835 (CWE-835) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-835?
There are 1,051 CVE records associated with CWE-835 in our database. Of these, 9 are critical severity, 388 are high severity, and 449 are medium severity.
How can I protect against CWE-835 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-835 using AI-powered security agents.
Detect CWE-835 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-835 vulnerabilities across your infrastructure.
Get Started