CWE-833
21 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-833page 1 of 1
- CVE-2021-1622HIGHCVSS 8.6EG 8.62021-09-23
A vulnerability in the Common Open Policy Service (COPS) of Cisco IOS XE Software for Cisco cBR-8 Converged Broadband Routers could allow an unauthenticated, remote attacker to cause resource exhaustion, resulting in a denial of service (D…
- CVE-2022-4269MEDIUMCVSS 5.5EG 5.52022-12-05
A flaw was found in the Linux kernel Traffic Control (TC) subsystem. Using a specific networking configuration (redirecting egress packets to ingress using TC action "mirred") a local unprivileged user could trigger a CPU soft lockup (ABBA…
- CVE-2022-43767HIGHCVSS 7.5EG 7.52023-04-11
A vulnerability has been identified in SIMATIC CP 1242-7 V2 (6GK7242-7KX31-0XE0) (All versions < V3.4.29), SIMATIC CP 1243-1 (6GK7243-1BX30-0XE0) (All versions < V3.4.29), SIMATIC CP 1243-1 DNP3 (incl. SIPLUS variants) (All versions < V3.4…
- CVE-2023-0160MEDIUMCVSS 4.7EG 4.72023-07-18
A deadlock flaw was found in the Linux kernel’s BPF subsystem. This flaw allows a local user to potentially crash the system.
- CVE-2023-31084MEDIUMCVSS 5.5EG 5.52023-04-24
An issue was discovered in drivers/media/dvb-core/dvb_frontend.c in the Linux kernel 6.2. There is a blocking operation when a task is in !TASK_RUNNING. In dvb_frontend_get_event, wait_event_interruptible is called; the condition is dvb_fr…
- CVE-2023-3436LOWCVSS 3.3EG 3.32023-06-27
Xpdf 4.04 will deadlock on a PDF object stream whose "Length" field is itself in another object stream.
- CVE-2023-42441MEDIUMCVSS 5.3EG 5.32023-09-18
Vyper is a Pythonic Smart Contract Language for the Ethereum Virtual Machine (EVM). Starting in version 0.2.9 and prior to version 0.3.10, locks of the type `@nonreentrant("")` or `@nonreentrant('')` do not produce reentrancy checks at run…
- CVE-2024-0639MEDIUMCVSS 5.5EG 4.72024-01-17
A denial of service vulnerability due to a deadlock was found in sctp_auto_asconf_init in net/sctp/socket.c in the Linux kernel’s SCTP subsystem. This flaw allows guests with local user privileges to trigger a deadlock and potentially cr…
- CVE-2024-0641MEDIUMCVSS 5.5EG 4.72024-01-17
A denial of service vulnerability was found in tipc_crypto_key_revoke in net/tipc/crypto.c in the Linux kernel’s TIPC subsystem. This flaw allows guests with local user privileges to trigger a deadlock and potentially crash the system.
- CVE-2024-29172MEDIUMCVSS 5.9EG 5.92025-02-12
Dell BSAFE SSL-J, versions prior to 6.6 and versions 7.0 through 7.2, contains a deadlock vulnerability. A remote attacker could potentially exploit this vulnerability, leading to a Denial of Service.
- CVE-2024-47506MEDIUMCVSS 5.9EG 5.92024-10-11
A Deadlock vulnerability in the packet forwarding engine (PFE) of Juniper Networks Junos OS on SRX Series allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS). When a large amount of traffic is processed by…
- CVE-2024-48077HIGHCVSS 7.5EG 7.52026-01-15
NanoMQ v0.22.7 is vulnerable to Denial of Service (DoS) due to improper resource throttling. A crafted sequence of requests causes the recv-q queue to saturate, leading to the rapid exhaustion of system file descriptors (FDs). This exhaust…
- CVE-2024-8447MEDIUMCVSS 5.9EG 5.92025-01-02
A security issue was discovered in the LRA Coordinator component of Narayana. When Cancel is called in LRA, an execution time of approximately 2 seconds occurs. If Join is called with the same LRA ID within that timeframe, the application …
- CVE-2025-10150HIGHCVSS 8.7EG 0.02025-10-28
Webserver crash caused by scanning on TCP port 80 in Softing Industrial Automation GmbH gateways and switch.This issue affects smartLink HW-PN: from 1.02 through 1.03 smartLink HW-DP: 1.31
- CVE-2025-1713HIGHCVSS 7.5EG 7.52025-07-17
When setting up interrupt remapping for legacy PCI(-X) devices, including PCI(-X) bridges, a lookup of the upstream bridge is required. This lookup, itself involving acquiring of a lock, is done in a context where acquiring that lock is un…
- CVE-2025-21313MEDIUMCVSS 6.5EG 6.52025-01-14
Windows Security Account Manager (SAM) Denial of Service Vulnerability
- CVE-2025-36010MEDIUMCVSS 6.5EG 6.52025-07-29
IBM Db2 for Linux 12.1.0, 12.1.1, and 12.1.2 could allow an unauthenticated user to cause a denial of service due to executable segments that are waiting for each other to release a necessary lock.
- CVE-2025-54796HIGHCVSS 7.5EG 7.52025-08-02
Copyparty is a portable file server. Versions prior to 1.18.9, the filter parameter for the "Recent Uploads" page allows arbitrary RegExes. If this feature is enabled (which is the default), an attacker can craft a filter which deadlocks t…
- CVE-2025-59463MEDIUMCVSS 4.3EG 4.32025-10-27
An attacker may cause chunk-size mismatches that block file transfers and prevent subsequent transfers.
- CVE-2025-8312HIGHCVSS 7.1EG 7.12025-07-30
Deadlock in PAM automatic check-in feature in Devolutions Server allows a password to remain valid beyond the end of its intended check-out period due to a deadlock occurring in the scheduling service.This issue affects the following versi…
- CVE-2026-47334MEDIUMCVSS 5.5EG 5.52026-05-28
Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which incorrectly sleep while holding a spinlock in notification handling code. The bug can be triggered by an unprivileged local user and can result in kernel panic or deadlock.
Map vulnerabilities like CWE-833 to your infrastructure
EchelonGraph correlates every CVE — across CWE-833 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →