CVE Vulnerabilities

CVE-2023-27560

Loop with Unreachable Exit Condition ('Infinite Loop')

Published: Mar 03, 2023 | Modified: Mar 10, 2023
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

Math/PrimeField.php in phpseclib 3.x before 3.0.19 has an infinite loop with composite primefields.

Weakness

The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.

Affected Software

Name Vendor Start Version End Version
Phpseclib Phpseclib 3.0.0 (including) 3.0.19 (excluding)
Ldap-account-manager Ubuntu bionic *
Ldap-account-manager Ubuntu kinetic *
Ldap-account-manager Ubuntu lunar *
Ldap-account-manager Ubuntu mantic *
Ldap-account-manager Ubuntu trusty *
Ldap-account-manager Ubuntu xenial *
Php-phpseclib Ubuntu bionic *
Php-phpseclib Ubuntu kinetic *
Php-phpseclib Ubuntu lunar *
Php-phpseclib Ubuntu mantic *
Php-phpseclib Ubuntu trusty *
Php-phpseclib Ubuntu xenial *
Php-phpseclib3 Ubuntu kinetic *
Php-phpseclib3 Ubuntu lunar *
Php-phpseclib3 Ubuntu mantic *
Php-phpseclib3 Ubuntu trusty *
Php-phpseclib3 Ubuntu xenial *

References