← Back
CWE-362

2,498 CVEs • Abstraction: Class • Likelihood of Exploit: Medium

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

The product contains a code sequence that can run concurrently with other code, and the code sequence requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence that is operating concurrently.

JSON object

Loading...

CVEs (2,498)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Mitsubishielectric
1Gc Enet Com Firmware
Jun 17, 2026
Apr 14, 2023
N/A· v4
5.9 MEDIUM· v3
N/A· v2
Signal Handler Race Condition vulnerability in Mitsubishi Electric India GC-ENET-COM whose first 2 digits of 11-digit serial number of unit are "16" allows a remote unauthenticated attacker to cause a denial-of-service (...Show more
Signal Handler Race Condition vulnerability in Mitsubishi Electric India GC-ENET-COM whose first 2 digits of 11-digit serial number of unit are "16" allows a remote unauthenticated attacker to cause a denial-of-service (DoS) condition in Ethernet communication by sending a large number of specially crafted packets to any UDP port when GC-ENET-COM is configured as a Modbus TCP Server. The communication resumes only when the power of the main unit is turned off and on or when the GC-ENET-COM is hot-swapped from the main unit. Show less
1Microsoft
5Windows Server 2008
Windows Server 2012Windows Server 2016+2 more
Jun 17, 2026
Apr 11, 2023
N/A· v4
6.6 MEDIUM· v3
N/A· v2
Windows DNS Server Remote Code Execution Vulnerability
1Microsoft
5Windows Server 2008
Windows Server 2012Windows Server 2016+2 more
Jun 17, 2026
Apr 11, 2023
N/A· v4
6.6 MEDIUM· v3
N/A· v2
Windows DNS Server Remote Code Execution Vulnerability
1Microsoft
5Windows Server 2008
Windows Server 2012Windows Server 2016+2 more
Jun 17, 2026
Apr 11, 2023
N/A· v4
6.6 MEDIUM· v3
N/A· v2
Windows DNS Server Remote Code Execution Vulnerability
1Microsoft
5Windows Server 2008
Windows Server 2012Windows Server 2016+2 more
Jun 17, 2026
Apr 11, 2023
N/A· v4
6.6 MEDIUM· v3
N/A· v2
Windows DNS Server Remote Code Execution Vulnerability
1Microsoft
5Windows Server 2008
Windows Server 2012Windows Server 2016+2 more
Jun 17, 2026
Apr 11, 2023
N/A· v4
6.6 MEDIUM· v3
N/A· v2
Windows DNS Server Remote Code Execution Vulnerability
1Microsoft
9Windows 10 1607
Windows 10 1809Windows 10 20h2+6 more
Jun 17, 2026
Apr 11, 2023
N/A· v4
7.0 HIGH· v3
N/A· v2
Windows Clip Service Elevation of Privilege Vulnerability
1Microsoft
13Windows 10 1507
Windows 10 1607Windows 10 1809+10 more
Jun 17, 2026
Apr 11, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
1Google
1Android
Jun 17, 2026
Apr 6, 2023
N/A· v4
6.4 MEDIUM· v3
N/A· v2
In display drm, there is a possible double free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID...Show more
In display drm, there is a possible double free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07570772; Issue ID: ALPS07570772.Show less
1Google
1Android
Jun 17, 2026
Apr 6, 2023
N/A· v4
6.4 MEDIUM· v3
N/A· v2
In display drm, there is a possible double free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID...Show more
In display drm, there is a possible double free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07570826; Issue ID: ALPS07570826.Show less
1Google
1Android
Jun 17, 2026
Apr 6, 2023
N/A· v4
6.4 MEDIUM· v3
N/A· v2
In vdec, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: AL...Show more
In vdec, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07608575; Issue ID: ALPS07608575.Show less
1Google
1Android
Jun 17, 2026
Apr 6, 2023
N/A· v4
6.4 MEDIUM· v3
N/A· v2
In vdec, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: AL...Show more
In vdec, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07671069; Issue ID: ALPS07671069.Show less
1Linux
1Linux Kernel
Jun 17, 2026
Apr 5, 2023
N/A· v4
4.7 MEDIUM· v3
N/A· v2
A race problem was found in fs/proc/task_mmu.c in the memory management sub-component in the Linux kernel. This issue may allow a local attacker with user privilege to cause a denial of service.
1Gbgplc
1Acuant Acufill Sdk
Jun 17, 2026
Apr 4, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
An issue was discovered in Acuant AcuFill SDK before 10.22.02.03. Multiple MSI's get executed out of a standard-user writable directory. Through a race condition and OpLock manipulation, these files can be overwritten by...Show more
An issue was discovered in Acuant AcuFill SDK before 10.22.02.03. Multiple MSI's get executed out of a standard-user writable directory. Through a race condition and OpLock manipulation, these files can be overwritten by a standard user. They then get executed by the elevated installer. This gives a standard user full SYSTEM code execution (elevation of privileges).Show less
1Google
1Android
Jun 17, 2026
Mar 24, 2023
N/A· v4
4.7 MEDIUM· v3
N/A· v2
In setPowerMode of HWC2.cpp, there is a possible out of bounds read due to a race condition. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed...Show more
In setPowerMode of HWC2.cpp, there is a possible out of bounds read due to a race condition. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-242688355Show less
1Kdab
1Hotspot
Jun 17, 2026
Mar 14, 2023
N/A· v4
7.0 HIGH· v3
N/A· v2
KDAB Hotspot 1.3.x and 1.4.x through 1.4.1, in a non-default configuration, allows privilege escalation because of race conditions involving symlinks and elevate_perf_privileges.sh chown calls.
1Microsoft
13Windows 10 1507
Windows 10 1607Windows 10 1809+10 more
Jun 17, 2026
Mar 14, 2023
N/A· v4
7.0 HIGH· v3
N/A· v2
Windows Graphics Component Elevation of Privilege Vulnerability
1Microsoft
13Windows 10 1507
Windows 10 1607Windows 10 1809+10 more
Jun 17, 2026
Mar 14, 2023
N/A· v4
7.1 HIGH· v3
N/A· v2
Windows Point-to-Point Protocol over Ethernet (PPPoE) Remote Code Execution Vulnerability
1Microsoft
12Windows 10 1507
Windows 10 1607Windows 10 1809+9 more
Jun 17, 2026
Mar 14, 2023
N/A· v4
8.1 HIGH· v3
N/A· v2
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
1Microsoft
8Windows 10 1809
Windows 10 20h2Windows 10 21h2+5 more
Jun 17, 2026
Mar 14, 2023
N/A· v4
7.0 HIGH· v3
N/A· v2
Windows BrokerInfrastructure Service Elevation of Privilege Vulnerability