← Back
CWE-362

2,498 CVEs • Abstraction: Class • Likelihood of Exploit: Medium

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

The product contains a code sequence that can run concurrently with other code, and the code sequence requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence that is operating concurrently.

JSON object

Loading...

CVEs (2,498)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Amazon
1Hotpatch
Jun 17, 2026
Jun 17, 2022
N/A· v4
7.0 HIGH· v3
4.4 MEDIUM· v2
Versions of the Amazon AWS Apache Log4j hotpatch package before log4j-cve-2021-44228-hotpatch-1.3.5 are affected by a race condition that could lead to a local privilege escalation. This Hotpatch package is not a replace...Show more
Versions of the Amazon AWS Apache Log4j hotpatch package before log4j-cve-2021-44228-hotpatch-1.3.5 are affected by a race condition that could lead to a local privilege escalation. This Hotpatch package is not a replacement for updating to a log4j version that mitigates CVE-2021-44228 or CVE-2021-45046; it provides a temporary mitigation to CVE-2021-44228 by hotpatching the local Java virtual machines. To do so, it iterates through all running Java processes, performs several checks, and executes the Java virtual machine with the same permissions and capabilities as the running process to load the hotpatch. A local user could cause the hotpatch script to execute a binary with elevated privileges by running a custom java process that performs exec() of an SUID binary after the hotpatch has observed the process path and before it has observed its effective user ID.Show less
1Microsoft
9Windows 10
Windows 11Windows 7+6 more
Jun 17, 2026
Jun 15, 2022
N/A· v4
8.5 HIGH· v3
6.0 MEDIUM· v2
Windows Hyper-V Remote Code Execution Vulnerability
1Google
1Android
Jun 17, 2026
Jun 15, 2022
N/A· v4
7.0 HIGH· v3
6.9 MEDIUM· v2
In ipu_core_jqs_msg_transport_kernel_write_sync of ipu-core-jqs-msg-transport.c, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with no additional execution p...Show more
In ipu_core_jqs_msg_transport_kernel_write_sync of ipu-core-jqs-msg-transport.c, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-176754369References: N/AShow less
1Google
1Android
Jun 17, 2026
Jun 15, 2022
N/A· v4
6.4 MEDIUM· v3
4.4 MEDIUM· v2
In lock_sock_nested of sock.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for expl...Show more
In lock_sock_nested of sock.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-174846563References: Upstream kernelShow less
1Google
1Android
Jun 17, 2026
Jun 15, 2022
N/A· v4
6.4 MEDIUM· v3
6.9 MEDIUM· v2
In TBD of TBD, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege in the kernel with System execution privileges needed. User interaction is not needed for exploi...Show more
In TBD of TBD, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege in the kernel with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-219513976References: Upstream kernelShow less
1Google
1Android
Jun 17, 2026
Jun 15, 2022
N/A· v4
7.0 HIGH· v3
6.9 MEDIUM· v2
In ip_check_mc_rcu of igmp.c, there is a possible use after free due to improper locking. This could lead to local escalation of privilege when opening and closing inet sockets with no additional execution privileges nee...Show more
In ip_check_mc_rcu of igmp.c, there is a possible use after free due to improper locking. This could lead to local escalation of privilege when opening and closing inet sockets with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-112551163References: Upstream kernelShow less
1Qualcomm
80Apq8053 Firmware
Ar8035 FirmwareMsm8953 Firmware+77 more
Jun 17, 2026
Jun 14, 2022
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Use after free in graphics fence due to a race condition while closing fence file descriptor and destroy graphics timeline simultaneously in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Indust...Show more
Use after free in graphics fence due to a race condition while closing fence file descriptor and destroy graphics timeline simultaneously in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon WearablesShow less
1Huawei
3Emui
HarmonyosMagic Ui
Jun 17, 2026
Jun 13, 2022
N/A· v4
4.7 MEDIUM· v3
1.9 LOW· v2
The kernel module has the race condition vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
3Debian
FedoraprojectXen
3Debian Linux
FedoraXen
Jun 17, 2026
Jun 9, 2022
N/A· v4
6.4 MEDIUM· v3
6.9 MEDIUM· v2
x86 pv: Race condition in typeref acquisition Xen maintains a type reference count for pages, in addition to a regular reference count. This scheme is used to maintain invariants required for Xen's safety, e.g. PV guests...Show more
x86 pv: Race condition in typeref acquisition Xen maintains a type reference count for pages, in addition to a regular reference count. This scheme is used to maintain invariants required for Xen's safety, e.g. PV guests may not have direct writeable access to pagetables; updates need auditing by Xen. Unfortunately, the logic for acquiring a type reference has a race condition, whereby a safely TLB flush is issued too early and creates a window where the guest can re-establish the read/write mapping before writeability is prohibited.Show less
3Debian
LinuxRedhat
3Debian Linux
Enterprise LinuxLinux Kernel
Jun 17, 2026
Jun 2, 2022
N/A· v4
6.3 MEDIUM· v3
3.3 LOW· v2
An out-of-bounds read flaw was found in the Linux kernel’s TeleTYpe subsystem. The issue occurs in how a user triggers a race condition using ioctls TIOCSPTLCK and TIOCGPTPEER and TIOCSTI and TCXONC with leakage of memor...Show more
An out-of-bounds read flaw was found in the Linux kernel’s TeleTYpe subsystem. The issue occurs in how a user triggers a race condition using ioctls TIOCSPTLCK and TIOCGPTPEER and TIOCSTI and TCXONC with leakage of memory in the flush_to_ldisc function. This flaw allows a local user to crash the system or read unauthorized random data from memory.Show less
1Microsoft
1Edge Chromium
Jun 17, 2026
Jun 1, 2022
N/A· v4
8.3 HIGH· v3
5.1 MEDIUM· v2
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
1Microsoft
1Edge Chromium
Jun 17, 2026
Jun 1, 2022
N/A· v4
8.3 HIGH· v3
5.1 MEDIUM· v2
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
1Agendaless
1Waitress
Jun 17, 2026
May 31, 2022
N/A· v4
5.9 MEDIUM· v3
4.3 MEDIUM· v2
Waitress is a Web Server Gateway Interface server for Python 2 and 3. Waitress versions 2.1.0 and 2.1.1 may terminate early due to a thread closing a socket while the main thread is about to call select(). This will lead...Show more
Waitress is a Web Server Gateway Interface server for Python 2 and 3. Waitress versions 2.1.0 and 2.1.1 may terminate early due to a thread closing a socket while the main thread is about to call select(). This will lead to the main thread raising an exception that is not handled and then causing the entire application to be killed. This issue has been fixed in Waitress 2.1.2 by no longer allowing the WSGI thread to close the socket. Instead, that is always delegated to the main thread. There is no work-around for this issue. However, users using waitress behind a reverse proxy server are less likely to have issues if the reverse proxy always reads the full response.Show less
1Apple
5Ipados
Iphone OsMacos+2 more
Jun 17, 2026
May 26, 2022
N/A· v4
4.7 MEDIUM· v3
1.9 LOW· v2
A race condition was addressed with improved state handling. This issue is fixed in watchOS 8.6, tvOS 15.5, macOS Monterey 12.4, iOS 15.5 and iPadOS 15.5. A malicious attacker with arbitrary read and write capability may...Show more
A race condition was addressed with improved state handling. This issue is fixed in watchOS 8.6, tvOS 15.5, macOS Monterey 12.4, iOS 15.5 and iPadOS 15.5. A malicious attacker with arbitrary read and write capability may be able to bypass Pointer Authentication.Show less
1Apple
4Ipados
Iphone OsMacos+1 more
Jun 17, 2026
May 26, 2022
N/A· v4
7.5 HIGH· v3
7.6 HIGH· v2
A race condition was addressed with improved locking. This issue is fixed in tvOS 15.5, macOS Monterey 12.4, iOS 15.5 and iPadOS 15.5. An application may be able to execute arbitrary code with kernel privileges.
1Apple
1Macos
Jun 17, 2026
May 26, 2022
N/A· v4
4.7 MEDIUM· v3
2.6 LOW· v2
Description: A race condition was addressed with additional validation. This issue is fixed in macOS Monterey 12.3. A malicious application may be able to modify protected parts of the file system.
2Netapp
Redhat
8Active Iq Unified Manager
FuseJboss Enterprise Application Platform+5 more
Jun 17, 2026
May 24, 2022
N/A· v4
5.9 MEDIUM· v3
2.6 LOW· v2
A flaw was found in undertow. The HTTP2SourceChannel fails to write the final frame under some circumstances, resulting in a denial of service. The highest threat from this vulnerability is availability. This flaw affect...Show more
A flaw was found in undertow. The HTTP2SourceChannel fails to write the final frame under some circumstances, resulting in a denial of service. The highest threat from this vulnerability is availability. This flaw affects Undertow versions prior to 2.0.35.SP1, prior to 2.2.6.SP1, prior to 2.2.7.SP1, prior to 2.0.36.SP1, prior to 2.2.9.Final and prior to 2.0.39.Final.Show less
1Lenovo
1System Interface Foundation
Jun 17, 2026
May 18, 2022
N/A· v4
7.0 HIGH· v3
4.4 MEDIUM· v2
A race condition vulnerability was reported in IMController, a software component of Lenovo System Interface Foundation, prior to version 1.1.20.3 that could allow a local attacker to connect and interact with the IMCont...Show more
A race condition vulnerability was reported in IMController, a software component of Lenovo System Interface Foundation, prior to version 1.1.20.3 that could allow a local attacker to connect and interact with the IMController child process' named pipe.Show less
1Intel
7Optane Memory H10 With Solid State Storage Firmware
Optane Memory H20 With Solid State Storage FirmwareOptane Ssd 900p Firmware+4 more
Jun 17, 2026
May 12, 2022
N/A· v4
4.7 MEDIUM· v3
4.7 MEDIUM· v2
Race condition within a thread in firmware for some Intel(R) Optane(TM) SSD and Intel(R) SSD DC Products may allow a privileged user to potentially enable denial of service via local access.
1Intel
7Optane Memory H10 With Solid State Storage Firmware
Optane Memory H20 With Solid State Storage FirmwareOptane Ssd 900p Firmware+4 more
Jun 17, 2026
May 12, 2022
N/A· v4
4.7 MEDIUM· v3
4.7 MEDIUM· v2
Race condition in firmware for some Intel(R) Optane(TM) SSD, Intel(R) Optane(TM) SSD DC and Intel(R) SSD DC Products may allow a privileged user to potentially enable denial of service via local access.