CWE-362
2,498 CVEs • Abstraction: Class • Likelihood of Exploit: Medium
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
The product contains a code sequence that can run concurrently with other code, and the code sequence requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence that is operating concurrently.
CVEs (2,498)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Versions of the Amazon AWS Apache Log4j hotpatch package before log4j-cve-2021-44228-hotpatch-1.3.5 are affected by a race condition that could lead to a local privilege escalation. This Hotpatch package is not a replace...Show more |
1Microsoft 9Windows 10 Windows 11Windows 7+6 moreJun 17, 2026 Jun 15, 2022 N/A· v4 8.5 HIGH· v3 6.0 MEDIUM· v2 Windows Hyper-V Remote Code Execution Vulnerability |
In ipu_core_jqs_msg_transport_kernel_write_sync of ipu-core-jqs-msg-transport.c, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with no additional execution p...Show more |
In lock_sock_nested of sock.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for expl...Show more |
In TBD of TBD, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege in the kernel with System execution privileges needed. User interaction is not needed for exploi...Show more |
In ip_check_mc_rcu of igmp.c, there is a possible use after free due to improper locking. This could lead to local escalation of privilege when opening and closing inet sockets with no additional execution privileges nee...Show more |
1Qualcomm 80Apq8053 Firmware Ar8035 FirmwareMsm8953 Firmware+77 moreJun 17, 2026 Jun 14, 2022 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 Use after free in graphics fence due to a race condition while closing fence file descriptor and destroy graphics timeline simultaneously in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Indust...Show more |
The kernel module has the race condition vulnerability. Successful exploitation of this vulnerability may affect data confidentiality. |
3Debian FedoraprojectXen3Debian Linux FedoraXenJun 17, 2026 Jun 9, 2022 N/A· v4 6.4 MEDIUM· v3 6.9 MEDIUM· v2 x86 pv: Race condition in typeref acquisition Xen maintains a type reference count for pages, in addition to a regular reference count. This scheme is used to maintain invariants required for Xen's safety, e.g. PV guests...Show more |
3Debian LinuxRedhat3Debian Linux Enterprise LinuxLinux KernelJun 17, 2026 Jun 2, 2022 N/A· v4 6.3 MEDIUM· v3 3.3 LOW· v2 An out-of-bounds read flaw was found in the Linux kernel’s TeleTYpe subsystem. The issue occurs in how a user triggers a race condition using ioctls TIOCSPTLCK and TIOCGPTPEER and TIOCSTI and TCXONC with leakage of memor...Show more |
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
Waitress is a Web Server Gateway Interface server for Python 2 and 3. Waitress versions 2.1.0 and 2.1.1 may terminate early due to a thread closing a socket while the main thread is about to call select(). This will lead...Show more |
1Apple 5Ipados Iphone OsMacos+2 moreJun 17, 2026 May 26, 2022 N/A· v4 4.7 MEDIUM· v3 1.9 LOW· v2 A race condition was addressed with improved state handling. This issue is fixed in watchOS 8.6, tvOS 15.5, macOS Monterey 12.4, iOS 15.5 and iPadOS 15.5. A malicious attacker with arbitrary read and write capability may...Show more |
1Apple 4Ipados Iphone OsMacos+1 moreJun 17, 2026 May 26, 2022 N/A· v4 7.5 HIGH· v3 7.6 HIGH· v2 A race condition was addressed with improved locking. This issue is fixed in tvOS 15.5, macOS Monterey 12.4, iOS 15.5 and iPadOS 15.5. An application may be able to execute arbitrary code with kernel privileges. |
Description: A race condition was addressed with additional validation. This issue is fixed in macOS Monterey 12.3. A malicious application may be able to modify protected parts of the file system. |
2Netapp Redhat8Active Iq Unified Manager FuseJboss Enterprise Application Platform+5 moreJun 17, 2026 May 24, 2022 N/A· v4 5.9 MEDIUM· v3 2.6 LOW· v2 A flaw was found in undertow. The HTTP2SourceChannel fails to write the final frame under some circumstances, resulting in a denial of service. The highest threat from this vulnerability is availability. This flaw affect...Show more |
1Lenovo 1System Interface Foundation Jun 17, 2026 May 18, 2022 N/A· v4 7.0 HIGH· v3 4.4 MEDIUM· v2 A race condition vulnerability was reported in IMController, a software component of Lenovo System Interface Foundation, prior to version 1.1.20.3 that could allow a local attacker to connect and interact with the IMCont...Show more |
1Intel 7Optane Memory H10 With Solid State Storage Firmware Optane Memory H20 With Solid State Storage FirmwareOptane Ssd 900p Firmware+4 moreJun 17, 2026 May 12, 2022 N/A· v4 4.7 MEDIUM· v3 4.7 MEDIUM· v2 Race condition within a thread in firmware for some Intel(R) Optane(TM) SSD and Intel(R) SSD DC Products may allow a privileged user to potentially enable denial of service via local access. |
1Intel 7Optane Memory H10 With Solid State Storage Firmware Optane Memory H20 With Solid State Storage FirmwareOptane Ssd 900p Firmware+4 moreJun 17, 2026 May 12, 2022 N/A· v4 4.7 MEDIUM· v3 4.7 MEDIUM· v2 Race condition in firmware for some Intel(R) Optane(TM) SSD, Intel(R) Optane(TM) SSD DC and Intel(R) SSD DC Products may allow a privileged user to potentially enable denial of service via local access. |