CWE-362
2,511 CVEs • Abstraction: Class • Likelihood of Exploit: Medium
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
The product contains a code sequence that can run concurrently with other code, and the code sequence requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence that is operating concurrently.
CVEs (2,511)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Canonical DebianLinux3Debian Linux Linux KernelUbuntu LinuxJun 17, 2026 Jun 12, 2018 N/A· v4 7.0 HIGH· v3 6.9 MEDIUM· v2 In the Linux Kernel before version 4.16.11, 4.14.43, 4.9.102, and 4.4.133, multiple race condition errors when handling probe, disconnect, and rebind operations can be exploited to trigger a use-after-free condition or a...Show more |
In net/socket.c in the Linux kernel through 4.17.1, there is a race condition between fchownat and close in cases where they target the same socket file descriptor, related to the sock_close and sockfs_setattr functions....Show more |
A non-existent chrome.manifest file will attempt to be loaded during startup from the primary installation directory. If a malicious user with local access puts chrome.manifest and other referenced files in this director...Show more |
Canvas allows the use of the "feDisplacementMap" filter on images loaded cross-origin. The rendering by the filter is variable depending on the input pixel, allowing for timing attacks when the images are loaded from thi...Show more |
An issue was discovered in certain Apple products. macOS before 10.13.5 is affected. The issue involves the "NVIDIA Graphics Drivers" component. It allows attackers to execute arbitrary code in a privileged context via a...Show more |
An issue was discovered in certain Apple products. macOS before 10.13.5 is affected. The issue involves the "IOFireWireAVC" component. It allows attackers to execute arbitrary code in a privileged context via a crafted a...Show more |
1Apple 6Icloud Iphone OsItunes+3 moreNov 21, 2024 Jun 8, 2018 N/A· v4 7.5 HIGH· v3 5.1 MEDIUM· v2 An issue was discovered in certain Apple products. iOS before 11.4 is affected. Safari before 11.1.1 is affected. iCloud before 7.5 on Windows is affected. iTunes before 12.7.5 on Windows is affected. tvOS before 11.4 is...Show more |
A race condition in drm_atomic_nonblocking_commit() in the display driver can potentially lead to a Use After Free scenario in all Android releases from CAF (Android for MSM, Firefox OS for MSM, QRD Android) using the Li...Show more |
2Cli Project Debian2Cli Debian LinuxNov 21, 2024 May 31, 2018 N/A· v4 3.5 LOW· v3 4.9 MEDIUM· v2 The package `node-cli` before 1.0.0 insecurely uses the lock_file and log_file. Both of these are temporary, but it allows the starting user to overwrite any file they have access to. |
1Trendmicro 4Antivirus+ Internet SecurityMaximum Security+1 moreJun 17, 2026 May 25, 2018 N/A· v4 7.0 HIGH· v3 6.9 MEDIUM· v2 A Time-of-Check Time-of-Use privilege escalation vulnerability in Trend Micro Maximum Security (Consumer) 2018 could allow a local attacker to escalate privileges on vulnerable installations due to a flaw within processi...Show more |
An issue was discovered in Joomla! Core before 3.8.8. A long running background process, such as remote checks for core or extension updates, could create a race condition where a session that was expected to be destroye...Show more |
Absolute Computrace Agent, as distributed on certain Dell Inspiron systems through 2009, has a race condition with the Dell Client Configuration Utility (DCCU), which allows privileged local users to change Computrace Ag...Show more |
8Apple CanonicalCitrix+5 more11Debian Linux Diskstation ManagerEnterprise Linux Server+8 moreJun 17, 2026 May 8, 2018 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 A statement in the System Programming Guide of the Intel 64 and IA-32 Architectures Software Developer's Manual (SDM) was mishandled in the development of some or all operating-system kernels, resulting in unexpected beh...Show more |
An exploitable double fetch vulnerability exists in the SboxDrv.sys driver functionality of Invincea-X 6.1.3-24058. A specially crafted input buffer and race condition can result in kernel memory corruption, which could...Show more |
1Qualcomm 8Sd 425 Firmware Sd 430 FirmwareSd 450 Firmware+5 moreNov 21, 2024 Apr 18, 2018 N/A· v4 8.1 HIGH· v3 9.3 HIGH· v2 In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile and Snapdragon Mobile SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 820, and SD 820A, there is a TOCTOU vulnerability in the...Show more |
1Qualcomm 26Mdm9206 Firmware Mdm9625 FirmwareMdm9635m Firmware+23 moreNov 21, 2024 Apr 18, 2018 N/A· v4 8.1 HIGH· v3 9.3 HIGH· v2 In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear MDM9206, MDM9625, MDM9635M, MDM9640, MDM9645, MSM8909W, SD 210/SD 212/SD 205, SD 400,...Show more |
1Qualcomm 24Mdm9635m Firmware Mdm9640 FirmwareMdm9645 Firmware+21 moreNov 21, 2024 Apr 18, 2018 N/A· v4 8.1 HIGH· v3 9.3 HIGH· v2 In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear MDM9635M, MDM9640, MDM9645, MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 425...Show more |
1Qualcomm 11Sd 410 Firmware Sd 412 FirmwareSd 425 Firmware+8 moreNov 21, 2024 Apr 18, 2018 N/A· v4 8.1 HIGH· v3 9.3 HIGH· v2 In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile and Snapdragon Mobile SD 410/12, SD 425, SD 430, SD 450, SD 617, SD 625, SD 650/52, SD 820, and SD 820A, TOCTOU vulnerabiliti...Show more |
1Qualcomm 32Ipq4019 Firmware Mdm9206 FirmwareMdm9607 Firmware+29 moreNov 21, 2024 Apr 18, 2018 N/A· v4 8.1 HIGH· v3 9.3 HIGH· v2 In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear IPQ4019, MDM9206, MDM9607, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM...Show more |
1Qualcomm 9Sd 425 Firmware Sd 430 FirmwareSd 450 Firmware+6 moreNov 21, 2024 Apr 18, 2018 N/A· v4 8.1 HIGH· v3 9.3 HIGH· v2 In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile and Snapdragon Mobile SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 820, SD 820A, and SD 835, TOCTOU vulnerability may occur...Show more |