CWE-367
696 CVEs • Abstraction: Base • Likelihood of Exploit: Medium
Time-of-check Time-of-use (TOCTOU) Race Condition
The product checks the state of a resource before using that resource, but the resource's state can change between the check and the use in a way that invalidates the results of the check. This can cause the product to perform invalid actions when the resource is in an unexpected state.
CVEs (696)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
The total size of the user-provided nmreq to nmreq_copyin() was first computed and then trusted during the copyin. This time-of-check to time-of-use bug could lead to kernel memory corruption. On systems configured to...Show more |
1Microsoft 13Windows 10 1507 Windows 10 1607Windows 10 1809+10 moreJun 17, 2026 Feb 13, 2024 N/A· v4 7.0 HIGH· v3 N/A· v2 Windows Kernel Elevation of Privilege Vulnerability |
1Microsoft 12Windows 10 1507 Windows 10 1607Windows 10 1809+9 moreJun 17, 2026 Feb 13, 2024 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Windows Kernel Security Feature Bypass Vulnerability |
1Qualcomm 48Ar8035 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+45 moreJun 17, 2026 Feb 6, 2024 N/A· v4 7.0 HIGH· v3 N/A· v2 Memory corruption in Trusted Execution Environment while deinitializing an object used for license validation. |
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.1, watchOS 9.2, iOS 16.2 and iPadOS 16.2, tvOS 16.2. An attacker with arbitrary read and write capability may be able to bypass Pointe...Show more |
A time-of-check-time-of-use race condition vulnerability in Buildkite Elastic CI for AWS versions prior to 6.7.1 and 5.22.5 allows the buildkite-agent user to bypass a symbolic link check for the PIPELINE_PATH variable i...Show more |
A race condition in GitHub Enterprise Server allows an outside collaborator to be added while a repository is being transferred. This vulnerability affected all versions of GitHub Enterprise Server since 3.8 and was fixe...Show more |
A race condition in GitHub Enterprise Server allowed an existing admin to maintain permissions on transferred repositories by making a GraphQL mutation to alter repository permissions during the transfer. This vulnerabil...Show more |
A race condition in GitHub Enterprise Server was identified that could allow an attacker administrator access. To exploit this, an organization needs to be converted from a user. This vulnerability affected all versions...Show more |
Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Ricard Torres Thumbs Rating.This issue affects Thumbs Rating: from n/a through 5.0.0. |
TOCTOU race-condition vulnerability in Insyde InsydeH2O with Kernel 5.2 before version 05.27.29, Kernel 5.3 before version 05.36.29, Kernel 5.4 version before 05.44.13, and Kernel 5.5 before version 05.52.13 allows an at...Show more |
1Samsung 7Exynos 1080 Firmware Exynos 1280 FirmwareExynos 1380 Firmware+4 moreJun 17, 2026 Dec 13, 2023 N/A· v4 4.7 MEDIUM· v3 N/A· v2 A TOCTOU race condition in Samsung Mobile Processor Exynos 9820, Exynos 980, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, and Exynos 1380 can cause unexpected termination of a system. |
1Yet Another Stars Rating Project 1Yet Another Stars Rating Jun 17, 2026 Nov 30, 2023 N/A· v4 8.1 HIGH· v3 N/A· v2 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in YetAnotherStarsRating.Com YASR – Yet Another Star Rating Plugin for WordPress.This issue affects YASR – Yet Another Star Rating Plugin for WordPress: fro...Show more |
1Amd 93Amd 3015ce Firmware Amd 3015e FirmwareAthlon Gold 3150g Firmware+90 moreJun 17, 2026 Nov 14, 2023 N/A· v4 5.7 MEDIUM· v3 N/A· v2 TOCTOU in the ASP Bootloader may allow an attacker with physical access to tamper with SPI ROM records after memory content verification, potentially leading to loss of confidentiality or a denial of service. |
A time-of-check to time-of-use (TOCTOU) bug in handling of IOCTL (input/output control) requests. This TOCTOU bug leads to an out-of-bounds write vulnerability which can be further exploited, allowing an attacker to gain...Show more |
FoodCoopShop is open source software for food coops and local shops. Versions starting with 3.2.0 prior to 3.6.1 are vulnerable to server-side request forgery. In the Network module, a manufacturer account can use the `/...Show more |
1Lenovo 3Hardware Scan Addin Hardware Scan PluginSystem Update PluginJun 17, 2026 Oct 27, 2023 N/A· v4 7.1 HIGH· v3 N/A· v2
A denial of service vulnerability was reported in Lenovo Vantage HardwareScan Plugin version 1.3.0.5 and earlier that could allow a local attacker to delete contents of an arbitrary directory under certain conditions.
|
1Lenovo 3Hardware Scan Addin Hardware Scan PluginSystem Update PluginJun 17, 2026 Oct 27, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2
A privilege elevation vulnerability was reported in the Lenovo Vantage SystemUpdate plugin version 2.0.0.212 and earlier that could allow a local attacker to execute arbitrary code with elevated privileges.
|
1Lenovo 3Hardware Scan Addin Hardware Scan PluginSystem Update PluginJun 17, 2026 Oct 27, 2023 N/A· v4 6.3 MEDIUM· v3 N/A· v2 A Time of Check Time of Use (TOCTOU) vulnerability was reported in the Lenovo Vantage SystemUpdate Plugin version 2.0.0.212 and earlier that could allow a local attacker to delete arbitrary files. |
A logged in user may elevate its permissions by abusing a Time-of-Check to Time-of-Use (TOCTOU) race condition. When a particular process flow is initiated, an attacker can exploit this condition to gain unauthorized ele...Show more |