CWE-362

Medium likelihood

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Parent: CWE-662 - Improper Synchronization

The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.

2,383 vulnerabilities with CWE-362
CVE-2025-54092 HIGH
Windows 10/11, Server 2019-2025 Hyper-V Race Condition Privilege Escalation
CVSS 7.8
CVE-2025-53807 HIGH
Microsoft Graphics Component - Privilege Escalation
CVSS 7.0
CVE-2025-47997 MEDIUM
SQL Server 2016-2022 Authenticated Information Disclosure via Race Condition
CVSS 6.5
CVE-2025-39726 MEDIUM
Linux Kernel 4.19-6.6.100, 6.7.0-6.12.40, 6.13.0-6.15.8 - Race Condition in ISM Command Management
CVSS 4.7
CVE-2025-39697 MEDIUM
Linux Kernel - Race Condition in NFS Write Request Handling
CVSS 4.7
CVE-2025-39673 MEDIUM
Linux Kernel 5.13-5.15.190 5.16-6.1.149 6.2-6.6.103 6.7-6.12.44 6.13-6.16.4 - Race Condition in ppp_fill_forward_path
CVSS 4.7
CVE-2025-58313 MEDIUM
Device Standby Module - Info Disclosure
CVSS 5.1
CVE-2025-58296 HIGH
HarmonyOS - Race Condition in Audio Module
CVSS 7.5
CVE-2025-48548 HIGH
AppOpsControllerImpl - Privilege Escalation
CVSS 7.3
CVE-2025-48533 HIGH
Lockscreen App - Privilege Escalation
CVSS 7.0
CVE-2025-38717 MEDIUM
Linux Kernel 4.6-6.12.42, 6.13.0-6.15.10, 6.16.0-6.16.1 - Race Condition in kcm_unattach
CVSS 4.7
CVE-2025-38687 MEDIUM
Linux Kernel - Use-After-Free via comedi Device Detachment Race Condition
CVSS 4.7
CVE-2025-38681 MEDIUM
Linux Kernel - Use-After-Free via Memory Hotplug Race Condition in ptdump
CVSS 4.7
CVE-2025-23259 MEDIUM
NVIDIA Mellanox DPDK - Info Disclosure, DoS
CVSS 6.5
CVE-2025-22442 HIGH
Android - Local Privilege Escalation via Work Profile Race Condition
CVSS 7.0
CVE-2025-38675 MEDIUM
Linux Kernel - Race Condition in xfrm_state_find
CVSS 4.7
CVE-2025-38632 MEDIUM
Linux Kernel - Race Condition in Pinmux State Management
CVSS 4.7
CVE-2025-38617 MEDIUM
Linux Kernel - Race Condition in packet_set_ring() and packet_notifier()
CVSS 4.7
CVE-2025-55231 HIGH
Windows Server 2012-2025 Unauthenticated RCE via Race Condition in Storage
CVSS 7.5
CVE-2025-38567 MEDIUM
Linux Kernel - Race Condition in nfsd_open_local_fh
CVSS 4.7
CVE-2025-38561 MEDIUM
Linux Kernel 5.15-6.1.147 6.2-6.6.101 6.7-6.12.41 6.13-6.15.9 6.16 - Race Condition in ksmbd Session Setup
CVSS 4.7
CVE-2025-38524 MEDIUM
Linux Kernel 4.9-6.6.99, 6.7.0-6.12.39, 6.13.0-6.15.7 - Race Condition in rxrpc recvmsg Call Handling
CVSS 4.7
CVE-2025-8880 HIGH
Google Chrome < 139.0.7258.127 - Remote Code Execution via V8 Race Condition
CVSS 8.8
CVE-2025-49456 MEDIUM
Zoom Meeting SDK < 6.4.10 - Unauthenticated Race Condition via Installer
CVSS 6.2
CVE-2025-53135 HIGH
Windows 10/11, Server 2012-2016 Privilege Escalation via DirectX Race Condition
CVSS 7.0
Details
Vulnerabilities 2,383
Exploit Likelihood Medium