CWE-362

Medium likelihood

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Parent: CWE-662 - Improper Synchronization

The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.

2,383 vulnerabilities with CWE-362
CVE-2025-53132 HIGH
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2008 - Privilege Escalation via Win32K GRFX Race Condition
CVSS 7.8
CVE-2025-50177 HIGH
Windows Message Queuing - Use After Free
CVSS 8.1
CVE-2025-50169 HIGH
Windows SMB - Race Condition Remote Code Execution
CVSS 7.5
CVE-2025-50167 HIGH
Windows Hyper-V - Privilege Escalation
CVSS 7.0
CVE-2025-49762 HIGH
Windows 10/11, Server 2008 - Privilege Escalation via AFD Race Condition
CVSS 7.0
CVE-2025-49743 MEDIUM
Windows 10/11 & Server 2008 Privilege Escalation via Graphics Race Condition
CVSS 6.7
CVE-2025-22830 MEDIUM
AMI APTIO V < 5.040 - Race Condition via Local Access
CVSS 6.7
CVE-2025-27577 HIGH
OpenHarmony < 5.0.3 - Local Race Condition to Arbitrary Code Execution in TCB
CVSS 8.4
CVE-2025-25278 HIGH
OpenHarmony < 5.0.3 - Local Race Condition to Arbitrary Code Execution in TCB
CVSS 8.4
CVE-2025-47907 HIGH
GO < 1.23.12 - Race Condition
CVSS 7.0
CVE-2025-7954 HIGH
Shopware 6.6.0.0-6.6.10.4 - Race Condition in Voucher System
CVSS 8.1
CVE-2025-54651 MEDIUM
HarmonyOS - Race Condition in Kernel HUFS Module
CVSS 4.8
CVE-2025-54629 MEDIUM
Huawei EMUI and HarmonyOS - Race Condition in Memory Management Physical Page Import
CVSS 6.7
CVE-2025-54955 HIGH
OpenNebula CE/EE <7.0.0/<6.10.3 - Privilege Escalation
CVSS 8.1
CVE-2025-43275 CRITICAL
macOS <15.6-13.7.7 - Use After Free
CVSS 9.8
CVE-2025-43244 CRITICAL
macOS < 13.7.7, < 14.7.7, < 15.6 - Denial of Service via Race Condition
CVSS 9.8
CVE-2025-38492 MEDIUM
Linux Kernel 6.14-6.15.7 - Race Condition in netfslib Subrequest Collection
CVSS 4.7
CVE-2025-38477 MEDIUM
Linux Kernel 3.8-6.15.8 - Race Condition in sch_qfq Aggregation
CVSS 4.7
CVE-2025-38448 MEDIUM
Linux Kernel - Use-After-Free in USB Gadget Serial TTY Wakeup
CVSS 4.7
CVE-2025-38440 MEDIUM
Linux Kernel 6.10-6.12.38, 6.13-6.15.6 - NULL Pointer Dereference via DIM Disable Race Condition
CVSS 4.7
CVE-2025-38393 MEDIUM
Linux Kernel - Race Condition in NFSv4/pNFS Layout Drain Handling
CVSS 4.7
CVE-2025-38383 MEDIUM
Linux Kernel - Data Race in vmalloc_info_show via show_numa_info
CVSS 4.7
CVE-2025-38365 MEDIUM
Linux Kernel 5.18-6.1.142, 6.2-6.6.95, 6.7-6.12.35, 6.13-6.15.4 - Race Condition in Btrfs Rename and Directory Logging
CVSS 4.7
CVE-2025-38358 MEDIUM
Linux Kernel 6.15-6.15.5 - Race Condition in Btrfs Async Reclaim Worker
CVSS 4.7
CVE-2025-25214 HIGH
WWBN AVideo 14.4 RCE via Race Condition in aVideoEncoder.json.php Unzip
CVSS 8.8
Details
Vulnerabilities 2,383
Exploit Likelihood Medium