CWE-362

Medium likelihood

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Parent: CWE-662 - Improper Synchronization

The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.

2,391 vulnerabilities with CWE-362
CVE-2024-20007 HIGH
Android - Remote Escalation of Privilege via Race Condition in MP3 Decoder
CVSS 7.5
CVE-2024-23651 HIGH
BuildKit < 0.12.5 - Unauthenticated Race Condition via Cache Mount Subpaths
CVSS 8.7
CVE-2024-0605 HIGH
Firefox Focus < 122.0 - Unauthenticated Race Condition via javascript: URI setTimeout
CVSS 7.5
CVE-2024-21601 MEDIUM
Juniper Junos OS 21.2-22.4 - Unauthenticated Denial-of-Service via Flow-processing Daemon Race Condition
CVSS 5.9
CVE-2024-21307 HIGH
Windows Remote Desktop Client - Remote Code Execution via Race Condition
CVSS 7.5
CVE-2024-20700 HIGH
Microsoft Windows Hyper-V - Remote Code Execution
CVSS 7.5
CVE-2024-22047 LOW
Audited <5.3.3 - Privilege Escalation
CVSS 3.1
CVE-2023-53623 MEDIUM
Linux Kernel >=4.14 <4.14.313 - Race Condition in Swap Management
CVSS 4.7
CVE-2023-53622 HIGH
Linux Kernel 2.6.31-4.14.323 - Data Race in gfs2_show_options
CVSS 7.0
CVE-2023-53615 MEDIUM
Linux Kernel 4.11-5.4.258 - Race Condition in SCSI qla2xxx Session Deletion
CVSS 4.7
CVE-2023-53614 MEDIUM
Linux Kernel 6.1-6.1.21, 6.2-6.2.8, <6.3 - Race Condition in KSM VMA Iteration
CVSS 4.7
CVE-2023-53581 MEDIUM
Linux Kernel - Race Condition in mlx5e_tc_del_fdb_flow via Unready Flows List
CVSS 4.7
CVE-2023-53520 MEDIUM
Linux Kernel - Use-After-Free in Bluetooth Suspend Notifier
CVSS 4.7
CVE-2023-53490 MEDIUM
Linux Kernel 6.1.27-6.1.45 - Race Condition in MPTCP Stream Accept
CVSS 4.7
CVE-2023-53478 MEDIUM
Linux Kernel 5.18-6.1.23 6.2.10 6.3 - Use-After-Free and Double-Free in Synthetic Events Tracing
CVSS 4.7
CVE-2023-53452 MEDIUM
Linux Kernel - Race Condition in rtw89 NAPI Initialization
CVSS 4.7
CVE-2023-53447 MEDIUM
Linux Kernel 3.8-6.4.4 - Race Condition in F2FS Remount and Fallocate Operations
CVSS 4.7
CVE-2023-53368 MEDIUM
Linux Kernel 3.10-5.4.257 - Race Condition in CPU Buffer Swap
CVSS 4.7
CVE-2023-53345 MEDIUM
Linux Kernel 6.2.1-6.2.15 - Data Race in rxrpc_wait_to_be_connected
CVSS 4.7
CVE-2023-53329 MEDIUM
Linux Kernel 6.5-6.5.3 - Race Condition in Workqueue Stats Handling
CVSS 4.7
CVE-2023-53310 MEDIUM
Linux Kernel - Use-After-Free in AXP288 Fuel Gauge External Power Changed Callback
CVSS 4.7
CVE-2023-53204 MEDIUM
Linux Kernel 3.2.78-3.2.99 - Race Condition in af_unix user->unix_inflight Handling
CVSS 4.7
CVE-2023-53188 MEDIUM
Linux Kernel 4.3-5.4.293 - Denial of Service via Race Condition in Open vSwitch Port Output
CVSS 4.7
CVE-2023-53186 MEDIUM
Linux Kernel 5.15-5.15.108 - Use-After-Free via SKB Coalescing Race Condition
CVSS 4.7
CVE-2023-53178 MEDIUM
Linux Kernel 3.11-6.1.30, 6.3.4-6.3.*, 6.4 - Memory Corruption via zswap Writeback Race Condition
CVSS 4.7
Details
Vulnerabilities 2,391
Exploit Likelihood Medium