CWE-362

Medium likelihood

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Parent: CWE-662 - Improper Synchronization

The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.

2,392 vulnerabilities with CWE-362
CVE-2022-29113 HIGH
Windows Digital Media Receiver - Privilege Escalation
CVSS 7.8
CVE-2022-20118 HIGH
Android - Use-After-Free via Race Condition in ion_ioctl
CVSS 7.0
CVE-2022-20007 HIGH
Android - Local Privilege Escalation via Race Condition in RootWindowContainer
CVSS 7.0
CVE-2022-20006 HIGH
Android - Local Privilege Escalation via KeyguardServiceWrapper Race Condition
CVSS 7.0
CVE-2022-20097 MEDIUM
Android - Local Information Disclosure via Race Condition in aee Daemon
CVSS 4.7
CVE-2022-20091 MEDIUM
Android - Use-After-Free via Race Condition in AEE Driver
CVSS 6.4
CVE-2022-20090 MEDIUM
Android - Use-After-Free via Race Condition in AEE Driver
CVSS 6.4
CVE-2022-1195 MEDIUM
Linux Kernel < 5.16 - Use-After-Free in Hamradio Drivers
CVSS 5.5
CVE-2022-1048 HIGH
Linux Kernel 2.6.12-4.14.279 - Use-After-Free in ALSA PCM hw_params
CVSS 7.0
CVE-2022-29582 HIGH
Linux Kernel < 5.17.3 - Use-After-Free via io_uring Timeout Race Condition
CVSS 7.0
CVE-2022-29527 HIGH
Amazon AWS amazon-ssm-agent < 3.1.1208.0 - Privilege Escalation via World-Writable Sudoers File
CVSS 7.0
CVE-2022-26904 HIGH KEV
Windows User Profile Service - Privilege Escalation
CVSS 7.0
CVE-2022-26829 MEDIUM
Windows Server 2008, 2012, 2016, 2019, 2022 - Remote Code Execution via DNS Server Race Condition
CVSS 6.6
CVE-2022-26828 HIGH
Windows Bluetooth Driver - Privilege Escalation
CVSS 7.0
CVE-2022-26827 HIGH
Windows File Server Resource Management Service - Privilege Escalation
CVSS 7.0
CVE-2022-26822 MEDIUM
Windows Server 2008, 2012, 2016, 2019, 2022 - Remote Code Execution via DNS Server Race Condition
CVSS 6.6
CVE-2022-26821 MEDIUM
Windows Server 2008, 2012, 2016, 2019, 2022 - Remote Code Execution via DNS Server Race Condition
CVSS 6.6
CVE-2022-26820 MEDIUM
Windows Server 2008, 2012, 2016, 2019, 2022 - Remote Code Execution via DNS Server Race Condition
CVSS 6.6
CVE-2022-26819 MEDIUM
Windows Server 2008, 2012, 2016, 2019, 2022 - Remote Code Execution via DNS Server Race Condition
CVSS 6.6
CVE-2022-26817 MEDIUM
Windows Server 2012, 2016, 2019, 2022 - Remote Code Execution via DNS Server Race Condition
CVSS 6.6
CVE-2022-26814 MEDIUM
Windows Server 2012, 2016, 2019, 2022 - Remote Code Execution via DNS Server Race Condition
CVSS 6.6
CVE-2022-26808 HIGH
Windows File Explorer - Privilege Escalation
CVSS 7.0
CVE-2022-26807 HIGH
Windows Work Folder Service - Privilege Escalation
CVSS 7.0
CVE-2022-24540 HIGH
Windows ALPC - Privilege Escalation
CVSS 7.0
CVE-2022-24537 HIGH
Windows Hyper-V - Remote Code Execution via Race Condition
CVSS 7.8
Details
Vulnerabilities 2,392
Exploit Likelihood Medium