CWE-362

Medium likelihood

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Parent: CWE-662 - Improper Synchronization

The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.

2,393 vulnerabilities with CWE-362
CVE-2021-30933 HIGH
macOS 11.0-11.5 - Race Condition Leading to Arbitrary Code Execution with Kernel Privileges
CVSS 7.0
CVE-2021-30923 HIGH
macOS Monterey <12.0.1 - Privilege Escalation
CVSS 7.0
CVE-2021-30899 HIGH
macOS <12.0.1, <11.6.1 - Privilege Escalation
CVSS 7.0
CVE-2021-30868 HIGH
macOS <12.0.1 & <11.6.1 - Privilege Escalation
CVSS 7.0
CVE-2021-30857 HIGH
iPadOS < 15.0 - Race Condition with Kernel Privilege Escalation
CVSS 7.0
CVE-2021-29986 HIGH
Thunderbird <78.13-91 - Memory Corruption
CVSS 8.1
CVE-2021-3573 MEDIUM
Linux Kernel <5.13 - Use After Free
CVSS 6.4
CVE-2021-38587 HIGH
cPanel < 96.0.13 - Race Condition in fix-cpanel-perl Temporary File Handling
CVSS 7.5
CVE-2021-38191 MEDIUM
tokio < 1.8.1 - Race Condition via JoinHandle::abort
CVSS 5.9
CVE-2021-36221 MEDIUM
Go <1.15.15, <1.16.7 - Panic
CVSS 5.9
CVE-2021-32810 CRITICAL
crossbeam-deque <0.7.4-0.8.0 - Memory Corruption
CVSS 9.8
CVE-2021-22428 HIGH
Huawei Smartphone - Privilege Escalation
CVSS 8.1
CVE-2021-22427 HIGH
Huawei Smartphone - Buffer Overflow
CVSS 8.1
CVE-2021-22384 HIGH
Huawei Smartphone - Info Disclosure
CVSS 8.1
CVE-2021-32686 MEDIUM
PJSIP < 2.11.1 - Denial of Service via SSL Socket Race Condition
CVSS 5.9
CVE-2021-34462 HIGH
Windows 10 and Windows Server 2016/2019 - Elevation of Privilege via AppX Deployment Extensions Race Condition
CVSS 7.0
CVE-2021-0514 HIGH
Android - Use-After-Free via Race Condition in V8 Library
CVSS 8.1
CVE-2021-22340 MEDIUM
Huawei ManageOne and SMC2.0 - Denial of Service via Concurrent I/O Read Race Condition
CVSS 4.1
CVE-2021-21005 HIGH
Phoenix Contact FL SWITCH SMCS - DoS
CVSS 7.5
CVE-2021-31615 MEDIUM
Bluetooth Core Specification 4.0-5.2 - Race Condition via Unencrypted BLE Baseband Packet Injection
CVSS 5.3
CVE-2021-29952 HIGH
Firefox < 88.0.1 and Firefox for Android < 88.1.3 - Race Condition in Web Render Component Destruction
CVSS 7.5
CVE-2021-29948 LOW
Thunderbird < 78.10 - Race Condition via Signature File Replacement
CVSS 2.5
CVE-2021-24000 LOW
Firefox < 88.0 - Race Condition via requestPointerLock and setTimeout
CVSS 3.1
CVE-2021-22378 MEDIUM
Huawei eCNS280_TD Firmware V100R005C00 and V100R005C10 - Race Condition in Database Operations
CVSS 5.3
CVE-2021-0565 HIGH
Android - Use-After-Free via Race Condition in AudioStream.cpp
CVSS 7.0
Details
Vulnerabilities 2,393
Exploit Likelihood Medium