CWE-362

Medium likelihood

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Parent: CWE-662 - Improper Synchronization

The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.

2,393 vulnerabilities with CWE-362
CVE-2020-36458 HIGH
lexer < 2020-11-10 - Race Condition in ReaderResult Sync Implementation
CVSS 8.1
CVE-2020-36454 HIGH
parc < 2020-11-14 - Race Condition in LockWeak Implementation
CVSS 8.1
CVE-2020-36447 HIGH
V9 < 0.1.41 - Race Condition
CVSS 8.1
CVE-2020-36446 HIGH
signal-simple < 2020-11-15 - Race Condition via Unconditional Send and Sync Implementations
CVSS 8.1
CVE-2020-36445 HIGH
convec < 2020-11-24 - Race Condition via Unconditional Send and Sync Implementations
CVSS 8.1
CVE-2020-36444 HIGH
async-coap < 2020-12-08 - Race Condition via ArcGuard Send/Sync Implementation
CVSS 8.1
CVE-2020-36442 HIGH
beef < 0.5.0 - Race Condition in beef::Cow Sync Trait Implementation
CVSS 8.1
CVE-2020-36441 HIGH
abox < 0.4.1 - Race Condition in AtomicBox Implementation
CVSS 8.1
CVE-2020-36440 HIGH
libsbc < 0.1.5 - Concurrent Execution using Shared Resource with Improper Synchronization
CVSS 8.1
CVE-2020-36439 HIGH
ticketed_lock < 0.3.0 - Race Condition via Unconditional Send Implementations
CVSS 8.1
CVE-2020-36438 HIGH
tiny_future < 0.4.0 - Race Condition via Improper Send and Sync Trait Bounds
CVSS 8.1
CVE-2020-36437 HIGH
conqueue < 0.4.0 - Race Condition via Unconditional Send and Sync Implementations
CVSS 8.1
CVE-2020-36436 HIGH
unicycle < 0.7.1 - Race Condition in PinSlab and Unordered Traits
CVSS 8.1
CVE-2020-36435 HIGH
ruspiro-singleton < 0.4.1 - Race Condition via Missing Send and Sync Bounds Checks
CVSS 8.1
CVE-2020-29014 MEDIUM
FortiSandbox < 3.2.2 - Authenticated Denial of Service via Command Shell Race Condition
CVSS 6.3
CVE-2020-8704 MEDIUM
Intel(R) LMS <2039.1.0.0 - Privilege Escalation
CVSS 6.4
CVE-2020-8670 MEDIUM
Intel(R) Processors - Privilege Escalation
CVSS 6.4
CVE-2020-11262 HIGH
Qualcomm APQ8009 and related firmwares - Use-After-Free via Race Condition in Context Management
CVSS 7.0
CVE-2020-11250 HIGH
Qualcomm APQ8009W Firmware - Use-After-Free via Race Condition in Device Driver Reopen
CVSS 7.0
CVE-2020-25668 HIGH
Linux Kernel < 4.4.242 - Use-After-Free in con_font_op
CVSS 7.0
CVE-2020-15522 MEDIUM
Bouncycastle Bc-csharp < 1.8.7 - Race Condition
CVSS 5.9
CVE-2020-14104 HIGH
Xiaomi AX3600 Firmware < 1.0.50 - Race Condition in XQBACKUP Decompression
CVSS 8.1
CVE-2020-25584 HIGH
FreeBSD < 11.4-RELEASE p9, 12.2-RELEASE p6, 13.0-RC5 p1 - Jail Escape via Race Condition
CVSS 7.5
CVE-2020-27921 HIGH
macOS < 11.0.1 - Race Condition Leading to Privilege Escalation
CVSS 7.0
CVE-2020-25582 HIGH
FreeBSD Race Condition via ptrace Attachment
CVSS 8.7
Details
Vulnerabilities 2,393
Exploit Likelihood Medium