CWE-362
Medium likelihoodConcurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.
2,393 vulnerabilities with CWE-362
CVE-2020-16123
MEDIUM
Ubuntu Linux - Information Exposure via PulseAudio Snap Policy Race Condition
CVSS 4.4
CVE-2020-29374
LOW
Linux kernel <5.7.3 - Memory Corruption
CVSS 3.6
CVE-2020-29372
MEDIUM
Linux Kernel <5.6.8 - Use After Free
CVSS 4.7
CVE-2020-29370
HIGH
Linux kernel <5.5.11 - Info Disclosure
CVSS 7.0
CVE-2020-29369
HIGH
Linux Kernel <5.7.11 - Use After Free
CVSS 7.0
CVE-2020-29368
HIGH
Linux Kernel <5.7.5 - Memory Corruption
CVSS 7.0
CVE-2020-27746
LOW
Slurm < 19.05.8 and 20.x < 20.02.6 - Sensitive Information Exposure via X11 Magic Cookie Race Condition
CVSS 3.7
CVE-2020-25653
MEDIUM
spice-vdagent < 0.20.0 - Race Condition via Client Connection Handling
CVSS 6.3
CVE-2020-25651
MEDIUM
spice-vdagent < 0.20.0 - Race Condition in File Transfer Protocol
CVSS 6.4
CVE-2020-8755
MEDIUM
Intel CSME < 12.0.70 & SPS < E5_04.01.04.400 - Unauthenticated Privilege Escalation via Physical Access
CVSS 6.4
CVE-2020-28049
MEDIUM
SDDM < 0.19.0 - Unauthenticated X Server Access via Race Condition
CVSS 6.3
CVE-2020-11173
HIGH
Qualcomm Snapdragon - Race Condition in fastRPC Driver
CVSS 7.0
CVE-2020-27675
MEDIUM
Linux Kernel < 5.9.1 - Use-After-Free in Xen Event Channel Handling
CVSS 4.7
CVE-2020-27672
HIGH
Xen 3.2.0-4.14.x - Use-After-Free via Superpage Race Condition
CVSS 7.0
CVE-2020-9990
HIGH
macOS < 10.15.6 - Race Condition Leading to Privilege Escalation
CVSS 7.8
CVE-2020-9796
HIGH
macOS < 10.15.5 - Race Condition Leading to Privilege Escalation
CVSS 7.0
CVE-2020-1667
HIGH
Juniper Junos OS DoS via Race Condition in mspmand
CVSS 8.3
CVE-2020-1660
HIGH
Juniper Junos 17.3-19.3R3 DoS via DNS Filtering Race Condition
CVSS 8.3
CVE-2020-24696
HIGH
PowerDNS Authoritative <4.3.0 - RCE
CVSS 8.1
CVE-2020-15671
LOW
Firefox for Android < 80.0 - Password Exposure via InputContext Race Condition
CVSS 3.1
CVE-2020-15670
HIGH
Firefox < 80 and Firefox ESR < 78.2 - Memory Corruption
CVSS 8.8
CVE-2020-25775
MEDIUM
Trend Micro Security 2020 < 16.0 - Arbitrary File Deletion via Secure Erase Feature
CVSS 6.3
CVE-2020-25604
MEDIUM
Xen < 4.14.0 - Denial of Service via Timer Migration Race Condition
CVSS 4.7
CVE-2020-25599
HIGH
Xen 4.5-4.14.x - Denial of Service and Privilege Escalation via evtchn_reset Race Condition
CVSS 7.0
CVE-2020-6575
HIGH
Google Chrome < 85.0.4183.102 - Sandbox Escape via Mojo Race Condition
CVSS 8.3
Details
Vulnerabilities
2,393
Exploit Likelihood
Medium