CWE-362

Medium likelihood

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Parent: CWE-662 - Improper Synchronization

The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.

2,393 vulnerabilities with CWE-362
CVE-2020-5969 MEDIUM
NVIDIA Virtual GPU Manager - Info Disclosure
CVSS 6.3
CVE-2020-15396 HIGH
HylaFAX+ <7.0.2 - Privilege Escalation
CVSS 7.8
CVE-2020-9615 HIGH
Adobe Acrobat and Reader DC < 2020.006.20042 - Security Feature Bypass via Race Condition
CVSS 7.0
CVE-2020-5967 MEDIUM
NVIDIA Linux GPU Display Driver - DoS
CVSS 4.7
CVE-2020-3966 HIGH
VMware ESXi 7.0/6.7/6.5, Workstation 15.x, Fusion 11.x Heap Overflow via USB 2.0 Race Condition
CVSS 7.5
CVE-2020-10279 CRITICAL
MiR and ER Robot Firmware < 2.8.1.1 - Race Condition and Privilege Escalation via Insecure Ubuntu Defaults
CVSS 9.8
CVE-2020-14416 MEDIUM
Linux Kernel < 5.4.16 - Use-After-Free via tty->disc_data Race Condition
CVSS 4.2
CVE-2020-3350 MEDIUM
Cisco AMP for Endpoints/Clam AntiVirus - Privilege Escalation
CVSS 5.5
CVE-2020-0218 HIGH
Android 10 - Local Privilege Escalation via Race Condition in SoundTriggerHwService
CVSS 7.0
CVE-2020-0199 MEDIUM
Android 10 - Use-After-Free in TimeCheck::TimeCheckThread::threadLoop
CVSS 4.1
CVE-2020-0141 MEDIUM
Android 10 - Information Disclosure via Race Condition in OutputBuffersArray::realloc
CVSS 4.4
CVE-2020-0126 MEDIUM
Android 10 - Use-After-Free via Race Condition in DrmPlugin.cpp
CVSS 6.4
CVE-2020-9839 HIGH
macOS cfprefsd Arbitrary File Write Local Privilege Escalation
CVSS 7.0
CVE-2020-11492 HIGH
Docker Desktop < 2.2.0.5 - Privilege Escalation via Named Pipe Race Condition
CVSS 7.8
CVE-2020-3353 MEDIUM
Cisco Identity Services Engine - Denial of Service via Syslog Processing Race Condition
CVSS 5.9
CVE-2020-13759 HIGH
vm-memory < 0.1.1 and 0.2.x < 0.2.1 - Denial of Service via Improper Memory Access
CVSS 7.5
CVE-2020-13173 HIGH
Teradici PCoIP <19.11.1 - Privilege Escalation
CVSS 7.8
CVE-2020-10737 MEDIUM
oddjob <0.34.5-0.34.6 - Privilege Escalation
CVSS 6.3
CVE-2020-12387 HIGH
Firefox ESR < 68.8 - Use After Free
CVSS 8.1
CVE-2020-1021 HIGH
Windows Error Reporting - Privilege Escalation
CVSS 7.8
CVE-2020-10744 MEDIUM
Ansible Engine <2.7.18-2.9.9 - Privilege Escalation
CVSS 5.0
CVE-2020-2016 HIGH
PAN-OS < 7.1.26, < 8.1.13, < 9.0.6 - Privilege Escalation via Insecure Temporary File Creation
CVSS 7.0
CVE-2020-5835 HIGH
Symantec Endpoint Protection Manager <14.3 - Privilege Escalation
CVSS 7.0
CVE-2020-9475 HIGH
Siedle SG 150-0 Firmware < 1.2.4 - Local Privilege Escalation via Logrotate Race Condition
CVSS 7.0
CVE-2020-12652 MEDIUM
Linux kernel <5.4.14 - Privilege Escalation
CVSS 4.1
Details
Vulnerabilities 2,393
Exploit Likelihood Medium