CWE-362

Medium likelihood

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Parent: CWE-662 - Improper Synchronization

The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.

2,400 vulnerabilities with CWE-362
CVE-2015-7543 HIGH
aRts 1.5.10-kdelibs3 3.5.10 - Info Disclosure
CVSS 7.0
CVE-2015-9022 HIGH
Android - Time-of-Check Time-of-Use Race Condition in TZ APIs
CVSS 7.0
CVE-2015-5232 HIGH
opa-fm <10.4.0.0.196, opa-ff <10.4.0.0.197 - Use After Free
CVSS 8.1
CVE-2015-8997 HIGH
Android - Race Condition in TrustZone Listener Routine
CVSS 7.0
CVE-2015-8996 HIGH
Android - Time-of-Check Time-of-Use Race Condition in TrustZone QFPROM Routine
CVSS 7.0
CVE-2015-8556 CRITICAL
Gentoo QEMU <2.5.0-r1 - Privilege Escalation
CVSS 10.0
CVE-2015-8963 HIGH
Linux Kernel < 3.2.85 - Use-After-Free via CPU Unplug Operation
CVSS 7.0
CVE-2015-0572 HIGH
Linux Kernel 3.0-3.19.8 - Race Condition in ADSPRPC Driver via COMPAT_FASTRPC_IOCTL_INVOKE_FD
CVSS 7.0
CVE-2015-8878 MEDIUM
PHP 5.5.0-5.5.27 - Denial of Service via Race Condition in Temporary File Handling
CVSS 5.9
CVE-2015-8839 MEDIUM
Linux Kernel < 4.4.221 - Denial of Service via ext4 Hole Punching Race Condition
CVSS 5.1
CVE-2015-4170 MEDIUM
Linux Kernel < 3.13.3 - Denial of Service via ldsem_cmpxchg Race Condition
CVSS 4.7
CVE-2015-8767 MEDIUM
Linux Kernel < 4.3 - Denial of Service via SCTP Accept Deadlock
CVSS 6.2
CVE-2015-7550 MEDIUM
Linux Kernel < 4.3.4 - Denial of Service via keyctl_read_key Race Condition
CVSS 5.5
CVE-2015-8511 MEDIUM
Mozilla Firefox OS <2.5 - Info Disclosure
CVSS 6.4
CVE-2015-7990 MEDIUM
Linux Kernel < 4.3.3 - Race Condition in rds_sendmsg Function
CVSS 5.8
CVE-2015-8461
ISC BIND <9.9.8-P2, 9.10.3-P2 - DoS
CVE-2015-6789
Google Chrome < 47.0.2526.73 - Use-After-Free via MutationObserver Race Condition
CVE-2015-6126
Microsoft Windows - Use-After-Free via PGM Protocol Race Condition
CVE-2015-3196
OpenSSL 1.0.0-1.0.0s 1.0.1-1.0.1o 1.0.2-1.0.2c - Denial of Service via PSK Identity Hint Race Condition
CVE-2015-7312
Linux Kernel 3.x-4.x - Race Condition via madvise or msync System Call
CVE-2015-7820
IBM System Networking Switch Center <7.3.1.5 - Privilege Escalation
CVE-2015-7817
IBM System Networking Switch Center <7.3.1.5 - Privilege Escalation
CVE-2015-7189
Firefox < 42.0 - Remote Code Execution via JPEGEncoder Race Condition
CVE-2015-7814
Xen < 4.6.0 - Denial of Service via Race Condition in relinquish_memory
CVE-2015-5240
OpenStack Neutron <2014.2.4-2015.1.2 - Privilege Escalation
Details
Vulnerabilities 2,400
Exploit Likelihood Medium