CWE-362

Medium likelihood

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Parent: CWE-662 - Improper Synchronization

The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.

2,400 vulnerabilities with CWE-362
CVE-2009-1527
Linux Kernel < 2.6.30-rc4 - Privilege Escalation via PTRACE_ATTACH Race Condition
CVE-2009-1238
macOS X < 10.5.6 - Denial of Service via HFS vfs sysctl Race Condition
CVE-2009-1215
GNU Screen 4.0.3 - Arbitrary File Creation and Overwrite via Symlink Attack on Temporary File
CVE-2009-1207
OpenSolaris snv_01-snv_111 - Arbitrary File Overwrite via dircmp Script Race Condition
CVE-2009-0784
SystemTap <0.0.20090314 - Privilege Escalation
CVE-2009-0875
OpenSolaris < snv_94 - Race Condition in Doors Subsystem
CVE-2009-0142
Mac OS X 10.5.6 - Denial of Service via AFP Server File Enumeration Race Condition
CVE-2009-0320
Microsoft Windows XP- Vista - Info Disclosure
CVE-2009-0268
OpenSolaris < snv_103 - Denial of Service via Pseudo-Terminal Driver Race Condition
CVE-2008-6819
Windows Server 2003 and Vista - Denial of Service via CreateWindow and TranslateMessage Race Condition
CVE-2008-6598
WANPIPE - Race Condition in BRI Restart Logic
CVE-2008-4392
djbdns 1.05 - DNS Response Spoofing via Simultaneous Identical Outbound Queries
CVE-2008-4307
Linux Kernel < 2.6.26 - Denial of Service via Race Condition in NFS File Locking
CVE-2008-5303
File::Path 1.08 - Arbitrary File Deletion via Symlink Race Condition
CVE-2008-5302
Perl <5.10.0 - Local Privilege Escalation
CVE-2008-4229
iPhone OS 2.0-2.1 - Race Condition in Passcode Lock via Backup Restore
CVE-2008-5182
Linux kernel <2.6.28-rc5 - Privilege Escalation
CVE-2008-5021
Firefox 2.0-2.0.0.17 and 3.x < 3.0.4 - Remote Code Execution via File Input Element Race Condition
CVE-2008-5044
Windows Server 2003 and Vista - Denial of Service via UnhookWindowsHookEx Race Condition
CVE-2008-5009
Sun Solstice X.25 9.2 - Denial of Service via Race Condition in s_xout Kernel Module
CVE-2008-3646
Mac OS X 10.5.5 - Unauthenticated Mail Relay via Postfix Configuration
CVE-2008-2958
checkinstall 1.6.1 - Arbitrary File Overwrite via Race Condition in Temporary Working Directory
CVE-2008-2311
Apple Mac OS X - Remote Code Execution via Symlink Race Condition
CVE-2008-2365
Linux kernel 2.6.9-2.6.25 - Denial of Service via PTRACE_ATTACH Race Condition
CVE-2008-2538
Solaris 8-10 and OpenSolaris - Unauthorized Cron Job Insertion via crontab Race Condition
Details
Vulnerabilities 2,400
Exploit Likelihood Medium