CWE-367

Medium likelihood

Time-of-check Time-of-use (TOCTOU) Race Condition

Parent: CWE-362 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

The product checks the state of a resource before using that resource, but the resource's state can change between the check and the use in a way that invalidates the results of the check.

589 vulnerabilities with CWE-367
CVE-2024-42444 HIGH
APTIov - Buffer Overflow
CVSS 7.5
CVE-2024-41787 CRITICAL
IBM Doors Next - TOCTOU Race Condition
CVSS 9.8
CVE-2024-56337 CRITICAL
Apache Tomcat < 9.0.98 - TOCTOU Race Condition
CVSS 9.8
CVE-2024-50379 CRITICAL
Apache Tomcat < 9.0.98 - TOCTOU Race Condition
CVSS 9.8
CVE-2024-10972 HIGH
Velocidex WinPmem <4.1 - Improper Input Validation
CVSS 7.3
CVE-2024-53289 HIGH
Dell Thinos - TOCTOU Race Condition
CVSS 7.8
CVE-2024-27134 HIGH
MLflow - Privilege Escalation
CVSS 7.0
CVE-2024-41779 CRITICAL
IBM Engineering Systems Design Rhapsody - TOCTOU Race Condition
CVSS 9.8
CVE-2024-22185 HIGH
Intel(R) processor <ACTM - Privilege Escalation
CVSS 7.2
CVE-2024-49046 HIGH
Microsoft Windows 11 22h2 < 10.0.22621.4460 - TOCTOU Race Condition
CVSS 7.8
CVE-2024-43452 HIGH
Microsoft Windows 10 1809 < 10.0.17763.6532 - TOCTOU Race Condition
CVSS 7.5
CVE-2024-51563 MEDIUM
virtio-vq-recordon - Use After Free
CVSS 6.5
CVE-2024-48322 HIGH
Run.codes <1.5.2 - Info Disclosure
CVSS 8.1
CVE-2024-50234 HIGH
Linux Kernel < 4.19.323 - TOCTOU Race Condition
CVSS 7.0
CVE-2024-50220 MEDIUM
Linux Kernel < 6.11.7 - TOCTOU Race Condition
CVSS 4.7
CVE-2024-50592 HIGH
Elefant Update Service - Privilege Escalation
CVSS 7.0
CVE-2024-38407 HIGH
JPEG Encoder driver - Memory Corruption
CVSS 7.8
CVE-2024-38406 HIGH
JPEG Encoder driver - Memory Corruption
CVSS 7.8
CVE-2024-49768 CRITICAL
Waitress - DoS
CVSS 9.1
CVE-2024-49998 MEDIUM
Linux kernel - Info Disclosure
CVSS 4.7
CVE-2024-47494 MEDIUM
Juniper Networks Junos OS - DoS
CVSS 5.9
CVE-2024-45120 LOW
Adobe Commerce <2.4.7-p2 - TOCTOU
CVSS 3.1
CVE-2024-47813 LOW
Wasmtime - Memory Corruption
CVSS 2.9
CVE-2024-43511 HIGH
Microsoft Windows 10 1507 < 10.0.10240.20796 - TOCTOU Race Condition
CVSS 7.0
CVE-2024-5803 HIGH
AVG/Avast Antivirus <24.1 - Privilege Escalation
CVSS 7.5
Details
Vulnerabilities 589
Exploit Likelihood Medium