CWE-413

Improper Resource Locking

Parent: CWE-667 - Improper Locking

The product does not lock or does not correctly lock a resource when the product must have exclusive access to the resource.

15 vulnerabilities with CWE-413
CVE-2026-44608 MEDIUM
Use after free and crash under special conditions in RPZ code
CVSS 5.9
CVE-2026-32748 HIGH
Squid has Denial of Service in ICP Response handling
CVSS 7.5
CVE-2025-69198 MEDIUM
Pterodactyl Panel < 1.12.0 - Unauthenticated Uncontrolled Resource Consumption via Concurrent Requests
CVSS 6.5
CVE-2025-0003 HIGH
AMD Xilinx Run Time (XRT) >=2025.1 - Use-After-Free via Inadequate Lock Protection
CVSS 7.3
CVE-2025-3450 CRITICAL
B&R Automation Runtime < 6.3 and < Q4.93 - Unauthenticated Denial of Service via SDM Component
CVSS 10.0
CVE-2023-32253 MEDIUM
Red Hat Enterprise Linux - Denial of Service via ksmbd Session Setup Deadlock
CVSS 5.9
CVE-2023-33951 MEDIUM
Linux Kernel < 6.3.9 - Information Disclosure via vmwgfx Driver Race Condition
CVSS 6.7
CVE-2023-2430 MEDIUM
Linux Kernel < 6.2 - Denial of Service via Missing Lock in io_cqring_event_overflow
CVSS 5.5
CVE-2023-28649 HIGH
Snap One OvrC - Privilege Escalation
CVSS 8.6
CVE-2023-2269 MEDIUM
Linux Kernel - Denial of Service via Recursive Locking in Device Mapper-Multipathing
CVSS 4.4
CVE-2022-49737 HIGH
X.Org X server <21.1.16 - Use After Free
CVSS 7.7
CVE-2022-24946 HIGH
Mitsubishielectric Q03udecpu Firmware - Improper Locking
CVSS 7.5
CVE-2022-20678 HIGH
Cisco IOS XE - Unauthenticated Denial of Service via Crafted TCP Traffic
CVSS 8.6
CVE-2019-17102 HIGH
Bitdefender BOX 2 <2.1.47.36 - Command Injection
CVSS 8.3
CVE-2019-8998 HIGH
BlackBerry QNX Software Development Platform < 6.5.0 - Local Privilege Escalation via Procfs Information Disclosure
CVSS 7.8
Details
Vulnerabilities 15