CWE-662

Improper Synchronization

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product utilizes multiple threads, processes, components, or systems to allow temporary access to a shared resource that can only be exclusive to one process at a time, but it does not properly synchronize these actions, which might cause simultaneous accesses of this resource by multiple threads or processes.

58 vulnerabilities with CWE-662
CVE-2026-39865 MEDIUM
Axios HTTP/2 Session Cleanup State Corruption Vulnerability
CVSS 5.9
CVE-2026-28789 HIGH
olivetin < 3000.10.3 - Unauthenticated Denial of Service via OAuth2 Login Concurrent Map Access
CVSS 7.5
CVE-2025-22853 LOW
Intel(R) TDX - Privilege Escalation
CVSS 2.3
CVE-2025-27104 HIGH
vyperlang/vyper < 0.4.1 - Improper Synchronization in For Loop Iterator Evaluation
CVSS 7.5
CVE-2024-58131 MEDIUM
FISCO BCOS 3.11.0 - Info Disclosure
CVSS 4.0
CVE-2024-7409 HIGH
Red Hat Enterprise Linux 8 - Denial of Service via QEMU NBD Server Socket Closure
CVSS 7.5
CVE-2024-32644 CRITICAL
evmos < 17.0.0 - Arbitrary Token Minting via State Synchronization Race Condition
CVSS 9.1
CVE-2024-30387 MEDIUM
Juniper Junos - Unauthenticated Denial-of-Service via Interface Flap Statistics Collection
CVSS 6.5
CVE-2023-45084 HIGH
SoftIron HyperCloud <2.0.3 - Info Disclosure
CVSS 7.0
CVE-2023-5088 MEDIUM
QEMU < 8.2.0 - Arbitrary Disk Offset Overwrite via Guest I/O Operation
CVSS 6.4
CVE-2023-2801 HIGH
Grafana 9.4.0-9.4.11 - Denial of Service via Mixed Query Processing
CVSS 7.5
CVE-2023-20625 MEDIUM
Android - Use-After-Free via Race Condition in ADSP
CVSS 6.4
CVE-2023-20611 MEDIUM
Android - Use-After-Free in GPU via Race Condition
CVSS 6.4
CVE-2023-20610 MEDIUM
Android - Local Privilege Escalation via Display DRM Race Condition
CVSS 6.4
CVE-2023-20607 MEDIUM
Android - Memory Corruption via Race Condition in CCU
CVSS 6.4
CVE-2022-32643 MEDIUM
Android - Use-After-Free via Race Condition in CCD
CVSS 6.4
CVE-2022-32642 MEDIUM
Android - Local Privilege Escalation via Race Condition in CCD
CVSS 6.4
CVE-2022-23005 HIGH
JEDEC Universal Flash Storage - Improper Access Control for Register Interface
CVSS 8.7
CVE-2022-32648 MEDIUM
Android - Use-After-Free in disp via Race Condition
CVSS 6.4
CVE-2022-32645 MEDIUM
Android - Local Information Disclosure via Race Condition in vow
CVSS 4.1
CVE-2022-32644 MEDIUM
Android - Use-After-Free via Race Condition in vow
CVSS 6.4
CVE-2022-32610 MEDIUM
Android - Use-After-Free via Race Condition in VCU
CVSS 6.4
CVE-2022-32609 MEDIUM
Android - Use-After-Free via Race Condition in vcu
CVSS 6.4
CVE-2022-3565 MEDIUM
Linux Kernel 2.6.27-4.9.330 - Use-After-Free in Bluetooth l1oip_core.c del_timer
CVSS 4.6
CVE-2022-2962 HIGH
QEMU 4.2.0-7.0.0 - Denial of Service via Tulip DMA Reentrancy
CVSS 7.8
Details
Vulnerabilities 58