CWE-667

Improper Locking

Parent: CWE-662 - Improper Synchronization

The product does not properly acquire or release a lock on a resource, leading to unexpected resource state changes and behaviors.

688 vulnerabilities with CWE-667
CVE-2024-26873 MEDIUM
Linux Kernel 6.7-6.7.10, 6.8-6.8.1 - Deadlock via hisi_sas PHY Command and ECC Error
CVSS 5.5
CVE-2024-26806 MEDIUM
Linux Kernel 6.7-6.7.8 - Deadlock via SPI Controller Runtime PM Hooks
CVSS 5.5
CVE-2024-26790 MEDIUM
Linux Kernel 5.1-6.7.9 - DoS via Unaligned QDMA Read
CVSS 5.5
CVE-2024-26781 MEDIUM
Linux Kernel - Deadlock in MPTCP Subflow Diag via Lock Dependency Chain
CVSS 5.5
CVE-2024-26775 MEDIUM
Linux Kernel - Deadlock via Concurrent Locking in aoe Driver
CVSS 5.5
CVE-2024-26740 MEDIUM
Linux Kernel 4.10-6.6.18, 6.7.0-6.7.6 - Denial of Service via TCP Socket Lock Deadlock
CVSS 5.5
CVE-2024-26732 MEDIUM
Linux Kernel 6.7-6.7.6 - Denial of Service via SO_PEEK_OFF Locking Issue
CVSS 5.5
CVE-2024-26725 MEDIUM
Linux Kernel 6.7-6.7.5 - Deadlock via DPLL Netlink Dump Operation
CVSS 5.5
CVE-2024-26722 MEDIUM
Linux Kernel - Deadlock in rt5645_jack_detect_work()
CVSS 5.5
CVE-2024-26719 MEDIUM
Linux Kernel < 6.6.18, 6.7.0-6.7.5, 6.8 - Denial of Service via Nouveau Fence Event Deadlock
CVSS 5.5
CVE-2024-26696 MEDIUM
Linux Kernel Deadlock via nilfs_lookup_dirty_data_buffers
CVSS 5.5
CVE-2024-26691 MEDIUM
Linux Kernel < 6.6.18, 6.7.0-6.7.6 - Circular Locking Dependency in KVM ARM64
CVSS 5.5
CVE-2024-26686 MEDIUM
Linux Kernel - Denial of Service via do_task_stat Lock Contention
CVSS 5.5
CVE-2024-26679 MEDIUM
Linux Kernel 3.18-6.7.5 - Race Condition in inet_recv_error()
CVSS 5.5
CVE-2024-26658 MEDIUM
Linux Kernel 6.7-6.7.4 - Deadlock via bcachefs Snapshot Creation
CVSS 5.5
CVE-2024-26643 MEDIUM
Linux Kernel < 5.4.274, 5.5.0-6.7.12 - Use-After-Free in nf_tables
CVSS 5.5
CVE-2024-26631 MEDIUM
Linux Kernel 5.13-5.14.x, 5.16-6.1.74, 6.2-6.6.13, 6.7.0-6.7.1 - Data Race in IPv6 Multicast Interface Counter
CVSS 4.7
CVE-2024-26629 MEDIUM
Linux Kernel - Improper Locking in NFS Server Lock Owner Release
CVSS 5.5
CVE-2024-26614 MEDIUM
Linux Kernel 3.7-5.10.210, 5.11-5.15.149, 5.16-6.1.76, 6.2-6.6.15, 6.7-6.7.3 - Use-After-Free in TCP Accept Queue
CVSS 5.5
CVE-2024-26605 MEDIUM
Linux Kernel 6.7.0-6.7.4 - Deadlock via PCI/ASPM Power State Change
CVSS 5.5
CVE-2024-0641 MEDIUM
Linux Kernel < 6.6 - Denial of Service via TIPC Crypto Key Revocation Deadlock
CVSS 5.5
CVE-2024-0639 MEDIUM
Linux Kernel < 6.4.16 - Denial of Service via SCTP Auto-ASCONF Deadlock
CVSS 5.5
CVE-2023-53620 MEDIUM
Linux Kernel 2.6.12-6.1.30 - Denial of Service via Soft Lockup in MD Resync Status
CVSS 5.5
CVE-2023-53591 MEDIUM
Linux kernel - Privilege Escalation
CVSS 5.5
CVE-2023-53590 MEDIUM
Linux Kernel 5.4.226-5.4.234 - Denial of Service via SCTP Stream Priority Handling
CVSS 5.5
Details
Vulnerabilities 688