CWE-667

Improper Locking

Parent: CWE-662 - Improper Synchronization

The product does not properly acquire or release a lock on a resource, leading to unexpected resource state changes and behaviors.

690 vulnerabilities with CWE-667
CVE-2006-5158 HIGH
Linux Kernel < 2.6.16 - Denial of Service via NFS lockd Null Dereference
CVSS 7.5
CVE-2006-2374 MEDIUM
Microsoft Windows 2000 SP4, XP SP1-SP2, Server 2003 SP1 and earlier - Denial of Service via SMB Invalid Handle
CVSS 5.5
CVE-2006-2275 HIGH
Lksctp Stream Control Transmission Protocol - Improper Locking
CVSS 7.5
CVE-2005-3847 MEDIUM
Linux Kernel 2.6.11-2.6.12.6 - Denial of Service via SIGKILL to Real-Time Threaded Process
CVSS 5.5
CVE-2005-3106 MEDIUM
Linux Kernel 2.6 - Denial of Service via Core Dump Deadlock
CVSS 4.7
CVE-2005-2456 MEDIUM
Linux Kernel 2.6 - Denial of Service via xfrm_sk_policy_insert Array Index Overflow
CVSS 5.5
CVE-2004-0174 HIGH
Apache HTTP Server < 1.3.30 and < 2.0.49 - Denial of Service via Multiple Listening Sockets
CVSS 7.5
CVE-2002-1850 HIGH
Apache HTTP Server 2.0.39-2.0.40 - Denial of Service via mod_cgi stderr Deadlock
CVSS 7.5
CVE-2002-1869 LOW
Heysoft EventSave and EventSave+ 5.1-5.2 - Denial of Service via Log File Locking
CVSS 3.3
CVE-2002-1914 MEDIUM
dump 0.4 b10-b29 - Denial of Service via /etc/dumpdates File Lock
CVSS 5.5
CVE-2002-1915 MEDIUM
FreeBSD NetBSD OpenBSD - Denial of Service via flock Lock on /var/log/acculog
CVSS 5.5
CVE-2002-0051 HIGH
Windows 2000 - Denial of Service via Group Policy File Locking
CVSS 7.8
CVE-2001-0682 MEDIUM
ZoneAlarm and ZoneAlarm Pro - Denial of Service via Mutex Initialization
CVSS 5.5
CVE-2000-1198 MEDIUM
Qualcomm qpopper - Denial of Service via Predictable Lock File Names
CVSS 5.5
CVE-2000-0338 MEDIUM
Concurrent Versions Software - Denial of Service via Predictable Lock File
CVSS 5.5
Details
Vulnerabilities 690