CWE-362 · 2.464 kayıt
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
Bu sınıftaki CVE’ler
2.467 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
90Hemen | CVE-2023-36884Silahlaştırılmış | Windows Search Remote Code Execution Vulnerabilitymicrosoft · windows 10 1507 · CWE-362 | Yüksek7,5 | KEV | %98,9 | 11 Tem 2023 |
83Hemen | CVE-2016-5195Silahlaştırılmış | Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect halinux · linux kernel · CWE-362 | Yüksek7,0 | KEV | %83,5 | 10 Kas 2016 |
72Bu hafta | CVE-2021-21166Silahlaştırılmış | Data race in audio in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTMgoogle · chrome · CWE-362 | Yüksek8,8 | KEV | %24,0 | 9 Mar 2021 |
64Bu hafta | CVE-2020-6820Silahlaştırılmış | Under certain conditions, when handling a ReadableStream, a race condition can cause a use-after-free.mozilla · firefox · CWE-362 | Yüksek8,1 | KEV | %7,1 | 24 Nis 2020 |
63Bu hafta | CVE-2022-26904Silahlaştırılmış | Windows User Profile Service Elevation of Privilege Vulnerabilitymicrosoft · windows 10 1507 · CWE-362 | Yüksek7,0 | KEV | %16,9 | 15 Nis 2022 |
63Bu hafta | CVE-2020-6819Silahlaştırılmış | Under certain conditions, when running the nsDocShell destructor, a race condition can cause a use-after-free.mozilla · firefox · CWE-362 | Yüksek8,1 | KEV | %3,0 | 24 Nis 2020 |
60Bu hafta | CVE-2025-62215Silahlaştırılmış | Windows Kernel Elevation of Privilege Vulnerabilitymicrosoft · windows 10 1809 · CWE-362 | Yüksek7,0 | KEV | %6,0 | 11 Kas 2025 |
59Planlayın | CVE-2014-0196Silahlaştırılmış | The n_tty_write function in drivers/tty/n_tty.c in the Linux kernel through 3.14.3 does not properly manage tty driver access in the "LECHO linux · linux kernel · CWE-362 | Orta5,5 | KEV | %22,5 | 7 May 2014 |
58Planlayın | CVE-2024-27983Kavram kanıtı | An attacker can make the Node.js HTTP/2 server completely unavailable by sending a small amount of HTTP/2 frames packets with a few HTTP/2 fnodejs · node · CWE-362 | Yüksek8,2 | — | %87,2 | 8 Nis 2024 |
55Planlayın | CVE-2021-0920Silahlaştırılmış | In unix_scm_to_skb of af_unix.c, there is a possible use after free bug due to a race condition.linux · linux kernel · CWE-362 | Orta6,4 | KEV | %0,8 | 15 Ara 2021 |
55Planlayın | CVE-2021-25395Silahlaştırılmış | A race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows local attackers to bypass signature check given a radio privilsamsung · android · CWE-362 | Orta6,4 | KEV | %0,4 | 11 Haz 2021 |
53Planlayın | CVE-2014-0226Kavram kanıtı | Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-bapache · http server · CWE-362 | Orta6,8 | — | %85,7 | 20 Tem 2014 |
52Planlayın | CVE-2025-39964Silahlaştırılmış | crypto: af_alg - Disallow concurrent writes in af_alg_sendmsglinux · linux kernel · CWE-362 | Orta5,5 | KEV | %1,0 | 13 Eki 2025 |
51Planlayın | CVE-2018-15473Silahlaştırılmış | OpenSSH through 7.7 is prone to a user enumeration vulnerability due to not delaying bailout for an invalid authenticating user until after openbsd · openssh · CWE-362 | Orta5,3 | — | %98,6 | 17 Ağu 2018 |
46Planlayın | CVE-2010-0017Silahlaştırılmış | Race condition in the SMB client implementation in Microsoft Windows Server 2008 R2 and Windows 7 allows remote SMB servers and man-in-the-mmicrosoft · windows 7 · CWE-362 | Kritik9,3 | — | %30,8 | 10 Şub 2010 |
45Planlayın | CVE-2007-0099İstismar yok | Race condition in the msxml3 module in Microsoft XML Core Services 3.0, as used in Internet Explorer 6 and other applications, allows remotemicrosoft · xml core services · CWE-362 | Kritik9,3 | — | %25,1 | 8 Oca 2007 |
44Planlayın | CVE-2010-0489İstismar yok | Race condition in Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, and 7 allows remote attackers to execute arbitrary code via a crafted HTMLmicrosoft · internet explorer · CWE-362 | Kritik9,3 | — | %23,7 | 31 Mar 2010 |
44Planlayın | CVE-2015-8556Kavram kanıtı | Local privilege escalation vulnerability in the Gentoo QEMU package before 2.5.0-r1.qemu · qemu · CWE-362 | Kritik10,0 | — | %13,4 | 24 Mar 2017 |
43Planlayın | CVE-2010-2558İstismar yok | Race condition in Microsoft Internet Explorer 6, 7, and 8 allows remote attackers to execute arbitrary code or cause a denial of service (memicrosoft · internet explorer · CWE-362 | Kritik9,3 | — | %21,0 | 11 Ağu 2010 |
42Planlayın | CVE-2022-46689Silahlaştırılmış | A race condition was addressed with additional validation.apple · safari · CWE-362 | Yüksek7,0 | — | %46,1 | 15 Ara 2022 |
42Planlayın | CVE-2020-7457Silahlaştırılmış | In FreeBSD 12.1-STABLE before r359565, 12.1-RELEASE before p7, 11.4-STABLE before r362975, 11.4-RELEASE before p1, and 11.3-RELEASE before pfreebsd · freebsd · CWE-362 | Yüksek8,1 | — | %33,1 | 9 Tem 2020 |
41Planlayın | CVE-2014-0703İstismar yok | Cisco Wireless LAN Controller (WLC) devices 7.4 before 7.4.110.0 distribute Aironet IOS software with a race condition in the status of the cisco · wireless lan controller software · CWE-362 | Kritik10,0 | — | %2,0 | 6 Mar 2014 |
40Planlayın | CVE-2021-32810İstismar yok | Data race in crossbeam-dequecrossbeam project · crossbeam · CWE-362 | Kritik9,8 | — | %1,9 | 2 Ağu 2021 |
40Planlayın | CVE-2008-6598İstismar yok | Multiple race conditions in WANPIPE before 3.3.6 have unknown impact and attack vectors related to "bri restart logic."sangoma · wanpipe · CWE-362 | Kritik10,0 | — | %1,1 | 3 Nis 2009 |
40Planlayın | CVE-2010-1228İstismar yok | Multiple race conditions in the sandbox infrastructure in Google Chrome before 4.1.249.1036 have unspecified impact and attack vectors.google · chrome · CWE-362 | Kritik10,0 | — | %0,8 | 1 Nis 2010 |
- CVE-2023-3688490Hemen
Windows Search Remote Code Execution Vulnerability
YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %99microsoft · windows 10 150711 Tem 2023
- CVE-2016-519583Hemen
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect ha
YüksekCVSS 7,0KEVSilahlaştırılmışEPSS %84linux · linux kernel10 Kas 2016
- CVE-2021-2116672Bu hafta
Data race in audio in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %24google · chrome9 Mar 2021
- CVE-2020-682064Bu hafta
Under certain conditions, when handling a ReadableStream, a race condition can cause a use-after-free.
YüksekCVSS 8,1KEVSilahlaştırılmışEPSS %7mozilla · firefox24 Nis 2020
- CVE-2022-2690463Bu hafta
Windows User Profile Service Elevation of Privilege Vulnerability
YüksekCVSS 7,0KEVSilahlaştırılmışEPSS %17microsoft · windows 10 150715 Nis 2022
- CVE-2020-681963Bu hafta
Under certain conditions, when running the nsDocShell destructor, a race condition can cause a use-after-free.
YüksekCVSS 8,1KEVSilahlaştırılmışEPSS %3mozilla · firefox24 Nis 2020
- CVE-2025-6221560Bu hafta
Windows Kernel Elevation of Privilege Vulnerability
YüksekCVSS 7,0KEVSilahlaştırılmışEPSS %6microsoft · windows 10 180911 Kas 2025
- CVE-2014-019659Planlayın
The n_tty_write function in drivers/tty/n_tty.c in the Linux kernel through 3.14.3 does not properly manage tty driver access in the "LECHO
OrtaCVSS 5,5KEVSilahlaştırılmışEPSS %22linux · linux kernel7 May 2014
- CVE-2024-2798358Planlayın
An attacker can make the Node.js HTTP/2 server completely unavailable by sending a small amount of HTTP/2 frames packets with a few HTTP/2 f
YüksekCVSS 8,2Kavram kanıtıEPSS %87nodejs · node8 Nis 2024
- CVE-2021-092055Planlayın
In unix_scm_to_skb of af_unix.c, there is a possible use after free bug due to a race condition.
OrtaCVSS 6,4KEVSilahlaştırılmışEPSS %1linux · linux kernel15 Ara 2021
- CVE-2021-2539555Planlayın
A race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows local attackers to bypass signature check given a radio privil
OrtaCVSS 6,4KEVSilahlaştırılmışEPSS %0samsung · android11 Haz 2021
- CVE-2014-022653Planlayın
Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-b
OrtaCVSS 6,8Kavram kanıtıEPSS %86apache · http server20 Tem 2014
- CVE-2025-3996452Planlayın
crypto: af_alg - Disallow concurrent writes in af_alg_sendmsg
OrtaCVSS 5,5KEVSilahlaştırılmışEPSS %1linux · linux kernel13 Eki 2025
- CVE-2018-1547351Planlayın
OpenSSH through 7.7 is prone to a user enumeration vulnerability due to not delaying bailout for an invalid authenticating user until after
OrtaCVSS 5,3SilahlaştırılmışEPSS %99openbsd · openssh17 Ağu 2018
- CVE-2010-001746Planlayın
Race condition in the SMB client implementation in Microsoft Windows Server 2008 R2 and Windows 7 allows remote SMB servers and man-in-the-m
KritikCVSS 9,3SilahlaştırılmışEPSS %31microsoft · windows 710 Şub 2010
- CVE-2007-009945Planlayın
Race condition in the msxml3 module in Microsoft XML Core Services 3.0, as used in Internet Explorer 6 and other applications, allows remote
KritikCVSS 9,3İstismar yokEPSS %25microsoft · xml core services8 Oca 2007
- CVE-2010-048944Planlayın
Race condition in Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, and 7 allows remote attackers to execute arbitrary code via a crafted HTML
KritikCVSS 9,3İstismar yokEPSS %24microsoft · internet explorer31 Mar 2010
- CVE-2015-855644Planlayın
Local privilege escalation vulnerability in the Gentoo QEMU package before 2.5.0-r1.
KritikCVSS 10,0Kavram kanıtıEPSS %13qemu · qemu24 Mar 2017
- CVE-2010-255843Planlayın
Race condition in Microsoft Internet Explorer 6, 7, and 8 allows remote attackers to execute arbitrary code or cause a denial of service (me
KritikCVSS 9,3İstismar yokEPSS %21microsoft · internet explorer11 Ağu 2010
- CVE-2022-4668942Planlayın
A race condition was addressed with additional validation.
YüksekCVSS 7,0SilahlaştırılmışEPSS %46apple · safari15 Ara 2022
- CVE-2020-745742Planlayın
In FreeBSD 12.1-STABLE before r359565, 12.1-RELEASE before p7, 11.4-STABLE before r362975, 11.4-RELEASE before p1, and 11.3-RELEASE before p
YüksekCVSS 8,1SilahlaştırılmışEPSS %33freebsd · freebsd9 Tem 2020
- CVE-2014-070341Planlayın
Cisco Wireless LAN Controller (WLC) devices 7.4 before 7.4.110.0 distribute Aironet IOS software with a race condition in the status of the
KritikCVSS 10,0İstismar yokEPSS %2cisco · wireless lan controller software6 Mar 2014
- CVE-2021-3281040Planlayın
Data race in crossbeam-deque
KritikCVSS 9,8İstismar yokEPSS %2crossbeam project · crossbeam2 Ağu 2021
- CVE-2008-659840Planlayın
Multiple race conditions in WANPIPE before 3.3.6 have unknown impact and attack vectors related to "bri restart logic."
KritikCVSS 10,0İstismar yokEPSS %1sangoma · wanpipe3 Nis 2009
- CVE-2010-122840Planlayın
Multiple race conditions in the sandbox infrastructure in Google Chrome before 4.1.249.1036 have unspecified impact and attack vectors.
KritikCVSS 10,0İstismar yokEPSS %1google · chrome1 Nis 2010