İçeriğe atla
Noroxi

CWE-362 · 2.464 kayıt

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Bu sınıftaki CVE’ler

2.467 kayıt

  • Windows Search Remote Code Execution Vulnerability

    YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %99

    microsoft · windows 10 150711 Tem 2023

  • Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect ha

    YüksekCVSS 7,0KEVSilahlaştırılmışEPSS %84

    linux · linux kernel10 Kas 2016

  • CVE-2021-21166
    72Bu hafta

    Data race in audio in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTM

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %24

    google · chrome9 Mar 2021

  • CVE-2020-6820
    64Bu hafta

    Under certain conditions, when handling a ReadableStream, a race condition can cause a use-after-free.

    YüksekCVSS 8,1KEVSilahlaştırılmışEPSS %7

    mozilla · firefox24 Nis 2020

  • CVE-2022-26904
    63Bu hafta

    Windows User Profile Service Elevation of Privilege Vulnerability

    YüksekCVSS 7,0KEVSilahlaştırılmışEPSS %17

    microsoft · windows 10 150715 Nis 2022

  • CVE-2020-6819
    63Bu hafta

    Under certain conditions, when running the nsDocShell destructor, a race condition can cause a use-after-free.

    YüksekCVSS 8,1KEVSilahlaştırılmışEPSS %3

    mozilla · firefox24 Nis 2020

  • CVE-2025-62215
    60Bu hafta

    Windows Kernel Elevation of Privilege Vulnerability

    YüksekCVSS 7,0KEVSilahlaştırılmışEPSS %6

    microsoft · windows 10 180911 Kas 2025

  • CVE-2014-0196
    59Planlayın

    The n_tty_write function in drivers/tty/n_tty.c in the Linux kernel through 3.14.3 does not properly manage tty driver access in the "LECHO

    OrtaCVSS 5,5KEVSilahlaştırılmışEPSS %22

    linux · linux kernel7 May 2014

  • CVE-2024-27983
    58Planlayın

    An attacker can make the Node.js HTTP/2 server completely unavailable by sending a small amount of HTTP/2 frames packets with a few HTTP/2 f

    YüksekCVSS 8,2Kavram kanıtıEPSS %87

    nodejs · node8 Nis 2024

  • CVE-2021-0920
    55Planlayın

    In unix_scm_to_skb of af_unix.c, there is a possible use after free bug due to a race condition.

    OrtaCVSS 6,4KEVSilahlaştırılmışEPSS %1

    linux · linux kernel15 Ara 2021

  • CVE-2021-25395
    55Planlayın

    A race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows local attackers to bypass signature check given a radio privil

    OrtaCVSS 6,4KEVSilahlaştırılmışEPSS %0

    samsung · android11 Haz 2021

  • CVE-2014-0226
    53Planlayın

    Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-b

    OrtaCVSS 6,8Kavram kanıtıEPSS %86

    apache · http server20 Tem 2014

  • CVE-2025-39964
    52Planlayın

    crypto: af_alg - Disallow concurrent writes in af_alg_sendmsg

    OrtaCVSS 5,5KEVSilahlaştırılmışEPSS %1

    linux · linux kernel13 Eki 2025

  • CVE-2018-15473
    51Planlayın

    OpenSSH through 7.7 is prone to a user enumeration vulnerability due to not delaying bailout for an invalid authenticating user until after

    OrtaCVSS 5,3SilahlaştırılmışEPSS %99

    openbsd · openssh17 Ağu 2018

  • CVE-2010-0017
    46Planlayın

    Race condition in the SMB client implementation in Microsoft Windows Server 2008 R2 and Windows 7 allows remote SMB servers and man-in-the-m

    KritikCVSS 9,3SilahlaştırılmışEPSS %31

    microsoft · windows 710 Şub 2010

  • CVE-2007-0099
    45Planlayın

    Race condition in the msxml3 module in Microsoft XML Core Services 3.0, as used in Internet Explorer 6 and other applications, allows remote

    KritikCVSS 9,3İstismar yokEPSS %25

    microsoft · xml core services8 Oca 2007

  • CVE-2010-0489
    44Planlayın

    Race condition in Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, and 7 allows remote attackers to execute arbitrary code via a crafted HTML

    KritikCVSS 9,3İstismar yokEPSS %24

    microsoft · internet explorer31 Mar 2010

  • CVE-2015-8556
    44Planlayın

    Local privilege escalation vulnerability in the Gentoo QEMU package before 2.5.0-r1.

    KritikCVSS 10,0Kavram kanıtıEPSS %13

    qemu · qemu24 Mar 2017

  • CVE-2010-2558
    43Planlayın

    Race condition in Microsoft Internet Explorer 6, 7, and 8 allows remote attackers to execute arbitrary code or cause a denial of service (me

    KritikCVSS 9,3İstismar yokEPSS %21

    microsoft · internet explorer11 Ağu 2010

  • CVE-2022-46689
    42Planlayın

    A race condition was addressed with additional validation.

    YüksekCVSS 7,0SilahlaştırılmışEPSS %46

    apple · safari15 Ara 2022

  • CVE-2020-7457
    42Planlayın

    In FreeBSD 12.1-STABLE before r359565, 12.1-RELEASE before p7, 11.4-STABLE before r362975, 11.4-RELEASE before p1, and 11.3-RELEASE before p

    YüksekCVSS 8,1SilahlaştırılmışEPSS %33

    freebsd · freebsd9 Tem 2020

  • CVE-2014-0703
    41Planlayın

    Cisco Wireless LAN Controller (WLC) devices 7.4 before 7.4.110.0 distribute Aironet IOS software with a race condition in the status of the

    KritikCVSS 10,0İstismar yokEPSS %2

    cisco · wireless lan controller software6 Mar 2014

  • CVE-2021-32810
    40Planlayın

    Data race in crossbeam-deque

    KritikCVSS 9,8İstismar yokEPSS %2

    crossbeam project · crossbeam2 Ağu 2021

  • CVE-2008-6598
    40Planlayın

    Multiple race conditions in WANPIPE before 3.3.6 have unknown impact and attack vectors related to "bri restart logic."

    KritikCVSS 10,0İstismar yokEPSS %1

    sangoma · wanpipe3 Nis 2009

  • CVE-2010-1228
    40Planlayın

    Multiple race conditions in the sandbox infrastructure in Google Chrome before 4.1.249.1036 have unspecified impact and attack vectors.

    KritikCVSS 10,0İstismar yokEPSS %1

    google · chrome1 Nis 2010

Tüm zafiyet sınıfları