İçeriğe atla
Noroxi

CWE-667 · 663 kayıt

Improper Locking

Bu sınıftaki CVE’ler

663 kayıt

  • CVE-2025-43510
    61Bu hafta

    A memory corruption issue was addressed with improved lock state checking.

    YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %0

    apple · ipados12 Ara 2025

  • CVE-2021-1782
    59Planlayın

    A race condition was addressed with improved locking.

    YüksekCVSS 7,0KEVSilahlaştırılmışEPSS %2

    apple · ipados2 Nis 2021

  • CVE-2019-10072
    52Planlayın

    The fix for CVE-2019-0199 was incomplete and did not address HTTP/2 connection window exhaustion on write in Apache Tomcat versions 9.0.0.M1

    YüksekCVSS 7,5İstismar yokEPSS %73

    apache · tomcat21 Haz 2019

  • CVE-2020-12658
    40Planlayın

    gssproxy (aka gss-proxy) before 0.8.3 does not unlock cond_mutex before pthread exit in gp_worker_main() in gp_workers.c.

    KritikCVSS 9,8İstismar yokEPSS %2

    gssproxy project · gssproxy30 Ara 2020

  • CVE-2019-5886
    39İzleyin

    An issue was discovered in ShopXO 1.2.0.

    KritikCVSS 9,8İstismar yokEPSS %1

    shopxo · shopxo10 Oca 2019

  • CVE-2026-53049
    39İzleyin

    gfs2: add some missing log locking

    KritikCVSS 9,8İstismar yokEPSS %1

    linux · linux kernel24 Haz 2026

  • CVE-2026-64068
    39İzleyin

    netfs: Fix missing locking around retry adding new subreqs

    KritikCVSS 9,8İstismar yokEPSS %1

    linux · linux kernel19 Tem 2026

  • CVE-2026-64067
    39İzleyin

    netfs: Fix missing barriers when accessing stream->subrequests locklessly

    KritikCVSS 9,8İstismar yokEPSS %0

    linux · linux kernel19 Tem 2026

  • CVE-2021-22530
    39İzleyin

    Improper account management vulnerability in NetIQ Advance Authentication

    KritikCVSS 9,9İstismar yokEPSS %0

    microfocus · netiq advanced authentication28 Ağu 2024

  • CVE-2002-1850
    35İzleyin

    mod_cgi in Apache 2.0.39 and 2.0.40 allows local users and possibly remote attackers to cause a denial of service (hang and memory consumpti

    YüksekCVSS 7,5Kavram kanıtıEPSS %17

    apache · http server31 Ara 2002

  • CVE-2020-15674
    35İzleyin

    Mozilla developers reported memory safety bugs present in Firefox 80.

    YüksekCVSS 8,8İstismar yokEPSS %1

    mozilla · firefox1 Eki 2020

  • CVE-2026-53071
    35İzleyin

    Bluetooth: l2cap: Add missing chan lock in l2cap_ecred_reconf_rsp

    YüksekCVSS 8,8İstismar yokEPSS %0

    linux · linux kernel24 Haz 2026

  • CVE-2026-43215
    35İzleyin

    cifs: Fix locking usage for tcon fields

    YüksekCVSS 8,8İstismar yokEPSS %0

    linux · linux kernel6 May 2026

  • CVE-2026-31629
    35İzleyin

    nfc: llcp: add missing return after LLCP_CLOSED checks

    YüksekCVSS 8,8İstismar yokEPSS %0

    linux · linux kernel24 Nis 2026

  • CVE-2026-53358
    35İzleyin

    Bluetooth: L2CAP: use chan timer to close channels in cleanup_listen()

    YüksekCVSS 8,8İstismar yokEPSS %0

    linux · linux kernel2 Tem 2026

  • CVE-2026-53072
    35İzleyin

    Bluetooth: fix locking in hci_conn_request_evt() with HCI_PROTO_DEFER

    YüksekCVSS 8,8İstismar yokEPSS %0

    linux · linux kernel24 Haz 2026

  • CVE-2009-2699
    34İzleyin

    The Solaris pollset feature in the Event Port backend in poll/unix/port.c in the Apache Portable Runtime (APR) library before 1.3.9, as used

    YüksekCVSS 7,5İstismar yokEPSS %14

    apache · http server13 Eki 2009

  • CVE-2026-21914
    34İzleyin

    Junos OS: SRX Series: A specifically malformed GTP message will cause an FPC crash

    YüksekCVSS 8,7İstismar yokEPSS %0

    juniper · junos15 Oca 2026

  • CVE-2004-0174
    33İzleyin

    Apache 1.4.x before 1.3.30, and 2.0.x before 2.0.49, when using multiple listening sockets on certain platforms, allows remote attackers to

    YüksekCVSS 7,5İstismar yokEPSS %12

    apache · http server4 May 2004

  • CVE-2009-4272
    33İzleyin

    A certain Red Hat patch for net/ipv4/route.c in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5 allows remote attackers to caus

    YüksekCVSS 7,5İstismar yokEPSS %11

    linux · linux kernel27 Oca 2010

  • CVE-2024-58087
    32İzleyin

    ksmbd: fix racy issue from session lookup and expire

    YüksekCVSS 8,1İstismar yokEPSS %1

    linux · linux kernel12 Mar 2025

  • CVE-2025-58153
    32İzleyin

    BIG-IP HSB vulnerability

    YüksekCVSS 8,2İstismar yokEPSS %0

    f5 · big-ip access policy manager15 Eki 2025

  • CVE-2020-24606
    31İzleyin

    Squid before 4.13 and 5.x before 5.0.4 allows a trusted peer to perform Denial of Service by consuming all available CPU cycles during handl

    YüksekCVSS 7,5İstismar yokEPSS %5

    squid-cache · squid24 Ağu 2020

  • CVE-2006-5158
    31İzleyin

    The nlmclnt_mark_reclaim in clntlock.c in NFS lockd in Linux kernel before 2.6.16 allows remote attackers to cause a denial of service (proc

    YüksekCVSS 7,5İstismar yokEPSS %4

    linux · linux kernel5 Eki 2006

  • CVE-2006-2275
    31İzleyin

    Linux SCTP (lksctp) before 2.6.17 allows remote attackers to cause a denial of service (deadlock) via a large number of small messages to a

    YüksekCVSS 7,5İstismar yokEPSS %4

    lksctp · stream control transmission protocol9 May 2006

Tüm zafiyet sınıfları