Skip to main content

CWE archive

CWE-362 CVEs

Programmatic archive

2,568 CVEs tagged with CWE-36279 Critical, 1,275 High, 1,094 Medium, 120 Low, 0 Unrated.

CVE-2017-14880

Published Apr 3, 2018

In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch level 2018-04-05, while IPA WAN-dr…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2018-4156

Published Apr 3, 2018

An issue was discovered in certain Apple products. iOS before 11.3 is affected. macOS before 10.13.4 is affected. The issue involves the "PluginKit" component. A race condition al…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2018-4154

Published Apr 3, 2018

An issue was discovered in certain Apple products. iOS before 11.3 is affected. macOS before 10.13.4 is affected. The issue involves the "Storage" component. A race condition allo…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2018-4152

Published Apr 3, 2018

An issue was discovered in certain Apple products. macOS before 10.13.4 is affected. The issue involves the "Notes" component. A race condition allows attackers to execute arbitra…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2018-4151

Published Apr 3, 2018

An issue was discovered in certain Apple products. iOS before 11.3 is affected. macOS before 10.13.4 is affected. The issue involves the "iCloud Drive" component. A race condition…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2017-7004

Published Apr 3, 2018

An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. The issue involves the "Security" component. A race condition a…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2017-9691

Published Mar 30, 2018

There is a race condition in Android for MSM, Firefox OS for MSM, and QRD Android that allows to access to already free'd memory in the debug message output functionality containe…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-15826

Published Mar 30, 2018

Due to a race condition in MDSS rotator in Android for MSM, Firefox OS for MSM, and QRD Android before 2017-10-20, a double free vulnerability may potentially exist when two threa…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-16512

Published Mar 29, 2018

The vagrant update process in Hashicorp vagrant-vmware-fusion 5.0.2 through 5.0.4 allows local users to steal root privileges via a crafted update request when no updates are avai…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-12410

Published Mar 26, 2018

It is possible to exploit a Time of Check & Time of Use (TOCTOU) vulnerability by winning a race condition when Kaseya Virtual System Administrator agent 9.3.0.11 and earlier trie…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2017-18249

Published Mar 26, 2018

The add_free_nid function in fs/f2fs/node.c in the Linux kernel before 4.12 does not properly track an allocated nid, which allows local users to cause a denial of service (race c…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2018-3561

Published Mar 16, 2018

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a race condition in diag_ioctl_lsm_deinit() leads to a Use After Fr…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2017-15834

Published Mar 16, 2018

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, race condition in diag_dbgfs_read_dcistats(), while accessing diag_…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2017-11082

Published Mar 16, 2018

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, due to a race condition in a firmware loading routine, a buffer ove…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2018-7562

Published Mar 12, 2018

A remote code execution issue was discovered in GLPI through 9.2.1. There is a race condition that allows temporary access to an uploaded executable file that will be disallowed.…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 2,001-2,025 of 2,568 CVEsPage 81 of 103