Skip to main content

CWE archive

CWE-362 CVEs

Programmatic archive

2,500 CVEs tagged with CWE-36259 Critical, 1,127 High, 1,197 Medium, 117 Low, 0 Unrated.

CVE-2017-2421

Published Apr 2, 2017

An issue was discovered in certain Apple products. macOS before 10.12.4 is affected. The issue involves the "AppleGraphicsPowerManagement" component. A race condition allows attac…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-5899

Published Mar 27, 2017

Directory traversal vulnerability in the setuid root helper binary in S-nail (later S-mailx) before 14.8.16 allows local users to write to arbitrary files and consequently gain ro…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2015-8556

Published Mar 24, 2017

Local privilege escalation vulnerability in the Gentoo QEMU package before 2.5.0-r1.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-6874

Published Mar 14, 2017

Race condition in kernel/ucount.c in the Linux kernel through 4.10.2 allows local users to cause a denial of service (use-after-free and system crash) or possibly have unspecified…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2017-2636

Published Mar 7, 2017

Race condition in drivers/tty/n_hdlc.c in the Linux kernel through 4.10.1 allows local users to gain privileges or cause a denial of service (double free) by setting the HDLC line…

CVSS 7.0 · High
evidence mentions
4
Buzz score
22.6
Vendor/product tagsBeta · best-effort

CVE-2017-6346

Published Mar 1, 2017

Race condition in net/packet/af_packet.c in the Linux kernel before 4.9.13 allows local users to cause a denial of service (use-after-free) or possibly have unspecified other impa…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2017-6001

Published Feb 18, 2017

Race condition in kernel/events/core.c in the Linux kernel before 4.9.7 allows local users to gain privileges via a crafted application that makes concurrent perf_event_open syste…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2017-5986

Published Feb 18, 2017

Race condition in the sctp_wait_for_sndbuf function in net/sctp/socket.c in the Linux kernel before 4.9.11 allows local users to cause a denial of service (assertion failure and p…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-9914

Published Feb 7, 2017

Race condition in the ip4_datagram_release_cb function in net/ipv4/datagram.c in the Linux kernel before 3.15.2 allows local users to gain privileges or cause a denial of service…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-9962

Published Jan 31, 2017

RunC allowed additional container processes via 'runc exec' to be ptraced by the pid 1 of the container. This allows the main processes of the container, if running as root, to g…

CVSS 6.4 · Medium
evidence mentions
4
Buzz score
26.1
Vendor/product tagsBeta · best-effort

CVE-2016-9381

Published Jan 23, 2017

Race condition in QEMU in Xen allows local x86 HVM guest OS administrators to gain privileges by changing certain data on shared rings, aka a "double fetch" vulnerability.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-10027

Published Jan 12, 2017

Race condition in the XMPP library in Smack before 4.1.9, when the SecurityMode.required TLS setting has been set, allows man-in-the-middle attackers to bypass TLS protections and…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-9806

Published Dec 28, 2016

Race condition in the netlink_dump function in net/netlink/af_netlink.c in the Linux kernel before 4.6.3 allows local users to cause a denial of service (double free) or possibly…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-9794

Published Dec 28, 2016

Race condition in the snd_pcm_period_elapsed function in sound/core/pcm_lib.c in the ALSA subsystem in the Linux kernel before 4.7 allows local users to cause a denial of service…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-8655

Published Dec 8, 2016

Race condition in net/packet/af_packet.c in the Linux kernel through 4.8.12 allows local users to gain privileges or cause a denial of service (use-after-free) by leveraging the C…

CVSS 7.8 · High
evidence mentions
4
Buzz score
26.1
Vendor/product tagsBeta · best-effort

CVE-2016-7916

Published Nov 16, 2016

Race condition in the environ_read function in fs/proc/base.c in the Linux kernel before 4.5.4 allows local users to obtain sensitive information from kernel memory by reading a /…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-7911

Published Nov 16, 2016

Race condition in the get_task_ioprio function in block/ioprio.c in the Linux kernel before 4.6.6 allows local users to gain privileges or cause a denial of service (use-after-fre…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2015-8963

Published Nov 16, 2016

Race condition in kernel/events/core.c in the Linux kernel before 4.4 allows local users to gain privileges or cause a denial of service (use-after-free) by leveraging incorrect h…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2016-3914

Published Oct 10, 2016

Race condition in providers/telephony/MmsProvider.java in Telephony in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-10-01, and 7.0 before 2016…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 2,076-2,100 of 2,500 CVEsPage 84 of 100