Skip to main content

CWE archive

CWE-362 CVEs

Programmatic archive

2,495 CVEs tagged with CWE-36258 Critical, 1,127 High, 1,193 Medium, 117 Low, 0 Unrated.

CVE-2015-0608

Published Feb 12, 2015

Race condition in the Measurement, Aggregation, and Correlation Engine (MACE) implementation in Cisco IOS 15.4(2)T3 and earlier allows remote attackers to cause a denial of servic…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2014-5332

Published Feb 6, 2015

Race condition in NVMap in NVIDIA Tegra Linux Kernel 3.10 allows local users to gain privileges via a crafted NVMAP_IOC_CREATE IOCTL call, which triggers a use-after-free error, a…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-1200

Published Jan 23, 2015

Race condition in pxz 4.999.99 Beta 3 uses weak file permissions for the output file when compressing a file before changing the permission to match the original file, which allow…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2014-9529

Published Jan 9, 2015

Race condition in the key_gc_unused_keys function in security/keys/gc.c in the Linux kernel through 3.18.2 allows local users to cause a denial of service (memory corruption or pa…

CVSS 6.9 · Medium

CVE-2014-7170

Published Dec 17, 2014

Race condition in Puppet Server 0.2.0 allows local users to obtain sensitive information by accessing it in between package installation or upgrade and the start of the service.

CVSS 1.9 · Low
Vendor/product tagsBeta · best-effort

CVE-2014-7842

Published Nov 30, 2014

Race condition in arch/x86/kvm/x86.c in the Linux kernel before 3.17.4 allows guest OS users to cause a denial of service (guest OS crash) via a crafted application that performs…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-5313

Published Nov 30, 2014

Race condition in arch/x86/kvm/x86.c in the Linux kernel before 2.6.38 allows L2 guest OS users to cause a denial of service (L1 guest OS crash) via a crafted instruction that tri…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-8005

Published Nov 26, 2014

Race condition in the lighttpd module in Cisco IOS XR 5.1 and earlier on Network Convergence System 6000 devices allows remote attackers to cause a denial of service (process relo…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-2667

Published Nov 16, 2014

Race condition in the _get_masked_mode function in Lib/os.py in Python 3.2 through 3.5, when exist_ok is set to true and multiple threads are used, might allow local users to bypa…

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2014-3406

Published Oct 19, 2014

Race condition in the IP logging feature in Cisco Intrusion Prevention System (IPS) Software 7.1(7)E4 and earlier allows remote attackers to cause a denial of service (device relo…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2014-4438

Published Oct 18, 2014

Race condition in LoginWindow in Apple OS X before 10.10 allows physically proximate attackers to obtain access by leveraging an unattended workstation on which screen locking had…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-8750

Published Oct 15, 2014

Race condition in the VMware driver in OpenStack Compute (Nova) before 2014.1.4 and 2014.2 before 2014.2rc1 allows remote authenticated users to access unintended consoles by spaw…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3385

Published Oct 10, 2014

Race condition in the Health and Performance Monitoring (HPM) for ASDM feature in Cisco ASA Software 8.3 before 8.3(2.42), 8.4 before 8.4(7.11), 8.5 before 8.5(1.19), 8.6 before 8…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2012-5507

Published Sep 30, 2014

AccessControl/AuthEncoding.py in Zope before 2.13.19, as used in Plone before 4.2.3 and 4.3 before beta 1, allows remote attackers to obtain passwords via vectors involving timing…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-4386

Published Sep 18, 2014

Race condition in the App Installation feature in Apple iOS before 8 allows local users to gain privileges and install unverified apps by leveraging /tmp write access.

CVSS 1.9 · Low
Vendor/product tagsBeta · best-effort

CVE-2014-4353

Published Sep 18, 2014

Race condition in iMessage in Apple iOS before 8 allows attackers to obtain sensitive information by leveraging the presence of an attachment after the deletion of its parent (1)…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3509

Published Aug 13, 2014

Race condition in the ssl_parse_serverhello_tlsext function in t1_lib.c in OpenSSL 1.0.0 before 1.0.0n and 1.0.1 before 1.0.1i, when multithreading and session resumption are used…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort
Showing 2,176-2,200 of 2,495 CVEsPage 88 of 100