Vulnerability index

Browse CVEs

1,823 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
Windows 10 1507 HIGH 7.8
CVE-2023-35362

Windows Clip Service Elevation of Privilege Vulnerability

Fix: 10.0.10240.20048 / 10.0.14393.6085+
Fix from $1,950 2023-07-11
Windows 10 1507 HIGH 7.5
CVE-2023-35309

Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability

Fix: 10.0.10240.20048 / 10.0.14393.6085+
Fix from $1,950 2023-07-11
Windows Server 2008 MEDIUM 6.6
CVE-2023-35310

Windows DNS Server Remote Code Execution Vulnerability

Patch available
Fix from $1,600 2023-07-11
Fedora HIGH 8.1
CVE-2023-33170

ASP.NET and Visual Studio Security Feature Bypass Vulnerability

Fix: 6.0.20 / 7.0.9+
Fix from $1,950 2023-07-11
Fedora MEDIUM 5.3
CVE-2023-1672

A race condition exists in the Tang server functionality for key generation and key rotation. This flaw results in a small time window where Tang pri…

Fix: 14+
Fix from $1,600 2023-07-11
Linux Kernel HIGH 8.1
CVE-2023-32250

A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the processing of SMB2_SESSION…

Fix: 5.15.145 / 6.1.29+
Fix from $1,950 2023-07-10
Linux Kernel HIGH 8.1
CVE-2023-32254

A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within the processing of SMB2_TREE_DI…

Fix: 5.15.145 / 6.1.28+
Fix from $1,950 2023-07-10
Emui MEDIUM 5.9
CVE-2022-48509

Race condition vulnerability due to multi-thread access to mutually exclusive resources in Huawei Share. Successful exploitation of this vulnerabilit…

Mitigation only
Fix from $1,600 2023-07-06
Http Debugger MEDIUM 5.3
CVE-2023-35863

In MADEFORNET HTTP Debugger through 9.12, the Windows service does not set the seclevel registry key before launching the driver. Thus, it is possibl…

Fix: after 9.12
Fix from $1,600 2023-07-05
Android MEDIUM 6.4
CVE-2023-20771

In display, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with System execution pri…

Mitigation only
Fix from $1,600 2023-07-04
Ipados HIGH 7.0
CVE-2023-32413

A race condition was addressed with improved state handling. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, iOS 15.7.6 and iPadOS…

Fix: 9.5 / 11.7.7+
Fix from $1,950 2023-06-23
Linux Kernel HIGH 7.0
CVE-2023-35823

An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in saa7134_finidev in drivers/media/pci/saa7134/saa7134-core.c.

Fix: 6.3.2+
Fix from $1,950 2023-06-18
Linux Kernel HIGH 7.0
CVE-2023-35824

An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in dm1105_remove in drivers/media/pci/dm1105/dm1105.c.

Fix: 6.3.2+
Fix from $1,950 2023-06-18
Linux Kernel HIGH 7.0
CVE-2023-35826

An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in cedrus_remove in drivers/staging/media/sunxi/cedrus/cedrus.c.

Fix: 6.1.28 / 6.2.15+
Fix from $1,950 2023-06-18
Linux Kernel HIGH 7.0
CVE-2023-35827

An issue was discovered in the Linux kernel through 6.3.8. A use-after-free was found in ravb_remove in drivers/net/ethernet/renesas/ravb_main.c.

Fix: 6.3.8+
Fix from $1,950 2023-06-18
Linux Kernel HIGH 7.0
CVE-2023-35828

An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in renesas_usb3_remove in drivers/usb/gadget/udc/renesas_usb3.c.

Fix: 4.19.283 / 5.4.243+
Fix from $1,950 2023-06-18
Linux Kernel HIGH 7.0
CVE-2023-35829

An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in rkvdec_remove in drivers/staging/media/rkvdec/rkvdec.c.

Fix: 5.10.180 / 5.15.111+
Fix from $1,950 2023-06-18
Android HIGH 7.0
CVE-2023-21101

In multiple functions of WVDrmPlugin.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privileg…

Mitigation only
Fix from $1,950 2023-06-15
Dragonfly Folio G3 2 In 1 Firmware HIGH 7.8
CVE-2022-31645

Potential vulnerabilities have been identified in the system BIOS of certain HP PC products, which might allow arbitrary code execution, escalation o…

No fix yet
Fix from $1,950 2023-06-14
Iot Yocto MEDIUM 6.4
CVE-2023-20736

In vcu, there is a possible out of bounds write due to a race condition. This could lead to local escalation of privilege with System execution privi…

Mitigation only
Fix from $1,600 2023-06-06
Firefox HIGH 7.5
CVE-2023-29537

Multiple race conditions in the font initialization could have led to memory corruption and execution of attacker-controlled code. This vulnerability…

Fix: 112.0+
Fix from $1,950 2023-06-02
Riot MEDIUM 5.9
CVE-2023-33974

RIOT-OS, an operating system for Internet of Things (IoT) devices, contains a network stack with the ability to process 6LoWPAN frames. In versions 2…

Fix: after 2023.01
Fix from $1,600 2023-05-30
Libarchive MEDIUM 5.3
CVE-2023-30571

Libarchive through 3.6.2 can cause directories to have world-writable permissions. The umask() call inside archive_write_disk_posix.c changes the uma…

Fix: after 3.6.2
Fix from $1,600 2023-05-29
Curl MEDIUM 5.9
CVE-2023-28320

A denial of service vulnerability exists in curl <v8.1.0 in the way libcurl provides several different backends for resolving host names, selected at…

Fix: 8.1.0 / 11.7.9+
Fix from $1,600 2023-05-26
Linux Kernel MEDIUM 6.4
CVE-2023-33203

The Linux kernel before 6.2.9 has a race condition and resultant use-after-free in drivers/net/ethernet/qualcomm/emac/emac.c if a physically proximat…

Fix: 6.2.9+
Fix from $1,600 2023-05-18
Fedora MEDIUM 5.9
CVE-2023-32570

VideoLAN dav1d before 1.2.0 has a thread_task.c race condition that can lead to an application crash, related to dav1d_decode_frame_exit.

Fix: 1.2.0+
Fix from $1,600 2023-05-10
Avalanche MEDIUM 5.9
CVE-2023-28125

An improper authentication vulnerability exists in Avalanche Premise versions 6.3.x and below that could allow an attacker to gain access to the serv…

Fix: after 6.3.4.153
Fix from $1,600 2023-05-09
Avalanche MEDIUM 5.9
CVE-2023-28126EPSS 67%

An authentication bypass vulnerability exists in Avalanche versions 6.3.x and below that could allow an attacker to gain access by exploiting the Set…

Fix: after 6.3.4.153
Fix from $1,600 2023-05-09
Windows 10 1507 HIGH 8.1
CVE-2023-24903

Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability

Fix: 10.0.10240.19926 / 10.0.14393.5921+
Fix from $1,950 2023-05-09
Windows 11 21h2 HIGH 7.0
CVE-2023-24899

Windows Graphics Component Elevation of Privilege Vulnerability

Fix: 10.0.22000.1702+
Fix from $1,950 2023-05-09