Vulnerability index

Browse CVEs

1,826 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
Tiny Future HIGH 8.1
CVE-2020-36438

An issue was discovered in the tiny_future crate before 0.4.0 for Rust. Future<T> does not have bounds on its Send and Sync traits.

Fix: 0.4.0+
Fix from $1,950 2021-08-08
Ticketed Lock HIGH 8.1
CVE-2020-36439

An issue was discovered in the ticketed_lock crate before 0.3.0 for Rust. There are unconditional implementations of Send for ReadTicket<T> and Write…

Fix: 0.3.0+
Fix from $1,950 2021-08-08
Libsbc HIGH 8.1
CVE-2020-36440

An issue was discovered in the libsbc crate before 0.1.5 for Rust. For Decoder<R>, it implements Send for any R: Read.

Fix: 0.1.5+
Fix from $1,950 2021-08-08
Abox HIGH 8.1
CVE-2020-36441

An issue was discovered in the abox crate before 0.4.1 for Rust. It implements Send and Sync for AtomicBox<T> with no requirement for T: Send and T: …

Fix: 0.4.1+
Fix from $1,950 2021-08-08
Beef HIGH 8.1
CVE-2020-36442

An issue was discovered in the beef crate before 0.5.0 for Rust. beef::Cow has no Sync bound on its Send trait.

Fix: 0.5.0+
Fix from $1,950 2021-08-08
Async Coap HIGH 8.1
CVE-2020-36444

An issue was discovered in the async-coap crate through 2020-12-08 for Rust. Send and Sync are implemented for ArcGuard<RC, T> without trait bounds o…

Fix: after 2020-12-08
Fix from $1,950 2021-08-08
Convec HIGH 8.1
CVE-2020-36445

An issue was discovered in the convec crate through 2020-11-24 for Rust. There are unconditional implementations of Send and Sync for ConVec<T>.

Fix: after 2020-11-24
Fix from $1,950 2021-08-08
Signal Simple HIGH 8.1
CVE-2020-36446

An issue was discovered in the signal-simple crate through 2020-11-15 for Rust. There are unconditional implementations of Send and Sync for SyncChan…

Fix: after 2020-11-15
Fix from $1,950 2021-08-08
V9 HIGH 8.1
CVE-2020-36447

An issue was discovered in the v9 crate through 2020-12-18 for Rust. There is an unconditional implementation of Sync for SyncRef<T>.

Fix: after 0.1.41
Fix from $1,950 2021-08-08
Parc HIGH 8.1
CVE-2020-36454

An issue was discovered in the parc crate through 2020-11-14 for Rust. LockWeak<T> has an unconditional implementation of Send without trait bounds o…

Fix: after 2020-11-14
Fix from $1,950 2021-08-08
Lexer HIGH 8.1
CVE-2020-36458

An issue was discovered in the lexer crate through 2020-11-10 for Rust. For ReaderResult<T, E>, there is an implementation of Sync with a trait bound…

Fix: after 2020-11-10
Fix from $1,950 2021-08-08
Ruspiro Singleton HIGH 8.1
CVE-2020-36435

An issue was discovered in the ruspiro-singleton crate before 0.4.1 for Rust. In Singleton, Send and Sync do not have bounds checks.

Fix: 0.4.1+
Fix from $1,950 2021-08-08
Unicycle HIGH 8.1
CVE-2020-36436

An issue was discovered in the unicycle crate before 0.7.1 for Rust. PinSlab<T> and Unordered<T, S> do not have bounds on their Send and Sync traits.

Fix: 0.7.1+
Fix from $1,950 2021-08-08
Fedora CRITICAL 9.8
CVE-2021-32810

crossbeam-deque is a package of work-stealing deques for building task schedulers when programming in Rust. In versions prior to 0.7.4 and 0.8.0, the…

Fix: 0.7.4 / 0.8.1+
Fix from $2,300 2021-08-02
Emui HIGH 8.1
CVE-2021-22427

There is a Heap-based Buffer Overflow Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to authentication byp…

No fix yet
Fix from $1,950 2021-08-02
Emui HIGH 8.1
CVE-2021-22428

There is an Incomplete Cleanup Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to authentication bypass.

No fix yet
Fix from $1,950 2021-08-02
Emui HIGH 8.1
CVE-2021-22384

There is an Information Disclosure Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to authentication bypass.

No fix yet
Fix from $1,950 2021-08-02
Debian Linux MEDIUM 5.9
CVE-2021-32686

PJSIP is a free and open source multimedia communication library written in C language implementing standard based protocols such as SIP, SDP, RTP, S…

Fix: 2.11.1+
Fix from $1,600 2021-07-23
Windows 10 HIGH 7.0
CVE-2021-34462

Windows AppX Deployment Extensions Elevation of Privilege Vulnerability

Patch available
Fix from $1,950 2021-07-16
Android HIGH 8.1
CVE-2021-0514

In several functions of the V8 library, there is a possible use after free due to a race condition. This could lead to remote code execution in an un…

Mitigation only
Fix from $1,950 2021-07-14
Fortisandbox MEDIUM 5.3
CVE-2020-29014

A concurrent execution using shared resource with improper synchronization ('race condition') in the command shell of FortiSandbox before 3.2.2 may a…

Fix: 3.2.2+
Fix from $1,600 2021-07-09
Fl Switch Smcs 16tx Firmware HIGH 7.5
CVE-2021-21005

In Phoenix Contact FL SWITCH SMCS series products in multiple versions if an attacker sends a hand-crafted TCP-Packet with the Urgent-Flag set and th…

Fix: after 4.70
Fix from $1,950 2021-06-25
Bluetooth Core Specification MEDIUM 5.3
CVE-2021-31615

Unencrypted Bluetooth Low Energy baseband links in Bluetooth Core Specifications 4.0 through 5.2 may permit an adjacent device to inject a crafted pa…

Fix: after 5.2
Fix from $1,600 2021-06-25
Firefox HIGH 7.5
CVE-2021-29952

When Web Render components were destructed, a race condition could have caused undefined behavior, and we presume that with enough effort may have be…

Fix: 88.0.1 / 88.1.3+
Fix from $1,950 2021-06-24
Ecns280 Td Firmware MEDIUM 5.3
CVE-2021-22378

There is a race condition vulnerability in eCNS280_TD V100R005C00 and V100R005C10. There is a timing window exists in which the database can be opera…

Mitigation only
Fix from $1,600 2021-06-22
Android MEDIUM 6.4
CVE-2021-0564

In decrypt of CryptoPlugin.cpp, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with Sys…

Mitigation only
Fix from $1,600 2021-06-22
Android HIGH 7.0
CVE-2021-0565

In wrapUserThread of AudioStream.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privilege wi…

Mitigation only
Fix from $1,950 2021-06-22
Autoptimize HIGH 8.1
CVE-2021-24377

The Autoptimize WordPress plugin before 2.7.8 attempts to remove potential malicious files from the extracted archive uploaded via the 'Import Settin…

Fix: 2.7.8+
Fix from $1,950 2021-06-21
Android HIGH 7.0
CVE-2021-0532

In memory management driver, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with no …

Mitigation only
Fix from $1,950 2021-06-21
Android HIGH 7.0
CVE-2021-0533

In memory management driver, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with no …

Mitigation only
Fix from $1,950 2021-06-21