Vulnerability index

Browse CVEs

1,826 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
Android HIGH 7.0
CVE-2021-0508

In various functions of DrmPlugin.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privilege w…

Patch available
Fix from $1,950 2021-06-21
Android HIGH 7.0
CVE-2021-0509

In various functions of CryptoPlugin.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privileg…

Mitigation only
Fix from $1,950 2021-06-21
Android HIGH 7.0
CVE-2021-0520

In several functions of MemoryFileSystem.cpp and related files, there is a possible use after free due to a race condition. This could lead to local …

Patch available
Fix from $1,950 2021-06-21
Android HIGH 7.0
CVE-2021-0476

In FindOrCreatePeer of btif_av.cc, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with …

Patch available
Fix from $1,950 2021-06-11
Android MEDIUM 6.4
CVE-2021-25395 KEV

A race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows local attackers to bypass signature check given a radio privilege is co…

Mitigation only
Fix from $1,600 2021-06-11
Android MEDIUM 6.4
CVE-2021-25394 KEV

A use after free vulnerability via race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows arbitrary write given a radio privileg…

Mitigation only
Fix from $1,600 2021-06-11
Bios MEDIUM 6.4
CVE-2020-8670

Race condition in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local acces…

Fix: 25.02.10+
Fix from $1,600 2021-06-09
Local Manageability Service MEDIUM 6.4
CVE-2020-8704

Race condition in a subsystem in the Intel(R) LMS versions before 2039.1.0.0 may allow a privileged user to potentially enable escalation of privileg…

Fix: 2039.1.0.0+
Fix from $1,600 2021-06-09
Apq8009 Firmware HIGH 7.0
CVE-2021-1900

Possible use after free in Display due to race condition while creating an external display in Snapdragon Auto, Snapdragon Compute, Snapdragon Connec…

Mitigation only
Fix from $1,950 2021-06-09
Apq8009w Firmware HIGH 7.0
CVE-2020-11250

Use after free due to race condition when reopening the device driver repeatedly in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Sna…

Patch available
Fix from $1,950 2021-06-09
Apq8009 Firmware HIGH 7.0
CVE-2020-11262

A race between command submission and destroying the context can cause an invalid context being added to the list leads to use after free issue. in S…

Patch available
Fix from $1,950 2021-06-09
Fedora HIGH 8.5
CVE-2021-30465EPSS 7%

runc before 1.0.0-rc95 allows a Container Filesystem Breakout via Directory Traversal. To exploit the vulnerability, an attacker must be able to crea…

Fix: after 0.1.1
Fix from $1,950 2021-05-27
Linux Kernel HIGH 7.0
CVE-2020-25668

A flaw was found in Linux Kernel because access to the global variable fg_console is not properly synchronized leading to a use after free in con_fon…

Fix: 4.4.242 / 4.9.242+
Fix from $1,950 2021-05-26
Bc Csharp MEDIUM 5.9
CVE-2020-15522

Bouncy Castle BC Java before 1.66, BC C# .NET before 1.8.7, BC-FJA before 1.0.1.2, 1.0.2.1, and BC-FNA before 1.0.1.1 have a timing issue within the …

Fix: 1.0.1.1 / 1.0.1.2+
Fix from $1,600 2021-05-20
Fedora MEDIUM 5.9
CVE-2021-32921

An issue was discovered in Prosody before 0.11.9. It does not use a constant-time algorithm for comparing certain secret strings when running under L…

Fix: 0.11.9+
Fix from $1,600 2021-05-13
Debian Linux HIGH 7.5
CVE-2021-20181

A race condition flaw was found in the 9pfs server implementation of QEMU up to and including 5.2.0. This flaw allows a malicious 9p client to cause …

Fix: after 5.2.0
Fix from $1,950 2021-05-13
Linux Kernel HIGH 7.0
CVE-2021-32399

net/bluetooth/hci_request.c in the Linux kernel through 5.12.2 has a race condition for removal of the HCI controller.

Fix: after 5.12.2
Fix from $1,950 2021-05-10
Exim MEDIUM 6.3
CVE-2021-27216

Exim 4 before 4.94.2 has Execution with Unnecessary Privileges. By leveraging a delete_pid_file race condition, a local user can delete arbitrary fil…

Fix: 4.94.2+
Fix from $1,600 2021-05-06
Junos MEDIUM 5.9
CVE-2021-0270

On PTX Series and QFX10k Series devices with the "inline-jflow" feature enabled, a use after free weakness in the Packet Forwarding Engine (PFE) micr…

Mitigation only
Fix from $1,600 2021-04-22
Junos HIGH 7.4
CVE-2021-0244

A signal handler race condition exists in the Layer 2 Address Learning Daemon (L2ALD) of Juniper Networks Junos OS due to the absence of a specific p…

Mitigation only
Fix from $1,950 2021-04-22
Junos MEDIUM 5.5
CVE-2021-0247

A Race Condition (Concurrent Execution using Shared Resource with Improper Synchronization) vulnerability in the firewall process (dfwd) of Juniper N…

Mitigation only
Fix from $1,600 2021-04-22
Junos MEDIUM 5.9
CVE-2021-0258

A vulnerability in the forwarding of transit TCPv6 packets received on the Ethernet management interface of Juniper Networks Junos OS allows an attac…

Mitigation only
Fix from $1,600 2021-04-22
Linux Kernel HIGH 7.0
CVE-2021-23133

A race condition in Linux kernel SCTP sockets (net/sctp/socket.c) before 5.12-rc8 can lead to kernel privilege escalation from the context of a netwo…

Fix: 4.4.269 / 4.9.269+
Fix from $1,950 2021-04-22
Rust MEDIUM 5.9
CVE-2017-20004

In the standard library in Rust before 1.19.0, there is a synchronization problem in the MutexGuard object. MutexGuards can be used across threads wi…

Fix: 1.19.0+
Fix from $1,600 2021-04-14
Android HIGH 7.0
CVE-2021-0432

In ClearPullerCacheIfNecessary and ForceClearPullerCache of StatsPullerManager.cpp, there is a possible use-after-free due to a race condition. This …

Patch available
Fix from $1,950 2021-04-13
Ax3600 Firmware HIGH 8.1
CVE-2020-14104

A RACE CONDITION on XQBACKUP causes a decompression path error on Xiaomi router AX3600 with ROM version =1.0.50.

Fix: after 1.0.50
Fix from $1,950 2021-04-08
FreeBSD HIGH 7.5
CVE-2020-25584

In FreeBSD 13.0-STABLE before n245118, 12.2-STABLE before r369552, 11.4-STABLE before r369560, 13.0-RC5 before p1, 12.2-RELEASE before p6, and 11.4-R…

Fix: 11.4 / 12.2+
Fix from $1,950 2021-04-07
Mac Os X HIGH 7.0
CVE-2021-1806

A race condition was addressed with additional validation. This issue is fixed in macOS Big Sur 11.2.1, macOS Catalina 10.15.7 Supplemental Update, m…

Fix: 10.14.6 / 10.15.7+
Fix from $1,950 2021-04-02
Mac Os X HIGH 7.0
CVE-2020-27921

A race condition was addressed with improved state handling. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security U…

Fix: 11.0.1 / 11.1.0+
Fix from $1,950 2021-04-02
Instant MEDIUM 5.9
CVE-2021-25158EPSS 30%

A remote arbitrary file read vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s): Aruba Instant 6.5.x: 6.5.4…

Fix: 6.5.4.19 / 8.3.0.15+
Fix from $1,600 2021-03-30