Vulnerability index

Browse CVEs

1,826 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
Rocket HIGH 8.1
CVE-2020-35882

An issue was discovered in the rocket crate before 0.4.5 for Rust. LocalRequest::clone creates more than one mutable references to the same object, p…

Fix: 0.4.5+
Fix from $1,950 2020-12-31
Rusqlite HIGH 8.1
CVE-2020-35871

An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated via an Auxdata API data race.

Fix: 0.23.0+
Fix from $1,950 2020-12-31
Internment HIGH 8.1
CVE-2020-35874

An issue was discovered in the internment crate through 2020-05-28 for Rust. ArcIntern::drop has a race condition and resultant use-after-free.

Patch available
Fix from $1,950 2020-12-31
Gnome Display Manager MEDIUM 6.4
CVE-2020-27837

A flaw was found in GDM in versions prior to 3.38.2.1. A race condition in the handling of session shutdown makes it possible to bypass the lock scre…

Fix: 3.38.2.1+
Fix from $1,600 2020-12-28
Android MEDIUM 6.4
CVE-2020-27067

In the l2tp subsystem, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execu…

Patch available
Fix from $1,600 2020-12-15
Android HIGH 7.0
CVE-2020-0474

In HalCamera::requestNewFrame of HalCamera.cpp, there is a possible use-after-free due to a race condition. This could lead to local escalation of pr…

Patch available
Fix from $1,950 2020-12-15
Linux Kernel MEDIUM 5.7
CVE-2020-27825

A use-after-free flaw was found in kernel/trace/ring_buffer.c in Linux kernel (before 5.10-rc1). There was a race problem in trace_open and resize of…

Patch available
Fix from $1,600 2020-12-11
Linux Kernel HIGH 7.0
CVE-2020-29368

An issue was discovered in __split_huge_pmd in mm/huge_memory.c in the Linux kernel before 5.7.5. The copy-on-write implementation can grant unintend…

Fix: 4.9.228 / 4.14.185+
Fix from $1,950 2020-11-28
Linux Kernel HIGH 7.0
CVE-2020-29369

An issue was discovered in mm/mmap.c in the Linux kernel before 5.7.11. There is a race condition between certain expand functions (expand_downwards …

Fix: 5.4.54 / 5.7.11+
Fix from $1,950 2020-11-28
Linux Kernel HIGH 7.0
CVE-2020-29370

An issue was discovered in kmem_cache_alloc_bulk in mm/slub.c in the Linux kernel before 5.5.11. The slowpath lacks the required TID increment, aka C…

Fix: 5.5.11+
Fix from $1,950 2020-11-28
Debian Linux MEDIUM 6.4
CVE-2020-25651

A flaw was found in the SPICE file transfer protocol. File data from the host system can end up in full or in parts in the client connection of an il…

Fix: after 0.20.0
Fix from $1,600 2020-11-26
Debian Linux MEDIUM 6.3
CVE-2020-25653

A race condition vulnerability was found in the way the spice-vdagentd daemon handled new client connections. This flaw may allow an unprivileged loc…

Fix: after 0.20.0
Fix from $1,600 2020-11-26
Converged Security And Management Engine MEDIUM 6.4
CVE-2020-8755

Race condition in subsystem for Intel(R) CSME versions before 12.0.70 and 14.0.45, Intel(R) SPS versions before E5_04.01.04.400 and E3_05.01.04.200 m…

Fix: 12.0.70 / 14.0.45+
Fix from $1,600 2020-11-12
Debian Linux MEDIUM 6.3
CVE-2020-28049

An issue was discovered in SDDM before 0.19.0. It incorrectly starts the X server in a way that - for a short time period - allows local unprivileged…

Fix: 0.19.0+
Fix from $1,600 2020-11-04
Agatti Firmware HIGH 7.0
CVE-2020-11173

u'Two threads running simultaneously from user space can lead to race condition in fastRPC driver' in Snapdragon Auto, Snapdragon Compute, Snapdragon…

Patch available
Fix from $1,950 2020-11-02
Mx900 Firmware HIGH 7.0
CVE-2019-14711

Verifone MX900 series Pinpad Payment Terminals with OS 30251000 have a race condition for RBAC bypass.

Mitigation only
Fix from $1,950 2020-10-23
Fedora HIGH 7.0
CVE-2020-27672

An issue was discovered in Xen through 4.14.x allowing x86 guest OS users to cause a host OS denial of service, achieve data corruption, or possibly …

Fix: after 4.14.0
Fix from $1,950 2020-10-22
Mac Os X HIGH 7.8
CVE-2020-9990

A race condition was addressed with additional validation. This issue is fixed in macOS Catalina 10.15.6. A malicious application may be able to exec…

Fix: 10.5.6+
Fix from $1,950 2020-10-22
Mac Os X HIGH 7.0
CVE-2020-9796

A race condition was addressed with improved state handling. This issue is fixed in macOS Catalina 10.15.5. An application may be able to execute arb…

Fix: 10.15.5+
Fix from $1,950 2020-10-22
Junos CRITICAL 9.9
CVE-2020-1660

When DNS filtering is enabled on Juniper Networks Junos MX Series with one of the following cards MS-PIC, MS-MIC or MS-MPC, an incoming stream of pac…

Mitigation only
Fix from $2,300 2020-10-16
Junos HIGH 8.3
CVE-2020-1667

When DNS filtering is enabled on Juniper Networks Junos MX Series with one of the following cards MS-PIC, MS-MIC or MS-MPC, an incoming stream of pac…

Mitigation only
Fix from $1,950 2020-10-16
Authoritative HIGH 8.1
CVE-2020-24696

An issue was discovered in PowerDNS Authoritative through 4.3.0 when --enable-experimental-gss-tsig is used. A remote, unauthenticated attacker can t…

Fix: after 4.3.0
Fix from $1,950 2020-10-02
Firefox HIGH 8.8
CVE-2020-15670

Mozilla developers reported memory safety bugs present in Firefox for Android 79. Some of these bugs showed evidence of memory corruption and we pres…

Fix: 78.2 / 80.0+
Fix from $1,950 2020-10-01
Antivirus\+ 2020 MEDIUM 6.3
CVE-2020-25775

The Trend Micro Security 2020 (v16) consumer family of products is vulnerable to a security race condition arbitrary file deletion vulnerability that…

Fix: after 16.0
Fix from $1,600 2020-09-29
Fedora HIGH 7.0
CVE-2020-25599

An issue was discovered in Xen through 4.14.x. There are evtchn_reset() race conditions. Uses of EVTCHNOP_reset (potentially by a guest on itself) or…

Fix: after 4.14.0
Fix from $1,950 2020-09-23
Chrome HIGH 8.3
CVE-2020-6575

Race in Mojo in Google Chrome prior to 85.0.4183.102 allowed a remote attacker who had compromised the renderer process to potentially perform a sand…

Fix: 85.0.4183.102+
Fix from $1,950 2020-09-21
Android MEDIUM 6.4
CVE-2020-0268

In NFC, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges…

Mitigation only
Fix from $1,600 2020-09-18
Android MEDIUM 6.4
CVE-2020-0428

In CamX code, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution priv…

Mitigation only
Fix from $1,600 2020-09-17
System Update HIGH 7.0
CVE-2020-8342

A race condition vulnerability was reported in Lenovo System Update prior to version 5.07.0106 that could allow escalation of privilege.

Fix: 5.07.0106+
Fix from $1,950 2020-09-15
Linux Kernel MEDIUM 6.4
CVE-2020-25285

A race condition between hugetlb sysctl handlers in mm/hugetlb.c in the Linux kernel before 5.8.8 could be used by local attackers to corrupt memory,…

Fix: 5.8.8+
Fix from $1,600 2020-09-13