Vulnerability index

Browse CVEs

1,826 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
Firefox HIGH 7.5
CVE-2019-17011

Under certain conditions, when retrieving a document from a DocShell in the antitracking code, a race condition could cause a use-after-free conditio…

Fix: 68.3 / 71.0+
Fix from $1,950 2020-01-08
Firefox MEDIUM 5.4
CVE-2019-11761

By using a form with a data URI it was possible to gain access to the privileged JSONView object that had been cloned into content. Impact from expos…

Fix: 68.2 / 70.0+
Fix from $1,600 2020-01-08
Jboss Portal MEDIUM 5.9
CVE-2014-0245

It was found that the implementation of the GTNSubjectCreatingInterceptor class in gatein-wsrp was not thread safe. For a specific WSRP endpoint, und…

Mitigation only
Fix from $1,600 2020-01-02
Platform Trust Technology Firmware MEDIUM 5.9
CVE-2019-11090

Cryptographic timing conditions in the subsystem for Intel(R) PTT before versions 11.8.70, 11.11.70, 11.22.70, 12.0.45, 13.0.0 and 14.0.10; Intel(R) …

Fix: 3.1.70 / 4.0.20+
Fix from $1,600 2019-12-18
Mac Os X HIGH 7.0
CVE-2019-8606

A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in macOS M…

Fix: 10.14.5+
Fix from $1,950 2019-12-18
Iphone Os HIGH 7.0
CVE-2019-8565EPSS 14%

A race condition was addressed with additional validation. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4. A malicious application may be able…

Fix: 10.14.4 / 12.2+
Fix from $1,950 2019-12-18
Icloud HIGH 7.5
CVE-2019-6232

A race condition existed during the installation of iTunes for Windows. This was addressed with improved state handling. This issue is fixed in iClou…

Fix: 7.11+
Fix from $1,950 2019-12-18
Icloud HIGH 7.5
CVE-2019-6236

A race condition existed during the installation of iCloud for Windows. This was addressed with improved state handling. This issue is fixed in iClou…

Fix: 7.11+
Fix from $1,950 2019-12-18
Excon MEDIUM 5.9
CVE-2019-16779

In RubyGem excon before 0.71.0, there was a race condition around persistent connections, where a connection which is interrupted (such as by a timeo…

Fix: 0.71.0+
Fix from $1,600 2019-12-16
Clickshare Cs 100 Firmware MEDIUM 5.9
CVE-2019-18827

On Barco ClickShare Button R9861500D01 devices (before firmware version 1.9.0) JTAG access is disabled after ROM code execution. This means that JTAG…

Fix: 1.9.0+
Fix from $1,600 2019-12-16
Edeploy HIGH 8.1
CVE-2014-3701

eDeploy has tmp file race condition flaws

No fix yet
Fix from $1,950 2019-12-15
Fedora MEDIUM 6.6
CVE-2019-19580

An issue was discovered in Xen through 4.12.x allowing x86 PV guest OS users to gain host OS privileges by leveraging race conditions in pagetable pr…

Fix: after 4.12.1
Fix from $1,600 2019-12-11
Webtitan HIGH 8.1
CVE-2019-19017

An issue was discovered in TitanHQ WebTitan before 5.18. The appliance has a hard-coded root password set during installation. An attacker could util…

Fix: 5.18+
Fix from $1,950 2019-12-02
Debian Linux HIGH 7.0
CVE-2014-5255

xcfa before 5.0.1 creates temporary files insecurely which could allow local users to launch a symlink attack and overwrite arbitrary files. Note: A …

Fix: 5.0.1+
Fix from $1,950 2019-11-21
Android HIGH 7.4
CVE-2019-2213

In binder_free_transaction of binder.c, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege …

Mitigation only
Fix from $1,950 2019-11-13
P30 Firmware HIGH 7.8
CVE-2019-5228

Certain detection module of P30, P30 Pro, Honor V20 smartphone whith Versions earlier than ELLE-AL00B 9.1.0.193(C00E190R1P21), Versions earlier than …

Mitigation only
Fix from $1,950 2019-11-12
Windows 10 HIGH 7.0
CVE-2019-1416

An elevation of privilege vulnerability exists due to a race condition in Windows Subsystem for Linux, aka 'Windows Subsystem for Linux Elevation of …

Patch available
Fix from $1,950 2019-11-12
Dtc Xen HIGH 8.1
CVE-2009-4011

dtc-xen 0.5.x before 0.5.4 suffers from a race condition where an attacker could potentially get a bash access as xenXX user on the dom0, and then ac…

Fix: 0.5.4+
Fix from $1,950 2019-11-09
Mdm9150 Firmware HIGH 8.1
CVE-2019-10529

Possible use after free issue due to race condition while attempting to mark the entry pages as dirty using function set_page_dirty() in Snapdragon A…

Patch available
Fix from $1,950 2019-11-06
Debian Linux HIGH 8.1
CVE-2006-4245

archivemail 0.6.2 uses temporary files insecurely leading to a possible race condition.

Patch available
Fix from $1,950 2019-11-06
Magento MEDIUM 6.6
CVE-2019-8232

In Magento prior to 1.9.4.3, Magento prior to 1.14.4.3, Magento 2.2 prior to 2.2.10, and Magento 2.3 prior to 2.3.3 or 2.3.2-p1, an authenticated use…

Fix: 1.9.4.3 / 1.14.4.3+
Fix from $1,600 2019-11-06
Linux Kernel HIGH 7.0
CVE-2019-18683

An issue was discovered in drivers/media/platform/vivid in the Linux kernel through 5.3.8. It is exploitable for privilege escalation on some Linux d…

Fix: 4.4.204 / 4.9.204+
Fix from $1,950 2019-11-04
Sudo HIGH 7.0
CVE-2019-18684

Sudo through 1.8.29 allows local users to escalate to root if they have write access to file descriptor 3 of the sudo process. This occurs because of…

Fix: after 1.8.29
Fix from $1,950 2019-11-04
Gs Gpl HIGH 8.1
CVE-2005-2352

I race condition in Temp files was found in gs-gpl before 8.56 addons scripts.

Fix: 8.56+
Fix from $1,950 2019-11-01
Debian Linux HIGH 7.5
CVE-2019-18421

An issue was discovered in Xen through 4.12.x allowing x86 PV guest OS users to gain host OS privileges by leveraging race conditions in pagetable pr…

Fix: after 4.12.1
Fix from $1,950 2019-10-31
Acrobat Dc HIGH 8.1
CVE-2019-8162

Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, 2015.006.30503 and earlier, a…

Fix: 15.006.30504 / 17.011.30150+
Fix from $1,950 2019-10-17
Extensible Operating System MEDIUM 5.9
CVE-2019-14810

A vulnerability has been found in the implementation of the Label Distribution Protocol (LDP) protocol in EOS. Under race conditions, the LDP agent c…

Fix: after 4.21.7
Fix from $1,600 2019-10-10
Big Ip Local Traffic Manager MEDIUM 5.9
CVE-2019-6471

A race condition which may occur when discarding malformed packets can result in BIND exiting due to a REQUIRE assertion failure in dispatch.c. Versi…

Fix: after 13.1.1
Fix from $1,600 2019-10-09
Debian Linux HIGH 7.8
CVE-2019-17341

An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service or gain privileges by leveraging a page-wri…

Fix: after 4.11.2
Fix from $1,950 2019-10-08
Debian Linux HIGH 7.0
CVE-2019-17342

An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service or gain privileges by leveraging a race con…

Fix: after 4.11.2
Fix from $1,950 2019-10-08