Vulnerability index

Browse CVEs

1,826 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
Msm8909w Firmware HIGH 7.0
CVE-2019-2284

Possible use-after-free issue due to a race condition while calling camera ioctl concurrently in Snapdragon Compute, Snapdragon Consumer IOT, Snapdra…

Patch available
Fix from $1,950 2019-09-30
Android MEDIUM 6.4
CVE-2019-9375

In hostapd, there is a possible out of bounds write due to a race condition. This could lead to local escalation of privilege with System execution p…

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 6.4
CVE-2019-2188

In the Easel driver, there is possible memory corruption due to race conditions. This could lead to local escalation of privilege with System executi…

Mitigation only
Fix from $1,600 2019-09-27
Android MEDIUM 6.4
CVE-2019-2189

In the Easel driver, there is possible memory corruption due to race conditions. This could lead to local escalation of privilege with System executi…

Mitigation only
Fix from $1,600 2019-09-27
Firefox HIGH 7.0
CVE-2019-11736

The Mozilla Maintenance Service does not guard against files being hardlinked to another file in the updates directory, allowing for the replacement …

Fix: 68.1.0 / 69.0+
Fix from $1,950 2019-09-27
GitLab MEDIUM 5.3
CVE-2019-11546

An issue was discovered in GitLab Community and Enterprise Edition before 11.8.9, 11.9.x before 11.9.10, and 11.10.x before 11.10.2. It has a Race Co…

Fix: 11.8.9 / 11.9.10+
Fix from $1,600 2019-09-09
Android MEDIUM 6.4
CVE-2019-9450

In the Android kernel in the FingerTipS touchscreen driver there is a possible memory corruption due to a race condition. This could lead to local es…

Patch available
Fix from $1,600 2019-09-06
Android HIGH 7.0
CVE-2019-9458

In the Android kernel in the video driver there is a use after free due to a race condition. This could lead to local escalation of privilege with no…

Patch available
Fix from $1,950 2019-09-06
Android MEDIUM 6.4
CVE-2019-9271

In the Android kernel in the mnh driver there is a race condition due to insufficient locking. This could lead to a use-after-free which could lead t…

Mitigation only
Fix from $1,600 2019-09-06
FreeBSD HIGH 7.5
CVE-2019-5612

In FreeBSD 12.0-STABLE before r351264, 12.0-RELEASE before 12.0-RELEASE-p10, 11.3-STABLE before r351265, 11.3-RELEASE before 11.3-RELEASE-p3, and 11.…

No fix yet
Fix from $1,950 2019-08-30
Android HIGH 7.0
CVE-2019-2121

In ActivityManagerService.attachApplication of ActivityManagerService, there is a possible race condition. This could lead to local escalation of pri…

Mitigation only
Fix from $1,950 2019-08-20
Linux Kernel HIGH 7.0
CVE-2016-10906

An issue was discovered in drivers/net/ethernet/arc/emac_main.c in the Linux kernel before 4.5. A use-after-free is caused by a race condition betwee…

Fix: 4.5+
Fix from $1,950 2019-08-19
Vxworks HIGH 8.1
CVE-2019-12263

Wind River VxWorks 6.9.4 and vx7 has a Buffer Overflow in the TCP component (issue 4 of 4). There is an IPNET security vulnerability: TCP Urgent Poin…

Fix: 2.2.1 / 6.9.4.12+
Fix from $1,950 2019-08-09
Digital Delivery HIGH 7.8
CVE-2019-3744

Dell/Alienware Digital Delivery versions prior to 4.0.41 contain a privilege escalation vulnerability. A local non-privileged malicious user could ex…

Fix: 3.5.2013 / 4.0.41+
Fix from $1,950 2019-08-09
Cpanel MEDIUM 6.8
CVE-2016-10798

cPanel before 58.0.4 allows a file-ownership change (to nobody) via rearrangeacct (SEC-134).

Fix: 56.0.27 / 58.0.4+
Fix from $1,600 2019-08-07
Elasticsearch MEDIUM 5.9
CVE-2019-7614

A race condition flaw was found in the response headers Elasticsearch versions before 7.2.1 and 6.8.2 returns to a request. On a system with multiple…

Fix: 6.8.2 / 7.2.1+
Fix from $1,600 2019-07-30
Zstandard HIGH 8.1
CVE-2019-11922

A race condition in the one-pass compression functions of Zstandard prior to version 1.3.8 could allow an attacker to write bytes out of bounds if an…

Fix: 1.3.8+
Fix from $1,950 2019-07-25
Msm8909w Firmware HIGH 7.0
CVE-2019-2345

Race condition while accessing DMA buffer in jpeg driver in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial …

Patch available
Fix from $1,950 2019-07-25
Msm8909w Firmware HIGH 7.0
CVE-2019-2314

Possible race condition that will cause a use-after-free when writing to two sysfs entries at nearly the same time in Snapdragon Compute, Snapdragon …

Patch available
Fix from $1,950 2019-07-25
Firefox HIGH 8.3
CVE-2019-9818

A race condition is present in the crash generation server used to generate data for the crash reporter. This issue can lead to a use-after-free in t…

Fix: 60.7 / 67.0+
Fix from $1,950 2019-07-23
Firefox HIGH 8.1
CVE-2019-9821

A use-after-free vulnerability can occur in AssertWorkerThread due to a race condition with shared workers. This results in a potentially exploitable…

Fix: 67.0+
Fix from $1,950 2019-07-23
Mdm9150 Firmware HIGH 7.0
CVE-2019-2260

A race condition occurs while processing perf-event which can lead to a use after free condition in Snapdragon Auto, Snapdragon Compute, Snapdragon C…

Patch available
Fix from $1,950 2019-07-22
GitLab MEDIUM 5.9
CVE-2018-19572

GitLab CE 8.17 and later and EE 8.3 and later have a symlink time-of-check-to-time-of-use race condition that would allow unauthorized access to file…

Fix: 11.3.11 / 11.4.8+
Fix from $1,600 2019-07-10
Linux Kernel HIGH 7.0
CVE-2019-13233

In arch/x86/lib/insn-eval.c in the Linux kernel before 5.1.9, there is a use-after-free for access to an LDT entry because of a race condition betwee…

Fix: 5.1.9+
Fix from $1,950 2019-07-04
Fedora HIGH 7.0
CVE-2019-13226

deepin-clone before 1.1.3 uses a predictable path /tmp/.deepin-clone/mount/<block-dev-basename> in the Helper::temporaryMountDevice() function to tem…

Fix: 1.1.3+
Fix from $1,950 2019-07-04
Ssl Orchestrator MEDIUM 5.9
CVE-2019-6627

On F5 SSL Orchestrator 14.1.0-14.1.0.5, on rare occasions, specific to a certain race condition, TMM may restart when SSL Forward Proxy enforces the …

Fix: 14.1.0.6+
Fix from $1,600 2019-07-03
Calamares HIGH 8.1
CVE-2019-13178

modules/luksbootkeyfile/main.py in Calamares versions 3.1 through 3.2.10 has a race condition between the time when the LUKS encryption keyfile is cr…

Fix: after 3.2.10
Fix from $1,950 2019-07-02
Android CRITICAL 9.8
CVE-2019-2006

In serviceDied of HalDeathHandlerHidl.cpp, there is a possible memory corruption due to a use after free. This could lead to local escalation of priv…

Mitigation only
Fix from $2,300 2019-06-19
Android HIGH 7.5
CVE-2019-2008

In createEffect of AudioFlinger.cpp, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege …

Mitigation only
Fix from $1,950 2019-06-19
Mdm9206 Firmware HIGH 7.0
CVE-2018-13909

Metadata verification and partial hash system calls by bootloader may corrupt parallel hashing state in progress resulting in unexpected behavior in …

Mitigation only
Fix from $1,950 2019-06-14