Vulnerability index

Browse CVEs

1,826 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
Linux Kernel MEDIUM 6.3
CVE-2018-12633

An issue was discovered in the Linux kernel through 4.17.2. vbg_misc_device_ioctl() in drivers/virt/vboxguest/vboxguest_linux.c reads the same user d…

Fix: after 4.17.2
Fix from $1,600 2018-06-22
Endpoint Protection MEDIUM 5.3
CVE-2018-5236

Symantec Endpoint Protection prior to 14 RU1 MP1 or 12.1 RU6 MP10 may be susceptible to a race condition (or race hazard). This type of issue occurs …

Fix: after 14.0
Fix from $1,600 2018-06-20
Debian Linux HIGH 7.0
CVE-2018-12029

A race condition in the nginx module in Phusion Passenger 3.x through 5.x before 5.3.2 allows local escalation of privileges when a non-standard pass…

Fix: 5.3.2+
Fix from $1,950 2018-06-17
Debian Linux MEDIUM 5.9
CVE-2018-10850

389-ds-base before versions 1.4.0.10, 1.3.8.3 is vulnerable to a race condition in the way 389-ds-base handles persistent search, resulting in a cras…

Patch available
Fix from $1,600 2018-06-13
Procps MEDIUM 5.9
CVE-2018-1121

procps-ng, procps is vulnerable to a process hiding through race condition. Since the kernel's proc_pid_readdir() returns PID entries in ascending nu…

Fix: after 3.3.15
Fix from $1,600 2018-06-13
Android HIGH 7.0
CVE-2018-5849

Due to a race condition in the QTEECOM driver in all Android releases from CAF (Android for MSM, Firefox OS for MSM, QRD Android) using the Linux Ker…

Patch available
Fix from $1,950 2018-06-12
Android HIGH 7.0
CVE-2017-15843

Due to a race condition in a bus driver, a double free in msm_bus_floor_vote_context() can potentially occur in all Android releases from CAF (Androi…

Patch available
Fix from $1,950 2018-06-12
Linux Kernel HIGH 7.0
CVE-2018-5814

In the Linux Kernel before version 4.16.11, 4.14.43, 4.9.102, and 4.4.133, multiple race condition errors when handling probe, disconnect, and rebind…

Fix: 4.4.133+
Fix from $1,950 2018-06-12
Linux Kernel MEDIUM 5.9
CVE-2018-12232EPSS 7%

In net/socket.c in the Linux kernel through 4.17.1, there is a race condition between fchownat and close in cases where they target the same socket f…

Fix: after 4.17.1
Fix from $1,600 2018-06-12
Firefox MEDIUM 5.5
CVE-2017-5427

A non-existent chrome.manifest file will attempt to be loaded during startup from the primary installation directory. If a malicious user with local …

Fix: 52.0+
Fix from $1,600 2018-06-11
Firefox HIGH 7.0
CVE-2016-9077

Canvas allows the use of the "feDisplacementMap" filter on images loaded cross-origin. The rendering by the filter is variable depending on the input…

Fix: 50.0+
Fix from $1,950 2018-06-11
Mac Os X HIGH 7.0
CVE-2018-4228

An issue was discovered in certain Apple products. macOS before 10.13.5 is affected. The issue involves the "IOFireWireAVC" component. It allows atta…

Fix: 10.13.5+
Fix from $1,950 2018-06-08
Mac Os X HIGH 7.0
CVE-2018-4230

An issue was discovered in certain Apple products. macOS before 10.13.5 is affected. The issue involves the "NVIDIA Graphics Drivers" component. It a…

Fix: 10.13.5+
Fix from $1,950 2018-06-08
Safari HIGH 7.5
CVE-2018-4192EPSS 12%

An issue was discovered in certain Apple products. iOS before 11.4 is affected. Safari before 11.1.1 is affected. iCloud before 7.5 on Windows is aff…

Fix: 4.3.1 / 7.5+
Fix from $1,950 2018-06-08
Android HIGH 7.0
CVE-2018-5845

A race condition in drm_atomic_nonblocking_commit() in the display driver can potentially lead to a Use After Free scenario in all Android releases f…

Patch available
Fix from $1,950 2018-06-06
Antivirus\+ HIGH 7.0
CVE-2018-6236

A Time-of-Check Time-of-Use privilege escalation vulnerability in Trend Micro Maximum Security (Consumer) 2018 could allow a local attacker to escala…

Fix: after 12.0
Fix from $1,950 2018-05-25
Joomla\! MEDIUM 5.9
CVE-2018-11324

An issue was discovered in Joomla! Core before 3.8.8. A long running background process, such as remote checks for core or extension updates, could c…

Fix: 3.8.8+
Fix from $1,600 2018-05-22
Debian Linux HIGH 7.8
CVE-2018-8897EPSS 19%

A statement in the System Programming Guide of the Intel 64 and IA-32 Architectures Software Developer's Manual (SDM) was mishandled in the developme…

Fix: 11.1+
Fix from $1,950 2018-05-08
Invincea X HIGH 7.8
CVE-2016-9038

An exploitable double fetch vulnerability exists in the SboxDrv.sys driver functionality of Invincea-X 6.1.3-24058. A specially crafted input buffer …

No fix yet
Fix from $1,950 2018-04-24
Sd 820a Firmware HIGH 8.1
CVE-2016-10432

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile and Snapdragon Mobile SD 410/12, SD 425, SD 430, SD 45…

Mitigation only
Fix from $1,950 2018-04-18
Mdm9635m Firmware HIGH 8.1
CVE-2016-10433

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear MDM9635M, MDM9…

Mitigation only
Fix from $1,950 2018-04-18
Mdm9206 Firmware HIGH 8.1
CVE-2016-10435

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear MDM9206, MDM96…

Mitigation only
Fix from $1,950 2018-04-18
Sd 425 Firmware HIGH 8.1
CVE-2016-10439

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile and Snapdragon Mobile SD 425, SD 430, SD 450, SD 625, …

Mitigation only
Fix from $1,950 2018-04-18
Mdm9206 Firmware HIGH 8.1
CVE-2016-10417

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear IPQ4019, MDM92…

Mitigation only
Fix from $1,950 2018-04-18
Sd 425 Firmware HIGH 8.1
CVE-2016-10409

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile and Snapdragon Mobile SD 425, SD 430, SD 450, SD 625, …

Mitigation only
Fix from $1,950 2018-04-18
Mdm9206 Firmware CRITICAL 9.8
CVE-2015-9157

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear IPQ4019, MDM9206, MDM9607, MDM9625, MD…

Mitigation only
Fix from $2,300 2018-04-18
Android HIGH 7.0
CVE-2015-9016

In blk_mq_tag_to_rq in blk-mq.c in the upstream kernel, there is a possible use after free due to a race condition when a request has been previously…

Patch available
Fix from $1,950 2018-04-05
Android MEDIUM 5.9
CVE-2018-5826

In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch leve…

Mitigation only
Fix from $1,600 2018-04-03
Android HIGH 7.8
CVE-2017-14880

In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch leve…

Mitigation only
Fix from $1,950 2018-04-03
Debian Linux HIGH 7.0
CVE-2018-0492

Johnathan Nightingale beep through 1.3.4, if setuid, has a race condition that allows local privilege escalation.

Fix: after 1.3.4
Fix from $1,950 2018-04-03