Vulnerability index

Browse CVEs

1,826 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
Jenkins HIGH 8.1
CVE-2017-1000503

A race condition during Jenkins 2.81 through 2.94 (inclusive); 2.89.1 startup could result in the wrong order of execution of commands during initial…

Fix: after 2.94
Fix from $1,950 2018-01-24
Yandex Browser HIGH 7.5
CVE-2017-7326

Race condition issue in Yandex Browser for Android before 17.4.0.16 allowed a remote attacker to potentially exploit memory corruption via a crafted …

Fix: after 17.4
Fix from $1,950 2018-01-19
Guacamole HIGH 8.1
CVE-2017-3158

A race condition in Guacamole's terminal emulator in versions 0.9.5 through 0.9.10-incubating could allow writes of blocks of printed data to overlap…

Fix: after 0.9.9
Fix from $1,950 2018-01-18
Linux Kernel MEDIUM 5.9
CVE-2018-1000004

In the Linux kernel 4.12, 3.10, 2.6 and possibly earlier versions a race condition vulnerability exists in the sound system, this can lead to a deadl…

Fix: after 2.6.0
Fix from $1,600 2018-01-16
Android HIGH 7.0
CVE-2017-13183

In the OMXNodeInstance::useBuffer and IOMX::freeBuffer functions, there is a possible use after free due to a race condition if the user frees the bu…

Patch available
Fix from $1,950 2018-01-12
Linux Kernel HIGH 7.8
CVE-2018-5344

In the Linux kernel through 4.14.13, drivers/block/loop.c mishandles lo_release serialization, which allows attackers to cause a denial of service (_…

Fix: after 4.14.13
Fix from $1,950 2018-01-12
Android HIGH 7.0
CVE-2017-15847

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the SPCom kernel driver, a race co…

Patch available
Fix from $1,950 2018-01-10
Vladtheenterprising HIGH 7.0
CVE-2014-4995

Race condition in lib/vlad/dba/mysql.rb in the VladTheEnterprising gem 0.2 for Ruby allows local users to obtain sensitive information by reading the…

Mitigation only
Fix from $1,950 2018-01-10
Coreutils HIGH 7.1
CVE-2017-18018

In GNU Coreutils through 8.29, chown-core.c in chown and chgrp does not prevent replacement of a plain file with a symlink during use of the POSIX "-…

Fix: after 8.29
Fix from $1,950 2018-01-04
Big Ip Local Traffic Manager HIGH 7.5
CVE-2017-6167

In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Link Controller, PEM and WebSafe software version 13.0.0 and 12.1.0 - 12.1.2, race conditions i…

Fix: after 12.1.2
Fix from $1,950 2017-12-21
Linux Kernel HIGH 7.0
CVE-2017-17712

The raw_sendmsg() function in net/ipv4/raw.c in the Linux kernel through 4.14.6 has a race condition in inet->hdrincl that leads to uninitialized sta…

Fix: 4.1.52 / 4.4.109+
Fix from $1,950 2017-12-16
Android HIGH 7.0
CVE-2017-14902

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, due to a race condition in the GLink …

Patch available
Fix from $1,950 2017-12-05
Android HIGH 7.0
CVE-2017-9703

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a race condition in a Camera driver c…

Patch available
Fix from $1,950 2017-12-05
Android HIGH 7.0
CVE-2017-9708

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the camera driver, the function "m…

Patch available
Fix from $1,950 2017-12-05
Android HIGH 7.0
CVE-2017-9718

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a race condition in a multimedia driv…

Patch available
Fix from $1,950 2017-12-05
Android HIGH 7.0
CVE-2017-11044

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in a KGSL driver function, a race con…

Mitigation only
Fix from $1,950 2017-12-05
Android HIGH 7.0
CVE-2017-11045

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in a camera driver function, a race c…

Mitigation only
Fix from $1,950 2017-12-05
Android HIGH 7.0
CVE-2017-11049

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in a video driver, a race condition e…

Mitigation only
Fix from $1,950 2017-12-05
Bitbucket Auto Unapprove Plugin HIGH 8.5
CVE-2017-16857

It is possible to bypass the bitbucket auto-unapprove plugin via minimal brute-force because it is relying on asynchronous events on the back-end. Th…

Mitigation only
Fix from $1,950 2017-12-05
Arq HIGH 7.4
CVE-2017-15357

The setpermissions function in the auto-updater in Arq before 5.9.7 for Mac allows local users to gain root privileges via a symlink attack on the up…

Fix: 5.9.7+
Fix from $1,950 2017-12-01
Linux Kernel HIGH 7.0
CVE-2017-1000405

The Linux Kernel versions 2.6.38 through 4.14 have a problematic use of pmd_mkdirty() in the touch_pmd() function inside the THP implementation. touc…

Fix: 3.3 / 3.11+
Fix from $1,950 2017-11-30
Android HIGH 7.5
CVE-2017-8279

In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, missing race condition protection whi…

Patch available
Fix from $1,950 2017-11-16
Android HIGH 7.0
CVE-2017-11025

In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, due to a race condition in the functi…

Patch available
Fix from $1,950 2017-11-16
Circle With Disney Firmware HIGH 7.5
CVE-2017-2898

An exploitable vulnerability exists in the signature verification of the firmware update functionality of Circle with Disney. Specially crafted netwo…

No fix yet
Fix from $1,950 2017-11-07
Vagrant HIGH 7.8
CVE-2017-16001

In HashiCorp Vagrant VMware Fusion plugin (aka vagrant-vmware-fusion) 5.0.1, a local attacker or malware can silently subvert the plugin update proce…

No fix yet
Fix from $1,950 2017-11-06
Vagrant Vmware Fusion HIGH 7.0
CVE-2017-15884

In HashiCorp Vagrant VMware Fusion plugin (aka vagrant-vmware-fusion) 5.0.0, a local attacker or malware can silently subvert the plugin update proce…

No fix yet
Fix from $1,950 2017-10-31
Chrome MEDIUM 5.3
CVE-2017-5061

A race condition in navigation in Google Chrome prior to 58.0.3029.81 for Linux, Windows, and Mac allowed a remote attacker to spoof the contents of …

Fix: 58.0.3029.81+
Fix from $1,600 2017-10-27
Chrome HIGH 7.5
CVE-2017-5068

Incorrect handling of picture ID in WebRTC in Google Chrome prior to 58.0.3029.96 for Mac, Windows, and Linux allowed a remote attacker to trigger a …

Fix: 58.0.3029.96+
Fix from $1,950 2017-10-27
Iphone Os HIGH 8.1
CVE-2017-7115EPSS 8%

An issue was discovered in certain Apple products. iOS before 11 is affected. tvOS before 11 is affected. The issue involves the "Wi-Fi" component. I…

Fix: after 10.3.3
Fix from $1,950 2017-10-23
Linux Kernel HIGH 7.8
CVE-2017-15649

net/packet/af_packet.c in the Linux kernel before 4.13.6 allows local users to gain privileges via crafted system calls that trigger mishandling of p…

Fix: after 4.13.5
Fix from $1,950 2017-10-19