Vulnerability index

Browse CVEs

1,826 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
Xen HIGH 7.8
CVE-2017-15588

An issue was discovered in Xen through 4.9.x allowing x86 PV guest OS users to execute arbitrary code on the host OS because of a race condition that…

Patch available
Fix from $1,950 2017-10-18
Linux Kernel HIGH 7.0
CVE-2017-15265

Race condition in the ALSA subsystem in the Linux kernel before 4.13.8 allows local users to cause a denial of service (use-after-free) or possibly h…

Fix: 3.2.95 / 3.10.108+
Fix from $1,950 2017-10-16
Windows 10 MEDIUM 6.7
CVE-2017-11823

The Microsoft Device Guard on Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows a security feature bypass by the way it…

Patch available
Fix from $1,600 2017-10-13
Android HIGH 7.0
CVE-2017-9697

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a race condition can allow access to …

Mitigation only
Fix from $1,950 2017-10-10
Sudo HIGH 7.0
CVE-2015-8239

The SHA-2 digest support in the sudoers plugin in sudo after 1.8.7 allows local users with write permissions to parts of the called command to replac…

Patch available
Fix from $1,950 2017-10-10
Qemu MEDIUM 5.6
CVE-2017-15038

Race condition in the v9fs_xattrwalk function in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local guest OS users to obtain sensitive informatio…

Fix: after 2.9.1
Fix from $1,600 2017-10-10
FreeBSD HIGH 8.1
CVE-2017-15037

In FreeBSD through 11.1, the smb_strdupin function in sys/netsmb/smb_subr.c has a race condition with a resultant out-of-bounds read, because it can …

Fix: after 11.1
Fix from $1,950 2017-10-05
Linux Kernel HIGH 7.0
CVE-2017-1000112EPSS 21%

Linux kernel: Exploitable memory corruption due to UFO to non-UFO path switch. When building a UFO packet with MSG_MORE __ip_append_data() calls ip_u…

Fix: 3.10.108 / 3.16.47+
Fix from $1,950 2017-10-05
Checkmk MEDIUM 5.9
CVE-2017-14955EPSS 12%

Check_MK before 1.2.8p26 mishandles certain errors within the failed-login save feature because of a race condition, which allows remote attackers to…

No fix yet
Fix from $1,600 2017-10-02
Overwatch MEDIUM 5.3
CVE-2017-14748

Race condition in Blizzard Overwatch 1.15.0.2 allows remote authenticated users to cause a denial of service (season bans and SR losses for other use…

Mitigation only
Fix from $1,600 2017-09-26
Android HIGH 7.0
CVE-2017-8280

In all Qualcomm products with Android releases from CAF using the Linux kernel, during the wlan calibration data store and retrieve operation, there …

Fix: after 8.0
Fix from $1,950 2017-09-21
Android HIGH 7.8
CVE-2017-9677

In all Qualcomm products with Android releases from CAF using the Linux kernel, in function msm_compr_ioctl_shared, variable "ddp->params_length" cou…

Fix: after 8.0
Fix from $1,950 2017-09-21
Coreutils MEDIUM 5.1
CVE-2015-1865

fts.c in coreutils 8.4 allows local users to delete arbitrary files.

Mitigation only
Fix from $1,600 2017-09-20
Dev Python Flower MEDIUM 5.5
CVE-2017-14483

flower.initd in the Gentoo dev-python/flower package before 0.9.1-r1 for Celery Flower sets PID file ownership to a non-root account, which might all…

Fix: after 0.9.1
Fix from $1,600 2017-09-15
Windows 10 HIGH 8.1
CVE-2017-0161EPSS 11%

The Windows NetBT Session Services component on Microsoft Windows Server 2008 R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Wi…

Patch available
Fix from $1,950 2017-09-13
Xen MEDIUM 5.6
CVE-2017-14317

A domain cleanup issue was discovered in the C xenstore daemon (aka cxenstored) in Xen through 4.9.x. When shutting down a VM with a stubdomain, a ra…

Fix: after 4.9.0
Fix from $1,600 2017-09-12
Android HIGH 7.8
CVE-2017-0794

A elevation of privilege vulnerability in the Upstream kernel scsi driver. Product: Android. Versions: Android kernel. Android ID: A-35644812.

Fix: after 8.0
Fix from $1,950 2017-09-08
Linux Kernel HIGH 7.0
CVE-2017-12146

The driver_override implementation in drivers/base/platform.c in the Linux kernel before 4.12.1 allows local users to gain privileges by leveraging a…

Fix: 3.18.61 / 4.1.43+
Fix from $1,950 2017-09-08
Suitecrm HIGH 8.1
CVE-2015-5947

SuiteCRM before 7.2.3 allows remote attackers to execute arbitrary code.

Fix: after 7.2.2
Fix from $1,950 2017-09-06
Suitecrm HIGH 8.1
CVE-2015-5948

Race condition in SuiteCRM before 7.2.3 allows remote attackers to execute arbitrary code. NOTE: this vulnerability exists because of an incomplete …

Fix: after 7.2.2
Fix from $1,950 2017-09-06
Xenserver HIGH 7.8
CVE-2017-12136

Race condition in the grant table code in Xen 4.6.x through 4.9.x allows local guest OS administrators to cause a denial of service (free list corrup…

Patch available
Fix from $1,950 2017-08-24
Android HIGH 7.0
CVE-2017-9684

In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition in a USB driver can lead to a Use After Free conditi…

Mitigation only
Fix from $1,950 2017-08-18
Android HIGH 8.1
CVE-2017-9685

In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition in a WLAN driver can lead to a Use After Free condit…

Mitigation only
Fix from $1,950 2017-08-18
Android HIGH 7.8
CVE-2017-8257

In all Qualcomm products with Android releases from CAF using the Linux kernel, when accessing the sde_rotator debug interface for register reading w…

Patch available
Fix from $1,950 2017-08-18
Android HIGH 7.0
CVE-2017-8262

In all Qualcomm products with Android releases from CAF using the Linux kernel, in some memory allocation and free functions, a race condition can po…

Patch available
Fix from $1,950 2017-08-18
Android HIGH 7.0
CVE-2017-8265

In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition exists in a video driver which can lead to a double …

Patch available
Fix from $1,950 2017-08-18
Android HIGH 7.0
CVE-2017-8266

In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition exists in a video driver potentially leading to a us…

Patch available
Fix from $1,950 2017-08-18
Android HIGH 7.0
CVE-2017-8267

In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition exists in an IOCTL handler potentially leading to an…

Mitigation only
Fix from $1,950 2017-08-18
Android HIGH 7.0
CVE-2017-8270

In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition exists in a driver potentially leading to a use-afte…

Patch available
Fix from $1,950 2017-08-18
Android HIGH 8.1
CVE-2016-10383

In all Qualcomm products with Android releases from CAF using the Linux kernel, there is a TOCTOU race condition in Secure UI.

Mitigation only
Fix from $1,950 2017-08-18