Vulnerability index

Browse CVEs

1,826 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
Android HIGH 7.8
CVE-2017-0727

A elevation of privilege vulnerability in the Android media framework (libgui). Product: Android. Versions: 7.0, 7.1.1, 7.1.2. Android ID: A-33004354.

Patch available
Fix from $1,950 2017-08-09
Linux Kernel HIGH 7.0
CVE-2017-7533

Race condition in the fsnotify implementation in the Linux kernel through 4.12.4 allows local users to gain privileges or cause a denial of service (…

Fix: 3.16.47 / 3.18.64+
Fix from $1,950 2017-08-05
Samsung Mobile HIGH 7.0
CVE-2015-7891

Race condition in the ioctl implementation in the Samsung Graphics 2D driver (aka /dev/fimg2d) in Samsung devices with Android L(5.0/5.1) allows loca…

No fix yet
Fix from $1,950 2017-08-02
Tools MEDIUM 6.7
CVE-2015-5191

VMware Tools prior to 10.0.9 contains multiple file system races in libDeployPkg, related to the use of hard-coded paths under /tmp. Successful explo…

Fix: after 10.0.8
Fix from $1,600 2017-07-28
Arts HIGH 7.0
CVE-2015-7543

aRts 1.5.10 and kdelibs3 3.5.10 and earlier do not properly create temporary directories, which allows local users to hijack the IPC by pre-creating …

Fix: after 3.5.10
Fix from $1,950 2017-07-25
Yadm MEDIUM 5.9
CVE-2017-11353

yadm (yet another dotfile manager) 1.10.0 has a race condition (related to the behavior of git commands in setting permissions for new files and dire…

Patch available
Fix from $1,600 2017-07-17
Networkmanager MEDIUM 6.2
CVE-2016-0764

Race condition in Network Manager before 1.0.12 as packaged in Red Hat Enterprise Linux Desktop 7, Red Hat Enterprise Linux HPC Node 7, Red Hat Enter…

Fix: after 1.0.8
Fix from $1,600 2017-07-17
Android HIGH 7.0
CVE-2014-7953

Race condition in the bindBackupAgent method in the ActivityManagerService in Android 4.4.4 allows local users with adb shell access to execute arbit…

Mitigation only
Fix from $1,950 2017-07-07
Xen HIGH 8.1
CVE-2017-10914

The grant-table feature in Xen through 4.8.x has a race condition leading to a double free, which allows guest OS users to cause a denial of service …

Fix: after 4.8.1
Fix from $1,950 2017-07-05
Xen CRITICAL 9.0
CVE-2017-10915

The shadow-paging feature in Xen through 4.8.x mismanages page references and consequently introduces a race condition, which allows guest OS users t…

Fix: after 4.8.1
Fix from $2,300 2017-07-05
Android HIGH 7.0
CVE-2017-7368

In all Android releases from CAF using the Linux kernel, a race condition potentially exists in the ioctl handler of a sound driver.

Patch available
Fix from $1,950 2017-06-13
Android HIGH 7.0
CVE-2017-7372

In all Android releases from CAF using the Linux kernel, a race condition exists in a video driver potentially leading to buffer overflow or write to…

Patch available
Fix from $1,950 2017-06-13
Android MEDIUM 5.9
CVE-2017-8242

In all Android releases from CAF using the Linux kernel, a race condition exists in a QTEE driver potentially leading to an arbitrary memory write.

Patch available
Fix from $1,600 2017-06-13
Android HIGH 7.0
CVE-2014-9966

In all Android releases from CAF using the Linux kernel, a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability exists in Secure Display.

Mitigation only
Fix from $1,950 2017-06-13
Android HIGH 7.0
CVE-2015-9022

In all Android releases from CAF using the Linux kernel, time-of-check Time-of-use (TOCTOU) Race Conditions exist in several TZ APIs.

Mitigation only
Fix from $1,950 2017-06-13
Opa Ff HIGH 8.1
CVE-2015-5232

Race conditions in opa-fm before 10.4.0.0.196 and opa-ff before 10.4.0.0.197.

Fix: after 10.4.0.0.174
Fix from $1,950 2017-06-07
Android HIGH 7.0
CVE-2014-9941

In the Embedded File System in all Android releases from CAF using the Linux kernel, a Time-of-Check Time-of-Use Race Condition vulnerability could p…

Patch available
Fix from $1,950 2017-06-06
Android HIGH 7.0
CVE-2016-10297

In TrustZone in all Android releases from CAF using the Linux kernel, a Time-of-Check Time-of-Use Race Condition vulnerability could potentially exis…

Patch available
Fix from $1,950 2017-06-06
Sudo MEDIUM 6.4
CVE-2017-1000367EPSS 8%

Todd Miller's sudo version 1.8.20 and earlier is vulnerable to an input validation (embedded spaces) in the get_process_ttyname() function resulting …

Fix: after 1.8.20
Fix from $1,600 2017-06-05
Ubuntu Linux MEDIUM 5.9
CVE-2017-6512

Race condition in the rmtree and remove_tree functions in the File-Path module before 2.13 for Perl allows attackers to set the mode on arbitrary fil…

Fix: 2.13+
Fix from $1,600 2017-06-01
Iphone Os HIGH 7.0
CVE-2017-6979

An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. tvOS before 10.2.1 is affected. w…

Fix: after 10.12.4
Fix from $1,950 2017-05-22
Mac Os X HIGH 7.0
CVE-2017-2533

An issue was discovered in certain Apple products. macOS before 10.12.5 is affected. The issue involves the "DiskArbitration" component. A race condi…

Fix: after 10.12.4
Fix from $1,950 2017-05-22
Iphone Os HIGH 7.0
CVE-2017-2501

An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. tvOS before 10.2.1 is affected. w…

Fix: 3.2.2 / 10.2.1+
Fix from $1,950 2017-05-22
Android HIGH 7.0
CVE-2016-10242

A time-of-check time-of-use race condition could potentially exist in the secure file system in all Android releases from CAF using the Linux kernel.

Patch available
Fix from $1,950 2017-05-16
Android HIGH 7.0
CVE-2014-9936

In TrustZone a time-of-check time-of-use race condition could potentially exist in an authentication routine in all Android releases from CAF using t…

Patch available
Fix from $1,950 2017-05-16
Android HIGH 7.0
CVE-2015-8996

In TrustZone a time-of-check time-of-use race condition could potentially exist in a QFPROM routine in all Android releases from CAF using the Linux …

Patch available
Fix from $1,950 2017-05-16
Android HIGH 7.0
CVE-2015-8997

In TrustZone a time-of-check time-of-use race condition could potentially exist in a listener routine in all Android releases from CAF using the Linu…

Patch available
Fix from $1,950 2017-05-16
Android HIGH 7.0
CVE-2017-8244

In core_info_read and inst_info_read in all Android releases from CAF using the Linux kernel, variable "dbg_buf", "dbg_buf->curr" and "dbg_buf->fille…

Mitigation only
Fix from $1,950 2017-05-12
Gpu Driver HIGH 7.0
CVE-2017-0343

All versions of the NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) where user can trigger a race c…

Mitigation only
Fix from $1,950 2017-05-09
Big Ip Local Traffic Manager HIGH 7.5
CVE-2016-9256

In F5 BIG-IP 12.1.0 through 12.1.2, permissions enforced by iControl can lag behind the actual permissions assigned to a user if the role_map is not …

Mitigation only
Fix from $1,950 2017-05-09