Vulnerability index

Browse CVEs

1,826 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
Itunes MEDIUM 6.9
CVE-2010-0532

Race condition in the installation package in Apple iTunes before 9.1 on Windows allows local users to gain privileges by replacing an unspecified fi…

Fix: after 9.0.3
Fix from $1,600 2010-03-31
Gtk MEDIUM 6.2
CVE-2010-0732

gdk/gdkwindow.c in GTK+ before 2.18.5, as used in gnome-screensaver before 2.28.1, performs implicit paints on windows of type GDK_WINDOW_FOREIGN, wh…

Fix: 2.18.5 / 2.28.1+
Fix from $1,600 2010-03-19
Kde Sc MEDIUM 6.9
CVE-2010-0923

Race condition in workspace/krunner/lock/lockdlg.cc in the KRunner lock module in kdebase in KDE SC 4.4.0 allows physically proximate attackers to by…

Patch available
Fix from $1,600 2010-03-03
Windows 2000 MEDIUM 5.9
CVE-2010-0021EPSS 13%

Multiple race conditions in the SMB implementation in the Server service in Microsoft Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2…

Mitigation only
Fix from $1,600 2010-02-10
Java System Directory Server MEDIUM 6.8
CVE-2009-4440

Directory Proxy Server (DPS) in Sun Java System Directory Server Enterprise Edition 6.0 through 6.3.1 does not properly handle multiple client connec…

Patch available
Fix from $1,600 2009-12-28
Firefox MEDIUM 5.8
CVE-2009-4129

Race condition in Mozilla Firefox allows remote attackers to produce a JavaScript message with a spoofed domain association by writing the message in…

Mitigation only
Fix from $1,600 2009-12-14
Opensolaris HIGH 7.1
CVE-2009-4226

Race condition in the IP module in the kernel in Sun OpenSolaris snv_106 through snv_124 allows remote attackers to cause a denial of service (NULL p…

Patch available
Fix from $1,950 2009-12-08
Linux Kernel HIGH 7.1
CVE-2009-4027

Race condition in the mac80211 subsystem in the Linux kernel before 2.6.32-rc8-next-20091201 allows remote attackers to cause a denial of service (sy…

Fix: after 2.6.32
Fix from $1,950 2009-12-02
Mac Os X MEDIUM 6.2
CVE-2009-2836

Race condition in Login Window in Apple Mac OS X 10.6.x before 10.6.2, when at least one account has a blank password, allows attackers to bypass pas…

Patch available
Fix from $1,600 2009-11-10
Linux Kernel HIGH 7.0
CVE-2009-3547

Multiple race conditions in fs/pipe.c in the Linux kernel before 2.6.32-rc6 allow local users to cause a denial of service (NULL pointer dereference …

Fix: after 2.6.31.14
Fix from $1,950 2009-11-04
FreeBSD MEDIUM 6.9
CVE-2009-3527

Race condition in the Pipe (IPC) close function in FreeBSD 6.3 and 6.4 allows local users to cause a denial of service (crash) or gain privileges via…

Patch available
Fix from $1,600 2009-10-06
I Load MEDIUM 6.8
CVE-2009-3447

Unrestricted file upload vulnerability in RADactive I-Load before 2008.2.5.0 allows remote attackers to execute arbitrary code by uploading a file wi…

Fix: after 2008.2.4.0
Fix from $1,600 2009-09-29
Altiris Deployment Solution MEDIUM 5.8
CVE-2009-3110

Race condition in the file transfer functionality in Symantec Altiris Deployment Solution 6.9.x before 6.9 SP3 Build 430 allows remote attackers to r…

Mitigation only
Fix from $1,600 2009-09-08
Java Se HIGH 9.3
CVE-2009-2724

Race condition in the java.lang package in Sun Java SE 5.0 before Update 20 has unknown impact and attack vectors, related to a "3Y Race condition in…

Fix: after 5.0
Fix from $1,950 2009-08-10
Pulseaudio HIGH 7.2
CVE-2009-1894

Race condition in PulseAudio 0.9.9, 0.9.10, and 0.9.14 allows local users to gain privileges via vectors involving creation of a hard link, related t…

Patch available
Fix from $1,950 2009-07-17
Firefox HIGH 7.5
CVE-2009-1837

Race condition in the NPObjWrapper_NewResolve function in modules/plugin/base/src/nsJSNPRuntime.cpp in xul.dll in Mozilla Firefox 3 before 3.0.11 mig…

Fix: 3.0.11+
Fix from $1,950 2009-06-12
Aix MEDIUM 6.9
CVE-2009-1786

The malloc subsystem in libc in IBM AIX 5.3 and 6.1 allows local users to create or overwrite arbitrary files via a symlink attack on the log file as…

Patch available
Fix from $1,600 2009-05-26
Linux Kernel MEDIUM 6.9
CVE-2009-1527

Race condition in the ptrace_attach function in kernel/ptrace.c in the Linux kernel before 2.6.30-rc4 allows local users to gain privileges via a PTR…

Fix: after 2.6.29
Fix from $1,600 2009-05-05
Wanpipe HIGH 10.0
CVE-2008-6598

Multiple race conditions in WANPIPE before 3.3.6 have unknown impact and attack vectors related to "bri restart logic."

No fix yet
Fix from $1,950 2009-04-03
Mac Os X HIGH 7.2
CVE-2009-1238

Race condition in the HFS vfs sysctl interface in XNU 1228.8.20 and earlier on Apple Mac OS X 10.5.6 and earlier allows local users to cause a denial…

Fix: after 10.5.6
Fix from $1,950 2009-04-02
Debian Linux MEDIUM 6.3
CVE-2009-0784

Race condition in the SystemTap stap tool 0.0.20080705 and 0.0.20090314 allows local users in the stapusr group to insert arbitrary SystemTap kernel …

Patch available
Fix from $1,600 2009-03-25
Opensolaris MEDIUM 6.9
CVE-2009-0875

Race condition in the Doors subsystem in the kernel in Sun Solaris 8 through 10, and OpenSolaris before snv_94, allows local users to cause a denial …

Patch available
Fix from $1,600 2009-03-12
Djbdns MEDIUM 6.4
CVE-2008-4392

dnscache in Daniel J. Bernstein djbdns 1.05 does not prevent simultaneous identical outbound DNS queries, which makes it easier for remote attackers …

Patch available
Fix from $1,600 2009-02-19
File\ MEDIUM 6.9
CVE-2008-5302

Race condition in the rmtree function in File::Path 1.08 and 2.07 (lib/File/Path.pm) in Perl 5.8.8 and 5.10.0 allows local users to create arbitrary …

No fix yet
Fix from $1,600 2008-12-01
File\ MEDIUM 6.9
CVE-2008-5303

Race condition in the rmtree function in File::Path 1.08 (lib/File/Path.pm) in Perl 5.8.8 allows local users to to delete arbitrary files via a symli…

No fix yet
Fix from $1,600 2008-12-01
Linux Kernel MEDIUM 6.9
CVE-2008-5182

The inotify functionality in Linux kernel 2.6 before 2.6.28-rc5 might allow local users to gain privileges via unknown vectors related to race condit…

Fix: after 2.6.28
Fix from $1,600 2008-11-21
Firefox HIGH 9.3
CVE-2008-5021

nsFrameManager in Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 allows remo…

Fix: 1.1.13 / 2.0.0.18+
Fix from $1,950 2008-11-13
Mac Os X MEDIUM 6.8
CVE-2008-3646

The Postfix configuration file in Mac OS X 10.5.5 causes Postfix to be network-accessible when mail is sent from a local command-line tool, which all…

Patch available
Fix from $1,600 2008-10-10
Mac Os X HIGH 7.6
CVE-2008-2311

Launch Services in Apple Mac OS X before 10.5, when Open Safe Files is enabled, allows remote attackers to execute arbitrary code via a symlink attac…

Patch available
Fix from $1,950 2008-07-01
Solaris MEDIUM 6.9
CVE-2008-2538

Unspecified vulnerability in crontab on Sun Solaris 8 through 10, and OpenSolaris before snv_93, allows local users to insert cron jobs into the cron…

Mitigation only
Fix from $1,600 2008-06-03