Vulnerability index

Browse CVEs

1,826 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
HIGH 8.1 CVE-2020-35882 An issue was discovered in the rocket crate before 0.4.5 for Rust. LocalRequest::clone creates more than one mutable references to the same object, p… Rocket 0.4.5+ Fix from $1,9502020-12-31 HIGH 8.1 CVE-2020-35871 An issue was discovered in the rusqlite crate before 0.23.0 for Rust. Memory safety can be violated via an Auxdata API data race. Rusqlite 0.23.0+ Fix from $1,9502020-12-31 HIGH 8.1 CVE-2020-35874 An issue was discovered in the internment crate through 2020-05-28 for Rust. ArcIntern::drop has a race condition and resultant use-after-free. Internment Patch available Fix from $1,9502020-12-31 MEDIUM 6.4 CVE-2020-27837 A flaw was found in GDM in versions prior to 3.38.2.1. A race condition in the handling of session shutdown makes it possible to bypass the lock scre… Gnome Display Manager 3.38.2.1+ Fix from $1,6002020-12-28 MEDIUM 6.4 CVE-2020-27067 In the l2tp subsystem, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execu… Android Patch available Fix from $1,6002020-12-15 HIGH 7.0 CVE-2020-0474 In HalCamera::requestNewFrame of HalCamera.cpp, there is a possible use-after-free due to a race condition. This could lead to local escalation of pr… Android Patch available Fix from $1,9502020-12-15 MEDIUM 5.7 CVE-2020-27825 A use-after-free flaw was found in kernel/trace/ring_buffer.c in Linux kernel (before 5.10-rc1). There was a race problem in trace_open and resize of… Linux Kernel Patch available Fix from $1,6002020-12-11 HIGH 7.0 CVE-2020-29368 An issue was discovered in __split_huge_pmd in mm/huge_memory.c in the Linux kernel before 5.7.5. The copy-on-write implementation can grant unintend… Linux Kernel 4.9.228 / 4.14.185+ Fix from $1,9502020-11-28 HIGH 7.0 CVE-2020-29369 An issue was discovered in mm/mmap.c in the Linux kernel before 5.7.11. There is a race condition between certain expand functions (expand_downwards … Linux Kernel 5.4.54 / 5.7.11+ Fix from $1,9502020-11-28 HIGH 7.0 CVE-2020-29370 An issue was discovered in kmem_cache_alloc_bulk in mm/slub.c in the Linux kernel before 5.5.11. The slowpath lacks the required TID increment, aka C… Linux Kernel 5.5.11+ Fix from $1,9502020-11-28 MEDIUM 6.4 CVE-2020-25651 A flaw was found in the SPICE file transfer protocol. File data from the host system can end up in full or in parts in the client connection of an il… Debian Linux after 0.20.0 Fix from $1,6002020-11-26 MEDIUM 6.3 CVE-2020-25653 A race condition vulnerability was found in the way the spice-vdagentd daemon handled new client connections. This flaw may allow an unprivileged loc… Debian Linux after 0.20.0 Fix from $1,6002020-11-26 MEDIUM 6.4 CVE-2020-8755 Race condition in subsystem for Intel(R) CSME versions before 12.0.70 and 14.0.45, Intel(R) SPS versions before E5_04.01.04.400 and E3_05.01.04.200 m… Converged Security And Management Engine 12.0.70 / 14.0.45+ Fix from $1,6002020-11-12 MEDIUM 6.3 CVE-2020-28049 An issue was discovered in SDDM before 0.19.0. It incorrectly starts the X server in a way that - for a short time period - allows local unprivileged… Debian Linux 0.19.0+ Fix from $1,6002020-11-04 HIGH 7.0 CVE-2020-11173 u'Two threads running simultaneously from user space can lead to race condition in fastRPC driver' in Snapdragon Auto, Snapdragon Compute, Snapdragon… Agatti Firmware Patch available Fix from $1,9502020-11-02 HIGH 7.0 CVE-2019-14711 Verifone MX900 series Pinpad Payment Terminals with OS 30251000 have a race condition for RBAC bypass. Mx900 Firmware Mitigation only Fix from $1,9502020-10-23 HIGH 7.0 CVE-2020-27672 An issue was discovered in Xen through 4.14.x allowing x86 guest OS users to cause a host OS denial of service, achieve data corruption, or possibly … Fedora after 4.14.0 Fix from $1,9502020-10-22 HIGH 7.8 CVE-2020-9990 A race condition was addressed with additional validation. This issue is fixed in macOS Catalina 10.15.6. A malicious application may be able to exec… Mac Os X 10.5.6+ Fix from $1,9502020-10-22 HIGH 7.0 CVE-2020-9796 A race condition was addressed with improved state handling. This issue is fixed in macOS Catalina 10.15.5. An application may be able to execute arb… Mac Os X 10.15.5+ Fix from $1,9502020-10-22 CRITICAL 9.9 CVE-2020-1660 When DNS filtering is enabled on Juniper Networks Junos MX Series with one of the following cards MS-PIC, MS-MIC or MS-MPC, an incoming stream of pac… Junos Mitigation only Fix from $2,3002020-10-16 HIGH 8.3 CVE-2020-1667 When DNS filtering is enabled on Juniper Networks Junos MX Series with one of the following cards MS-PIC, MS-MIC or MS-MPC, an incoming stream of pac… Junos Mitigation only Fix from $1,9502020-10-16 HIGH 8.1 CVE-2020-24696 An issue was discovered in PowerDNS Authoritative through 4.3.0 when --enable-experimental-gss-tsig is used. A remote, unauthenticated attacker can t… Authoritative after 4.3.0 Fix from $1,9502020-10-02 HIGH 8.8 CVE-2020-15670 Mozilla developers reported memory safety bugs present in Firefox for Android 79. Some of these bugs showed evidence of memory corruption and we pres… Firefox 78.2 / 80.0+ Fix from $1,9502020-10-01 MEDIUM 6.3 CVE-2020-25775 The Trend Micro Security 2020 (v16) consumer family of products is vulnerable to a security race condition arbitrary file deletion vulnerability that… Antivirus\+ 2020 after 16.0 Fix from $1,6002020-09-29 HIGH 7.0 CVE-2020-25599 An issue was discovered in Xen through 4.14.x. There are evtchn_reset() race conditions. Uses of EVTCHNOP_reset (potentially by a guest on itself) or… Fedora after 4.14.0 Fix from $1,9502020-09-23 HIGH 8.3 CVE-2020-6575 Race in Mojo in Google Chrome prior to 85.0.4183.102 allowed a remote attacker who had compromised the renderer process to potentially perform a sand… Chrome 85.0.4183.102+ Fix from $1,9502020-09-21 MEDIUM 6.4 CVE-2020-0268 In NFC, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges… Android Mitigation only Fix from $1,6002020-09-18 MEDIUM 6.4 CVE-2020-0428 In CamX code, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution priv… Android Mitigation only Fix from $1,6002020-09-17 HIGH 7.0 CVE-2020-8342 A race condition vulnerability was reported in Lenovo System Update prior to version 5.07.0106 that could allow escalation of privilege. System Update 5.07.0106+ Fix from $1,9502020-09-15 MEDIUM 6.4 CVE-2020-25285 A race condition between hugetlb sysctl handlers in mm/hugetlb.c in the Linux kernel before 5.8.8 could be used by local attackers to corrupt memory,… Linux Kernel 5.8.8+ Fix from $1,6002020-09-13