Vulnerability index

Browse CVEs

1,826 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
HIGH 7.5 CVE-2019-17011 Under certain conditions, when retrieving a document from a DocShell in the antitracking code, a race condition could cause a use-after-free conditio… Firefox 68.3 / 71.0+ Fix from $1,9502020-01-08 MEDIUM 5.4 CVE-2019-11761 By using a form with a data URI it was possible to gain access to the privileged JSONView object that had been cloned into content. Impact from expos… Firefox 68.2 / 70.0+ Fix from $1,6002020-01-08 MEDIUM 5.9 CVE-2014-0245 It was found that the implementation of the GTNSubjectCreatingInterceptor class in gatein-wsrp was not thread safe. For a specific WSRP endpoint, und… Jboss Portal Mitigation only Fix from $1,6002020-01-02 MEDIUM 5.9 CVE-2019-11090 Cryptographic timing conditions in the subsystem for Intel(R) PTT before versions 11.8.70, 11.11.70, 11.22.70, 12.0.45, 13.0.0 and 14.0.10; Intel(R) … Platform Trust Technology Firmware 3.1.70 / 4.0.20+ Fix from $1,6002019-12-18 HIGH 7.0 CVE-2019-8606 A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in macOS M… Mac Os X 10.14.5+ Fix from $1,9502019-12-18 HIGH 7.0 CVE-2019-8565EPSS 14% A race condition was addressed with additional validation. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4. A malicious application may be able… Iphone Os 10.14.4 / 12.2+ Fix from $1,9502019-12-18 HIGH 7.5 CVE-2019-6232 A race condition existed during the installation of iTunes for Windows. This was addressed with improved state handling. This issue is fixed in iClou… Icloud 7.11+ Fix from $1,9502019-12-18 HIGH 7.5 CVE-2019-6236 A race condition existed during the installation of iCloud for Windows. This was addressed with improved state handling. This issue is fixed in iClou… Icloud 7.11+ Fix from $1,9502019-12-18 MEDIUM 5.9 CVE-2019-16779 In RubyGem excon before 0.71.0, there was a race condition around persistent connections, where a connection which is interrupted (such as by a timeo… Excon 0.71.0+ Fix from $1,6002019-12-16 MEDIUM 5.9 CVE-2019-18827 On Barco ClickShare Button R9861500D01 devices (before firmware version 1.9.0) JTAG access is disabled after ROM code execution. This means that JTAG… Clickshare Cs 100 Firmware 1.9.0+ Fix from $1,6002019-12-16 HIGH 8.1 CVE-2014-3701 eDeploy has tmp file race condition flaws Edeploy No fix yet Fix from $1,9502019-12-15 MEDIUM 6.6 CVE-2019-19580 An issue was discovered in Xen through 4.12.x allowing x86 PV guest OS users to gain host OS privileges by leveraging race conditions in pagetable pr… Fedora after 4.12.1 Fix from $1,6002019-12-11 HIGH 8.1 CVE-2019-19017 An issue was discovered in TitanHQ WebTitan before 5.18. The appliance has a hard-coded root password set during installation. An attacker could util… Webtitan 5.18+ Fix from $1,9502019-12-02 HIGH 7.0 CVE-2014-5255 xcfa before 5.0.1 creates temporary files insecurely which could allow local users to launch a symlink attack and overwrite arbitrary files. Note: A … Debian Linux 5.0.1+ Fix from $1,9502019-11-21 HIGH 7.4 CVE-2019-2213 In binder_free_transaction of binder.c, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege … Android Mitigation only Fix from $1,9502019-11-13 HIGH 7.8 CVE-2019-5228 Certain detection module of P30, P30 Pro, Honor V20 smartphone whith Versions earlier than ELLE-AL00B 9.1.0.193(C00E190R1P21), Versions earlier than … P30 Firmware Mitigation only Fix from $1,9502019-11-12 HIGH 7.0 CVE-2019-1416 An elevation of privilege vulnerability exists due to a race condition in Windows Subsystem for Linux, aka 'Windows Subsystem for Linux Elevation of … Windows 10 Patch available Fix from $1,9502019-11-12 HIGH 8.1 CVE-2009-4011 dtc-xen 0.5.x before 0.5.4 suffers from a race condition where an attacker could potentially get a bash access as xenXX user on the dom0, and then ac… Dtc Xen 0.5.4+ Fix from $1,9502019-11-09 HIGH 8.1 CVE-2019-10529 Possible use after free issue due to race condition while attempting to mark the entry pages as dirty using function set_page_dirty() in Snapdragon A… Mdm9150 Firmware Patch available Fix from $1,9502019-11-06 HIGH 8.1 CVE-2006-4245 archivemail 0.6.2 uses temporary files insecurely leading to a possible race condition. Debian Linux Patch available Fix from $1,9502019-11-06 MEDIUM 6.6 CVE-2019-8232 In Magento prior to 1.9.4.3, Magento prior to 1.14.4.3, Magento 2.2 prior to 2.2.10, and Magento 2.3 prior to 2.3.3 or 2.3.2-p1, an authenticated use… Magento 1.9.4.3 / 1.14.4.3+ Fix from $1,6002019-11-06 HIGH 7.0 CVE-2019-18683 An issue was discovered in drivers/media/platform/vivid in the Linux kernel through 5.3.8. It is exploitable for privilege escalation on some Linux d… Linux Kernel 4.4.204 / 4.9.204+ Fix from $1,9502019-11-04 HIGH 7.0 CVE-2019-18684 Sudo through 1.8.29 allows local users to escalate to root if they have write access to file descriptor 3 of the sudo process. This occurs because of… Sudo after 1.8.29 Fix from $1,9502019-11-04 HIGH 8.1 CVE-2005-2352 I race condition in Temp files was found in gs-gpl before 8.56 addons scripts. Gs Gpl 8.56+ Fix from $1,9502019-11-01 HIGH 7.5 CVE-2019-18421 An issue was discovered in Xen through 4.12.x allowing x86 PV guest OS users to gain host OS privileges by leveraging race conditions in pagetable pr… Debian Linux after 4.12.1 Fix from $1,9502019-10-31 HIGH 8.1 CVE-2019-8162 Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, 2015.006.30503 and earlier, a… Acrobat Dc 15.006.30504 / 17.011.30150+ Fix from $1,9502019-10-17 MEDIUM 5.9 CVE-2019-14810 A vulnerability has been found in the implementation of the Label Distribution Protocol (LDP) protocol in EOS. Under race conditions, the LDP agent c… Extensible Operating System after 4.21.7 Fix from $1,6002019-10-10 MEDIUM 5.9 CVE-2019-6471 A race condition which may occur when discarding malformed packets can result in BIND exiting due to a REQUIRE assertion failure in dispatch.c. Versi… Big Ip Local Traffic Manager after 13.1.1 Fix from $1,6002019-10-09 HIGH 7.8 CVE-2019-17341 An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service or gain privileges by leveraging a page-wri… Debian Linux after 4.11.2 Fix from $1,9502019-10-08 HIGH 7.0 CVE-2019-17342 An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service or gain privileges by leveraging a race con… Debian Linux after 4.11.2 Fix from $1,9502019-10-08