Vulnerability index

Browse CVEs

1,826 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
HIGH 8.1 CVE-2017-1000503 A race condition during Jenkins 2.81 through 2.94 (inclusive); 2.89.1 startup could result in the wrong order of execution of commands during initial… Jenkins after 2.94 Fix from $1,9502018-01-24 HIGH 7.5 CVE-2017-7326 Race condition issue in Yandex Browser for Android before 17.4.0.16 allowed a remote attacker to potentially exploit memory corruption via a crafted … Yandex Browser after 17.4 Fix from $1,9502018-01-19 HIGH 8.1 CVE-2017-3158 A race condition in Guacamole's terminal emulator in versions 0.9.5 through 0.9.10-incubating could allow writes of blocks of printed data to overlap… Guacamole after 0.9.9 Fix from $1,9502018-01-18 MEDIUM 5.9 CVE-2018-1000004 In the Linux kernel 4.12, 3.10, 2.6 and possibly earlier versions a race condition vulnerability exists in the sound system, this can lead to a deadl… Linux Kernel after 2.6.0 Fix from $1,6002018-01-16 HIGH 7.0 CVE-2017-13183 In the OMXNodeInstance::useBuffer and IOMX::freeBuffer functions, there is a possible use after free due to a race condition if the user frees the bu… Android Patch available Fix from $1,9502018-01-12 HIGH 7.8 CVE-2018-5344 In the Linux kernel through 4.14.13, drivers/block/loop.c mishandles lo_release serialization, which allows attackers to cause a denial of service (_… Linux Kernel after 4.14.13 Fix from $1,9502018-01-12 HIGH 7.0 CVE-2017-15847 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the SPCom kernel driver, a race co… Android Patch available Fix from $1,9502018-01-10 HIGH 7.0 CVE-2014-4995 Race condition in lib/vlad/dba/mysql.rb in the VladTheEnterprising gem 0.2 for Ruby allows local users to obtain sensitive information by reading the… Vladtheenterprising Mitigation only Fix from $1,9502018-01-10 HIGH 7.1 CVE-2017-18018 In GNU Coreutils through 8.29, chown-core.c in chown and chgrp does not prevent replacement of a plain file with a symlink during use of the POSIX "-… Coreutils after 8.29 Fix from $1,9502018-01-04 HIGH 7.5 CVE-2017-6167 In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Link Controller, PEM and WebSafe software version 13.0.0 and 12.1.0 - 12.1.2, race conditions i… Big Ip Local Traffic Manager after 12.1.2 Fix from $1,9502017-12-21 HIGH 7.0 CVE-2017-17712 The raw_sendmsg() function in net/ipv4/raw.c in the Linux kernel through 4.14.6 has a race condition in inet->hdrincl that leads to uninitialized sta… Linux Kernel 4.1.52 / 4.4.109+ Fix from $1,9502017-12-16 HIGH 7.0 CVE-2017-14902 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, due to a race condition in the GLink … Android Patch available Fix from $1,9502017-12-05 HIGH 7.0 CVE-2017-9703 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a race condition in a Camera driver c… Android Patch available Fix from $1,9502017-12-05 HIGH 7.0 CVE-2017-9708 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the camera driver, the function "m… Android Patch available Fix from $1,9502017-12-05 HIGH 7.0 CVE-2017-9718 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a race condition in a multimedia driv… Android Patch available Fix from $1,9502017-12-05 HIGH 7.0 CVE-2017-11044 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in a KGSL driver function, a race con… Android Mitigation only Fix from $1,9502017-12-05 HIGH 7.0 CVE-2017-11045 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in a camera driver function, a race c… Android Mitigation only Fix from $1,9502017-12-05 HIGH 7.0 CVE-2017-11049 In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in a video driver, a race condition e… Android Mitigation only Fix from $1,9502017-12-05 HIGH 8.5 CVE-2017-16857 It is possible to bypass the bitbucket auto-unapprove plugin via minimal brute-force because it is relying on asynchronous events on the back-end. Th… Bitbucket Auto Unapprove Plugin Mitigation only Fix from $1,9502017-12-05 HIGH 7.4 CVE-2017-15357 The setpermissions function in the auto-updater in Arq before 5.9.7 for Mac allows local users to gain root privileges via a symlink attack on the up… Arq 5.9.7+ Fix from $1,9502017-12-01 HIGH 7.0 CVE-2017-1000405 The Linux Kernel versions 2.6.38 through 4.14 have a problematic use of pmd_mkdirty() in the touch_pmd() function inside the THP implementation. touc… Linux Kernel 3.3 / 3.11+ Fix from $1,9502017-11-30 HIGH 7.5 CVE-2017-8279 In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, missing race condition protection whi… Android Patch available Fix from $1,9502017-11-16 HIGH 7.0 CVE-2017-11025 In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, due to a race condition in the functi… Android Patch available Fix from $1,9502017-11-16 HIGH 7.5 CVE-2017-2898 An exploitable vulnerability exists in the signature verification of the firmware update functionality of Circle with Disney. Specially crafted netwo… Circle With Disney Firmware No fix yet Fix from $1,9502017-11-07 HIGH 7.8 CVE-2017-16001 In HashiCorp Vagrant VMware Fusion plugin (aka vagrant-vmware-fusion) 5.0.1, a local attacker or malware can silently subvert the plugin update proce… Vagrant No fix yet Fix from $1,9502017-11-06 HIGH 7.0 CVE-2017-15884 In HashiCorp Vagrant VMware Fusion plugin (aka vagrant-vmware-fusion) 5.0.0, a local attacker or malware can silently subvert the plugin update proce… Vagrant Vmware Fusion No fix yet Fix from $1,9502017-10-31 MEDIUM 5.3 CVE-2017-5061 A race condition in navigation in Google Chrome prior to 58.0.3029.81 for Linux, Windows, and Mac allowed a remote attacker to spoof the contents of … Chrome 58.0.3029.81+ Fix from $1,6002017-10-27 HIGH 7.5 CVE-2017-5068 Incorrect handling of picture ID in WebRTC in Google Chrome prior to 58.0.3029.96 for Mac, Windows, and Linux allowed a remote attacker to trigger a … Chrome 58.0.3029.96+ Fix from $1,9502017-10-27 HIGH 8.1 CVE-2017-7115EPSS 8% An issue was discovered in certain Apple products. iOS before 11 is affected. tvOS before 11 is affected. The issue involves the "Wi-Fi" component. I… Iphone Os after 10.3.3 Fix from $1,9502017-10-23 HIGH 7.8 CVE-2017-15649 net/packet/af_packet.c in the Linux kernel before 4.13.6 allows local users to gain privileges via crafted system calls that trigger mishandling of p… Linux Kernel after 4.13.5 Fix from $1,9502017-10-19