Vulnerability index

Browse CVEs

280 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
Android HIGH 7.0
CVE-2017-7372

In all Android releases from CAF using the Linux kernel, a race condition exists in a video driver potentially leading to buffer overflow or write to…

Patch available
Fix from $1,950 2017-06-13
Android MEDIUM 5.9
CVE-2017-8242

In all Android releases from CAF using the Linux kernel, a race condition exists in a QTEE driver potentially leading to an arbitrary memory write.

Patch available
Fix from $1,600 2017-06-13
Android HIGH 7.0
CVE-2014-9966

In all Android releases from CAF using the Linux kernel, a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability exists in Secure Display.

Mitigation only
Fix from $1,950 2017-06-13
Android HIGH 7.0
CVE-2015-9022

In all Android releases from CAF using the Linux kernel, time-of-check Time-of-use (TOCTOU) Race Conditions exist in several TZ APIs.

Mitigation only
Fix from $1,950 2017-06-13
Android HIGH 7.0
CVE-2014-9941

In the Embedded File System in all Android releases from CAF using the Linux kernel, a Time-of-Check Time-of-Use Race Condition vulnerability could p…

Patch available
Fix from $1,950 2017-06-06
Android HIGH 7.0
CVE-2016-10297

In TrustZone in all Android releases from CAF using the Linux kernel, a Time-of-Check Time-of-Use Race Condition vulnerability could potentially exis…

Patch available
Fix from $1,950 2017-06-06
Android HIGH 7.0
CVE-2016-10242

A time-of-check time-of-use race condition could potentially exist in the secure file system in all Android releases from CAF using the Linux kernel.

Patch available
Fix from $1,950 2017-05-16
Android HIGH 7.0
CVE-2014-9936

In TrustZone a time-of-check time-of-use race condition could potentially exist in an authentication routine in all Android releases from CAF using t…

Patch available
Fix from $1,950 2017-05-16
Android HIGH 7.0
CVE-2015-8996

In TrustZone a time-of-check time-of-use race condition could potentially exist in a QFPROM routine in all Android releases from CAF using the Linux …

Patch available
Fix from $1,950 2017-05-16
Android HIGH 7.0
CVE-2015-8997

In TrustZone a time-of-check time-of-use race condition could potentially exist in a listener routine in all Android releases from CAF using the Linu…

Patch available
Fix from $1,950 2017-05-16
Android HIGH 7.0
CVE-2017-8244

In core_info_read and inst_info_read in all Android releases from CAF using the Linux kernel, variable "dbg_buf", "dbg_buf->curr" and "dbg_buf->fille…

Mitigation only
Fix from $1,950 2017-05-12
Chrome HIGH 8.1
CVE-2017-5035

Google Chrome prior to 57.0.2987.98 for Windows and Mac had a race condition, which could cause Chrome to display incorrect certificate information f…

Fix: after 57.0.2987.75
Fix from $1,950 2017-04-24
Android HIGH 7.8
CVE-2016-3914

Race condition in providers/telephony/MmsProvider.java in Telephony in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2…

Patch available
Fix from $1,950 2016-10-10
Android HIGH 7.5
CVE-2016-3760

Bluetooth in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-07-01 allows local users to gain privileges by establishing a pairin…

Mitigation only
Fix from $1,950 2016-07-11
Android HIGH 7.5
CVE-2016-3744

Buffer overflow in the create_pbuf function in btif/src/btif_hh.c in Bluetooth in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, a…

Mitigation only
Fix from $1,950 2016-07-11
Chrome MEDIUM 5.3
CVE-2016-1670

Race condition in the ResourceDispatcherHostImpl::BeginRequest function in content/browser/loader/resource_dispatcher_host_impl.cc in Google Chrome b…

Fix: after 50.0.2661.87
Fix from $1,600 2016-05-14
Android HIGH 8.4
CVE-2016-0848

Race condition in Download Manager in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 allows attackers to…

Patch available
Fix from $1,950 2016-04-18
Chrome HIGH 9.3
CVE-2015-6789

Race condition in the MutationObserver implementation in Blink, as used in Google Chrome before 47.0.2526.80, allows remote attackers to cause a deni…

Fix: after 47.0.2526.73
Fix from $1,950 2015-12-14
Chrome MEDIUM 6.8
CVE-2015-6761

The update_dimensions function in libavcodec/vp8.c in FFmpeg through 2.8.1, as used in Google Chrome before 46.0.2490.71 and other products, relies o…

Fix: after 45.0.2454.101
Fix from $1,600 2015-10-15
Chrome MEDIUM 6.8
CVE-2015-1234

Race condition in gpu/command_buffer/service/gles2_cmd_decoder.cc in Google Chrome before 41.0.2272.118 allows remote attackers to cause a denial of …

Fix: after 41.0.2272.102
Fix from $1,600 2015-04-01
Chrome MEDIUM 6.8
CVE-2013-2906

Multiple race conditions in the Web Audio implementation in Blink, as used in Google Chrome before 30.0.1599.66, allow remote attackers to cause a de…

Fix: after 30.0.1599.65
Fix from $1,600 2013-10-02
Chrome MEDIUM 6.8
CVE-2013-2847

Race condition in the workers implementation in Google Chrome before 27.0.1453.93 allows remote attackers to cause a denial of service (use-after-fre…

Fix: after 27.0.1453.91
Fix from $1,600 2013-05-22
Chrome HIGH 7.5
CVE-2013-0907

Race condition in Google Chrome before 25.0.1364.152 allows remote attackers to cause a denial of service or possibly have unspecified other impact v…

Fix: after 25.0.1364.126
Fix from $1,950 2013-03-05
Chrome MEDIUM 6.8
CVE-2013-0900

Race condition in the International Components for Unicode (ICU) functionality in Google Chrome before 25.0.1364.97 on Windows and Linux, and before …

Fix: 25.0.1364.97 / 25.0.1364.99+
Fix from $1,600 2013-02-23
Chrome MEDIUM 6.8
CVE-2013-0893

Race condition in Google Chrome before 25.0.1364.97 on Windows and Linux, and before 25.0.1364.99 on Mac OS X, allows remote attackers to cause a den…

Fix: 25.0.1364.97 / 25.0.1364.99+
Fix from $1,600 2013-02-23
Chrome MEDIUM 6.8
CVE-2012-5119

Race condition in Pepper, as used in Google Chrome before 23.0.1271.64, allows remote attackers to cause a denial of service or possibly have unspeci…

Fix: after 23.0.1271.62
Fix from $1,600 2012-11-07
Chrome HIGH 9.3
CVE-2012-5108

Race condition in Google Chrome before 22.0.1229.92 allows remote attackers to execute arbitrary code via vectors related to audio devices.

Fix: after 22.0.1229.91
Fix from $1,950 2012-10-09
Chrome HIGH 7.5
CVE-2012-2880

Race condition in Google Chrome before 22.0.1229.79 allows remote attackers to cause a denial of service or possibly have unspecified other impact vi…

Fix: after 22.0.1229.78
Fix from $1,950 2012-09-26
Chrome MEDIUM 6.8
CVE-2012-2868

Race condition in Google Chrome before 21.0.1180.89 allows remote attackers to cause a denial of service or possibly have unspecified other impact vi…

Fix: after 21.0.1180.88
Fix from $1,600 2012-08-31
Tunnelblick MEDIUM 6.2
CVE-2012-3483

Race condition in the runScript function in Tunnelblick 3.3beta20 and earlier allows local users to gain privileges by replacing a script file.

Fix: after 3.3beta20
Fix from $1,600 2012-08-26