Vulnerability index

Browse CVEs

23 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
Build Of Apache Camel Hawtio HIGH 7.5
CVE-2024-7885

A vulnerability was found in Undertow where the ProxyProtocolReadListener reuses the same StringBuilder instance across multiple requests. This issue…

Mitigation only
Fix from $1,950 2024-08-21
Codeready Linux Builder HIGH 7.1
CVE-2023-3758

A race condition flaw was found in sssd where the GPO policy is not consistently applied for authenticated users. This may lead to improper authoriza…

Patch available
Fix from $1,950 2024-04-18
Enterprise Linux MEDIUM 5.6
CVE-2023-3301

A flaw was found in QEMU. The async nature of hot-unplug enables a race scenario where the net device backend is cleared before the virtio-net pci fr…

Fix: after 8.0.3
Fix from $1,600 2023-09-13
Ansible Runner MEDIUM 6.3
CVE-2021-3702

A race condition flaw was found in ansible-runner, where an attacker could watch for rapid creation and deletion of a temporary directory, substitute…

Patch available
Fix from $1,600 2022-08-23
Fuse MEDIUM 5.9
CVE-2021-3597

A flaw was found in undertow. The HTTP2SourceChannel fails to write the final frame under some circumstances, resulting in a denial of service. The h…

Fix: 2.0.35 / 2.2.6+
Fix from $1,600 2022-05-24
Enterprise Linux HIGH 8.2
CVE-2021-4207

A flaw was found in the QXL display device emulation in QEMU. A double fetch of guest controlled values `cursor->header.width` and `cursor->header.he…

Fix: 7.0.0+
Fix from $1,950 2022-04-29
Enterprise Linux MEDIUM 6.3
CVE-2021-20197

There is an open race window when writing output in the following utilities in GNU binutils version 2.35 and earlier:ar, objcopy, strip, ranlib. When…

Fix: after 2.35
Fix from $1,600 2021-03-26
Enterprise Linux Atomic Host MEDIUM 6.4
CVE-2020-15706

GRUB2 contains a race condition in grub_script_function_create() leading to a use-after-free vulnerability which can be triggered by redefining a fun…

Fix: after 2.04
Fix from $1,600 2020-07-29
Enterprise Linux Atomic Host MEDIUM 6.4
CVE-2020-15707

Integer overflows were discovered in the functions grub_cmd_initrd and grub_initrd_init in the efilinux component of GRUB2, as shipped in Debian, Red…

Fix: after 2.04
Fix from $1,600 2020-07-29
Oddjob MEDIUM 6.3
CVE-2020-10737

A race condition was found in the mkhomedir tool shipped with the oddjob package in versions before 0.34.5 and 0.34.6 wherein, during the home creati…

Fix: 0.34.5+
Fix from $1,600 2020-05-27
Ansible MEDIUM 5.0
CVE-2020-10744

An incomplete fix was found for the fix of the flaw CVE-2020-1733 ansible: insecure temporary directory when running become_user from become directiv…

Fix: after 3.6.4
Fix from $1,600 2020-05-15
Ansible HIGH 7.1
CVE-2020-10684

A flaw was found in Ansible Engine, all versions 2.7.x, 2.8.x and 2.9.x prior to 2.7.17, 2.8.9 and 2.9.6 respectively, when using ansible_facts as a …

Fix: 2.7.17 / 2.8.9+
Fix from $1,950 2020-03-24
Ansible MEDIUM 5.0
CVE-2020-1733

A race condition flaw was found in Ansible Engine 2.7.17 and prior, 2.8.9 and prior, 2.9.6 and prior when running a playbook with an unprivileged bec…

Fix: 2.8.8+
Fix from $1,600 2020-03-11
Jboss Portal MEDIUM 5.9
CVE-2014-0245

It was found that the implementation of the GTNSubjectCreatingInterceptor class in gatein-wsrp was not thread safe. For a specific WSRP endpoint, und…

Mitigation only
Fix from $1,600 2020-01-02
Edeploy HIGH 8.1
CVE-2014-3701

eDeploy has tmp file race condition flaws

No fix yet
Fix from $1,950 2019-12-15
Openstack MEDIUM 5.9
CVE-2017-7543

A race-condition flaw was discovered in openstack-neutron before 7.2.0-12.1, 8.x before 8.3.0-11.1, 9.x before 9.3.1-2.1, and 10.x before 10.0.2-1.1,…

Fix: 7.2.0-12.1 / 8.3.0-11.1+
Fix from $1,600 2018-07-26
Enterprise Linux MEDIUM 5.9
CVE-2018-1049EPSS 7%

In systemd prior to 234 a race condition exists between .mount and .automount units such that automount requests from kernel may not be serviced by s…

Patch available
Fix from $1,600 2018-02-16
Networkmanager MEDIUM 6.2
CVE-2016-0764

Race condition in Network Manager before 1.0.12 as packaged in Red Hat Enterprise Linux Desktop 7, Red Hat Enterprise Linux HPC Node 7, Red Hat Enter…

Fix: after 1.0.8
Fix from $1,600 2017-07-17
Enterprise Linux MEDIUM 6.9
CVE-2015-3247

Race condition in the worker_update_monitors_config function in SPICE 0.12.4 allows a remote authenticated guest user to cause a denial of service (h…

Mitigation only
Fix from $1,600 2015-09-08
Libvirt MEDIUM 6.8
CVE-2013-6458

Multiple race conditions in the (1) virDomainBlockStats, (2) virDomainGetBlockInf, (3) qemuDomainBlockJobImpl, and (4) virDomainGetBlockIoTune functi…

Fix: after 1.2.0
Fix from $1,600 2014-01-24
Automatic Bug Reporting Tool MEDIUM 6.9
CVE-2012-5660

abrt-action-install-debuginfo in Automatic Bug Reporting Tool (ABRT) 2.0.9 and earlier allows local users to set world-writable permissions for arbit…

Fix: after 2.0.9
Fix from $1,600 2013-03-12
Policykit MEDIUM 6.9
CVE-2011-1485EPSS 5%

Race condition in the pkexec utility and polkitd daemon in PolicyKit (aka polkit) 0.96 allows local users to gain privileges by executing a setuid pr…

Patch available
Fix from $1,600 2011-05-31
Spice Activex MEDIUM 6.8
CVE-2010-2793

Race condition in the SPICE (aka spice-activex) plug-in for Internet Explorer in Red Hat Enterprise Virtualization (RHEV) Manager before 2.2.4 allows…

Fix: after 2.2.3
Fix from $1,600 2010-12-08