Vulnerability index

Browse CVEs

23 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Race ConditionCWE-362 × clear
HIGH 7.5 CVE-2024-7885 A vulnerability was found in Undertow where the ProxyProtocolReadListener reuses the same StringBuilder instance across multiple requests. This issue… Build Of Apache Camel Hawtio Mitigation only Fix from $1,9502024-08-21 HIGH 7.1 CVE-2023-3758 A race condition flaw was found in sssd where the GPO policy is not consistently applied for authenticated users. This may lead to improper authoriza… Codeready Linux Builder Patch available Fix from $1,9502024-04-18 MEDIUM 5.6 CVE-2023-3301 A flaw was found in QEMU. The async nature of hot-unplug enables a race scenario where the net device backend is cleared before the virtio-net pci fr… Enterprise Linux after 8.0.3 Fix from $1,6002023-09-13 MEDIUM 6.3 CVE-2021-3702 A race condition flaw was found in ansible-runner, where an attacker could watch for rapid creation and deletion of a temporary directory, substitute… Ansible Runner Patch available Fix from $1,6002022-08-23 MEDIUM 5.9 CVE-2021-3597 A flaw was found in undertow. The HTTP2SourceChannel fails to write the final frame under some circumstances, resulting in a denial of service. The h… Fuse 2.0.35 / 2.2.6+ Fix from $1,6002022-05-24 HIGH 8.2 CVE-2021-4207 A flaw was found in the QXL display device emulation in QEMU. A double fetch of guest controlled values `cursor->header.width` and `cursor->header.he… Enterprise Linux 7.0.0+ Fix from $1,9502022-04-29 MEDIUM 6.3 CVE-2021-20197 There is an open race window when writing output in the following utilities in GNU binutils version 2.35 and earlier:ar, objcopy, strip, ranlib. When… Enterprise Linux after 2.35 Fix from $1,6002021-03-26 MEDIUM 6.4 CVE-2020-15706 GRUB2 contains a race condition in grub_script_function_create() leading to a use-after-free vulnerability which can be triggered by redefining a fun… Enterprise Linux Atomic Host after 2.04 Fix from $1,6002020-07-29 MEDIUM 6.4 CVE-2020-15707 Integer overflows were discovered in the functions grub_cmd_initrd and grub_initrd_init in the efilinux component of GRUB2, as shipped in Debian, Red… Enterprise Linux Atomic Host after 2.04 Fix from $1,6002020-07-29 MEDIUM 6.3 CVE-2020-10737 A race condition was found in the mkhomedir tool shipped with the oddjob package in versions before 0.34.5 and 0.34.6 wherein, during the home creati… Oddjob 0.34.5+ Fix from $1,6002020-05-27 MEDIUM 5.0 CVE-2020-10744 An incomplete fix was found for the fix of the flaw CVE-2020-1733 ansible: insecure temporary directory when running become_user from become directiv… Ansible after 3.6.4 Fix from $1,6002020-05-15 HIGH 7.1 CVE-2020-10684 A flaw was found in Ansible Engine, all versions 2.7.x, 2.8.x and 2.9.x prior to 2.7.17, 2.8.9 and 2.9.6 respectively, when using ansible_facts as a … Ansible 2.7.17 / 2.8.9+ Fix from $1,9502020-03-24 MEDIUM 5.0 CVE-2020-1733 A race condition flaw was found in Ansible Engine 2.7.17 and prior, 2.8.9 and prior, 2.9.6 and prior when running a playbook with an unprivileged bec… Ansible 2.8.8+ Fix from $1,6002020-03-11 MEDIUM 5.9 CVE-2014-0245 It was found that the implementation of the GTNSubjectCreatingInterceptor class in gatein-wsrp was not thread safe. For a specific WSRP endpoint, und… Jboss Portal Mitigation only Fix from $1,6002020-01-02 HIGH 8.1 CVE-2014-3701 eDeploy has tmp file race condition flaws Edeploy No fix yet Fix from $1,9502019-12-15 MEDIUM 5.9 CVE-2017-7543 A race-condition flaw was discovered in openstack-neutron before 7.2.0-12.1, 8.x before 8.3.0-11.1, 9.x before 9.3.1-2.1, and 10.x before 10.0.2-1.1,… Openstack 7.2.0-12.1 / 8.3.0-11.1+ Fix from $1,6002018-07-26 MEDIUM 5.9 CVE-2018-1049EPSS 7% In systemd prior to 234 a race condition exists between .mount and .automount units such that automount requests from kernel may not be serviced by s… Enterprise Linux Patch available Fix from $1,6002018-02-16 MEDIUM 6.2 CVE-2016-0764 Race condition in Network Manager before 1.0.12 as packaged in Red Hat Enterprise Linux Desktop 7, Red Hat Enterprise Linux HPC Node 7, Red Hat Enter… Networkmanager after 1.0.8 Fix from $1,6002017-07-17 MEDIUM 6.9 CVE-2015-3247 Race condition in the worker_update_monitors_config function in SPICE 0.12.4 allows a remote authenticated guest user to cause a denial of service (h… Enterprise Linux Mitigation only Fix from $1,6002015-09-08 MEDIUM 6.8 CVE-2013-6458 Multiple race conditions in the (1) virDomainBlockStats, (2) virDomainGetBlockInf, (3) qemuDomainBlockJobImpl, and (4) virDomainGetBlockIoTune functi… Libvirt after 1.2.0 Fix from $1,6002014-01-24 MEDIUM 6.9 CVE-2012-5660 abrt-action-install-debuginfo in Automatic Bug Reporting Tool (ABRT) 2.0.9 and earlier allows local users to set world-writable permissions for arbit… Automatic Bug Reporting Tool after 2.0.9 Fix from $1,6002013-03-12 MEDIUM 6.9 CVE-2011-1485EPSS 5% Race condition in the pkexec utility and polkitd daemon in PolicyKit (aka polkit) 0.96 allows local users to gain privileges by executing a setuid pr… Policykit Patch available Fix from $1,6002011-05-31 MEDIUM 6.8 CVE-2010-2793 Race condition in the SPICE (aka spice-activex) plug-in for Internet Explorer in Red Hat Enterprise Virtualization (RHEV) Manager before 2.2.4 allows… Spice Activex after 2.2.3 Fix from $1,6002010-12-08