Vulnerabilities > Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

DATE CVE VULNERABILITY TITLE RISK
2021-12-08 CVE-2021-43538 Race Condition vulnerability in multiple products
By misusing a race in our notification code, an attacker could have forcefully hidden the notification for pages that had received full screen and pointer lock access, which could have been used for spoofing attacks.
network
low complexity
mozilla debian CWE-362
4.3
2021-12-08 CVE-2021-41025 Race Condition vulnerability in Fortinet Fortiweb
Multiple vulnerabilities in the authentication mechanism of confd in FortiWeb versions 6.4.1, 6.4.0, 6.3.0 through 6.3.15, 6.2.0 through 6.2.6, 6.1.0 through 6.1.2, 6.0.0 thorugh 6.0.7, including an instance of concurrent execution using shared resource with improper synchronization and one of authentication bypass by capture-replay, may allow a remote unauthenticated attacker to circumvent the authentication process and authenticate as a legitimate cluster peer.
network
low complexity
fortinet CWE-362
critical
9.8
2021-12-08 CVE-2021-37069 Race Condition vulnerability in Huawei Emui, Harmonyos and Magic UI
There is a Race Condition vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to availability affected.
network
high complexity
huawei CWE-362
7.4
2021-12-08 CVE-2021-37074 Race Condition vulnerability in Huawei Emui, Harmonyos and Magic UI
There is a Race Condition vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to the user root privilege escalation.
network
high complexity
huawei CWE-362
8.1
2021-12-07 CVE-2021-37073 Race Condition vulnerability in Huawei Harmonyos
There is a Race Condition vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to the detection result is tampered with.
network
high complexity
huawei CWE-362
3.7
2021-12-07 CVE-2021-37082 Race Condition vulnerability in Huawei Harmonyos
There is a Race Condition vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to motionhub crash.
network
high complexity
huawei CWE-362
5.9
2021-12-07 CVE-2021-37085 Race Condition vulnerability in Huawei Harmonyos
There is a Encoding timing vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to denial of service.
network
high complexity
huawei CWE-362
5.9
2021-12-07 CVE-2021-44513 Race Condition vulnerability in Tmate Tmate-Ssh-Server 2.3.0
Insecure creation of temporary directories in tmate-ssh-server 2.3.0 allows a local attacker to compromise the integrity of session handling.
local
high complexity
tmate CWE-362
7.0
2021-11-16 CVE-2020-12951 Race Condition vulnerability in AMD products
Race condition in ASP firmware could allow less privileged x86 code to perform ASP SMM (System Management Mode) operations.
local
high complexity
amd CWE-362
7.0
2021-11-07 CVE-2021-43411 Race Condition vulnerability in GNU Hurd
An issue was discovered in GNU Hurd before 0.9 20210404-9.
network
high complexity
gnu CWE-362
7.5