Vulnerabilities > Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

DATE CVE VULNERABILITY TITLE RISK
2022-03-28 CVE-2018-25030 Race Condition vulnerability in Mirmay File Manager and Secure Private Browser
A vulnerability classified as problematic has been found in Mirmay Secure Private Browser and File Manager up to 2.5.
local
high complexity
mirmay CWE-362
2.5
2022-03-17 CVE-2022-24302 Race Condition vulnerability in multiple products
In Paramiko before 2.10.1, a race condition (between creation and chmod) in the write_private_key_file function could allow unauthorized information disclosure.
network
high complexity
paramiko debian fedoraproject CWE-362
5.9
2022-03-16 CVE-2021-39686 Race Condition vulnerability in Google Android
In several functions of binder.c, there is a possible way to represent the wrong domain to SELinux due to a race condition.
local
high complexity
google CWE-362
7.0
2022-03-16 CVE-2021-39712 Race Condition vulnerability in Google Android
In TBD of TBD, there is a possible user after free vulnerability due to a race condition.
local
high complexity
google CWE-362
6.4
2022-03-16 CVE-2021-39713 Race Condition vulnerability in multiple products
Product: AndroidVersions: Android kernelAndroid ID: A-173788806References: Upstream kernel
local
high complexity
google debian CWE-362
7.0
2022-03-16 CVE-2021-39727 Race Condition vulnerability in Google Android
In eicPresentationRetrieveEntryValue of acropora/app/identity/libeic/EicPresentation.c, there is a possible information disclosure due to a race condition.
local
high complexity
google CWE-362
4.1
2022-03-16 CVE-2021-39735 Race Condition vulnerability in Google Android
In gasket_alloc_coherent_memory of gasket_page_table.c, there is a possible memory corruption due to a race condition.
local
high complexity
google CWE-362
6.4
2022-03-16 CVE-2021-39792 Race Condition vulnerability in Google Android
In usb_gadget_giveback_request of core.c, there is a possible use after free out of bounds read due to a race condition.
local
high complexity
google CWE-362
4.1
2022-03-10 CVE-2022-23036 Race Condition vulnerability in multiple products
Linux PV device frontends vulnerable to attacks by backends T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Several Linux PV device frontends are using the grant table interfaces for removing access rights of the backends in ways being subject to race conditions, resulting in potential data leaks, data corruption by malicious backends, and denial of service triggered by malicious backends: blkfront, netfront, scsifront and the gntalloc driver are testing whether a grant reference is still in use.
local
high complexity
xen debian CWE-362
7.0
2022-03-10 CVE-2022-23037 Race Condition vulnerability in multiple products
Linux PV device frontends vulnerable to attacks by backends T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Several Linux PV device frontends are using the grant table interfaces for removing access rights of the backends in ways being subject to race conditions, resulting in potential data leaks, data corruption by malicious backends, and denial of service triggered by malicious backends: blkfront, netfront, scsifront and the gntalloc driver are testing whether a grant reference is still in use.
local
high complexity
xen debian CWE-362
7.0