Vulnerabilities > Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

DATE CVE VULNERABILITY TITLE RISK
2021-12-23 CVE-2017-13905 Race Condition vulnerability in Apple products
A race condition was addressed with additional validation.
network
apple CWE-362
6.8
2021-12-22 CVE-2021-44733 Race Condition vulnerability in multiple products
A use-after-free exists in drivers/tee/tee_shm.c in the TEE subsystem in the Linux kernel through 5.15.11.
local
high complexity
linux redhat fedoraproject debian netapp CWE-362
7.0
2021-12-16 CVE-2020-35216 Race Condition vulnerability in Atomix 3.1.5
An issue in Atomix v3.1.5 allows attackers to cause a denial of service (DoS) via false member down event messages.
network
atomix CWE-362
4.3
2021-12-15 CVE-2021-0955 Race Condition vulnerability in Google Android 11.0
In pf_write_buf of FuseDaemon.cpp, there is possible memory corruption due to a race condition.
local
google CWE-362
6.9
2021-12-15 CVE-2021-39642 Race Condition vulnerability in Google Android
In synchronous_process_io_entries of lwis_ioctl.c, there is a possible out of bounds write due to a race condition.
local
google CWE-362
4.4
2021-12-15 CVE-2021-39648 Race Condition vulnerability in Google Android
In gadget_dev_desc_UDC_show of configfs.c, there is a possible disclosure of kernel heap memory due to a race condition.
local
google CWE-362
1.9
2021-12-08 CVE-2021-43538 Race Condition vulnerability in multiple products
By misusing a race in our notification code, an attacker could have forcefully hidden the notification for pages that had received full screen and pointer lock access, which could have been used for spoofing attacks.
network
low complexity
mozilla debian CWE-362
4.3
2021-12-08 CVE-2021-41025 Race Condition vulnerability in Fortinet Fortiweb
Multiple vulnerabilities in the authentication mechanism of confd in FortiWeb versions 6.4.1, 6.4.0, 6.3.0 through 6.3.15, 6.2.0 through 6.2.6, 6.1.0 through 6.1.2, 6.0.0 thorugh 6.0.7, including an instance of concurrent execution using shared resource with improper synchronization and one of authentication bypass by capture-replay, may allow a remote unauthenticated attacker to circumvent the authentication process and authenticate as a legitimate cluster peer.
network
low complexity
fortinet CWE-362
7.5
2021-12-08 CVE-2021-37069 Race Condition vulnerability in Huawei Emui, Harmonyos and Magic UI
There is a Race Condition vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to availability affected.
network
huawei CWE-362
5.8
2021-12-08 CVE-2021-37074 Race Condition vulnerability in Huawei Emui, Harmonyos and Magic UI
There is a Race Condition vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to the user root privilege escalation.
network
huawei CWE-362
critical
9.3