Vulnerabilities > Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

DATE CVE VULNERABILITY TITLE RISK
2021-07-09 CVE-2020-29014 Race Condition vulnerability in Fortinet Fortisandbox
A concurrent execution using shared resource with improper synchronization ('race condition') in the command shell of FortiSandbox before 3.2.2 may allow an authenticated attacker to bring the system into an unresponsive state via specifically orchestrated sequences of commands.
network
fortinet CWE-362
6.3
2021-06-29 CVE-2021-22340 Race Condition vulnerability in Huawei Manageone and Smc2.0
There is a multiple threads race condition vulnerability in Huawei product.
local
huawei CWE-362
4.7
2021-06-25 CVE-2021-21005 Race Condition vulnerability in Phoenixcontact products
In Phoenix Contact FL SWITCH SMCS series products in multiple versions if an attacker sends a hand-crafted TCP-Packet with the Urgent-Flag set and the Urgent-Pointer set to 0, the network stack will crash.
network
low complexity
phoenixcontact CWE-362
7.8
2021-06-25 CVE-2021-31615 Race Condition vulnerability in Bluetooth Core Specification
Unencrypted Bluetooth Low Energy baseband links in Bluetooth Core Specifications 4.0 through 5.2 may permit an adjacent device to inject a crafted packet during the receive window of the listening device before the transmitting device initiates its packet transmission to achieve full MITM status without terminating the link.
2.9
2021-06-24 CVE-2021-24000 Race Condition vulnerability in Mozilla Firefox
A race condition with requestPointerLock() and setTimeout() could have resulted in a user interacting with one tab when they believed they were on a separate tab.
network
high complexity
mozilla CWE-362
3.1
2021-06-24 CVE-2021-29948 Race Condition vulnerability in Mozilla Thunderbird
Signatures are written to disk before and read during verification, which might be subject to a race condition when a malicious local process or user is replacing the file.
1.9
2021-06-24 CVE-2021-29952 Race Condition vulnerability in Mozilla Firefox
When Web Render components were destructed, a race condition could have caused undefined behavior, and we presume that with enough effort may have been exploitable to run arbitrary code.
network
high complexity
mozilla CWE-362
5.1
2021-06-22 CVE-2021-22378 Race Condition vulnerability in Huawei Ecns280 TD Firmware V100R005C00/V100R005C10
There is a race condition vulnerability in eCNS280_TD V100R005C00 and V100R005C10.
network
huawei CWE-362
3.5
2021-06-21 CVE-2021-24377 Race Condition vulnerability in Autoptimize
The Autoptimize WordPress plugin before 2.7.8 attempts to remove potential malicious files from the extracted archive uploaded via the 'Import Settings' feature, however this is not sufficient to protect against RCE as a race condition can be achieved in between the moment the file is extracted on the disk but not yet removed.
6.8
2021-06-21 CVE-2021-0532 Race Condition vulnerability in Google Android
In memory management driver, there is a possible memory corruption due to a race condition.
local
google CWE-362
4.4