Vulnerabilities > Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

DATE CVE VULNERABILITY TITLE RISK
2020-09-17 CVE-2020-0428 Race Condition vulnerability in Google Android
In CamX code, there is a possible use after free due to a race condition.
local
google CWE-362
4.4
2020-09-15 CVE-2020-8342 Race Condition vulnerability in Lenovo System Update
A race condition vulnerability was reported in Lenovo System Update prior to version 5.07.0106 that could allow escalation of privilege.
local
lenovo CWE-362
6.9
2020-09-10 CVE-2020-24655 Race Condition vulnerability in Twilio Authy 2-Factor Authentication 24.3.7
A race condition in the Twilio Authy 2-Factor Authentication application before 24.3.7 for Android allows a user to potentially approve/deny an access request prior to unlocking the application with a PIN on older Android devices (effectively bypassing the PIN requirement).
local
twilio CWE-362
1.9
2020-09-08 CVE-2018-13903 Race Condition vulnerability in Qualcomm products
u'Error in UE due to race condition in EPCO handling' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8053, MDM9205, MDM9206, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, SDM450, SM8150
network
qualcomm CWE-362
critical
9.3
2020-09-02 CVE-2020-16602 Race Condition vulnerability in Razer Chroma SDK
Razer Chroma SDK Rest Server through 3.12.17 allows remote attackers to execute arbitrary programs because there is a race condition in which a file created under "%PROGRAMDATA%\Razer Chroma\SDK\Apps" can be replaced before it is executed by the server.
network
high complexity
razer CWE-362
8.1
2020-08-21 CVE-2020-15309 Race Condition vulnerability in Wolfssl
An issue was discovered in wolfSSL before 4.5.0, when single precision is not employed.
local
high complexity
wolfssl CWE-362
7.0
2020-08-13 CVE-2020-8680 Race Condition vulnerability in Intel Graphics Drivers
Race condition in some Intel(R) Graphics Drivers before version 15.40.45.5126 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
intel CWE-362
4.4
2020-08-13 CVE-2020-0554 Race Condition vulnerability in Intel products
Race condition in software installer for some Intel(R) Wireless Bluetooth(R) products on Windows* 7, 8.1 and 10 may allow an unprivileged user to potentially enable escalation of privilege via local access.
local
high complexity
intel CWE-362
3.7
2020-07-17 CVE-2020-1641 Race Condition vulnerability in Juniper Junos 12.3/12.3X48/15.1
A Race Condition vulnerability in Juniper Networks Junos OS LLDP implementation allows an attacker to cause LLDP to crash leading to a Denial of Service (DoS).
low complexity
juniper CWE-362
3.3
2020-07-17 CVE-2020-15586 Race Condition vulnerability in multiple products
Go before 1.13.13 and 1.14.x before 1.14.5 has a data race in some net/http servers, as demonstrated by the httputil.ReverseProxy Handler, because it reads a request body and writes a response at the same time.
5.9