Vulnerabilities > Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

DATE CVE VULNERABILITY TITLE RISK
2019-08-30 CVE-2019-5612 Race Condition vulnerability in multiple products
In FreeBSD 12.0-STABLE before r351264, 12.0-RELEASE before 12.0-RELEASE-p10, 11.3-STABLE before r351265, 11.3-RELEASE before 11.3-RELEASE-p3, and 11.2-RELEASE before 11.2-RELEASE-p14, the kernel driver for /dev/midistat implements a read handler that is not thread-safe.
network
low complexity
freebsd netapp CWE-362
7.5
2019-08-20 CVE-2019-2121 Race Condition vulnerability in Google Android 9.0
In ActivityManagerService.attachApplication of ActivityManagerService, there is a possible race condition.
local
high complexity
google CWE-362
7.0
2019-08-09 CVE-2019-3744 Race Condition vulnerability in Dell Digital Delivery
Dell/Alienware Digital Delivery versions prior to 4.0.41 contain a privilege escalation vulnerability.
local
low complexity
dell CWE-362
7.8
2019-08-07 CVE-2016-10798 Race Condition vulnerability in Cpanel
cPanel before 58.0.4 allows a file-ownership change (to nobody) via rearrangeacct (SEC-134).
network
high complexity
cpanel CWE-362
6.8
2019-08-01 CVE-2018-20940 Race Condition vulnerability in Cpanel
cPanel before 68.0.27 allows attackers to read root's crontab file during a short time interval upon the enabling of backups (SEC-342).
local
low complexity
cpanel CWE-362
3.3
2019-07-30 CVE-2019-7614 Race Condition vulnerability in Elastic Elasticsearch
A race condition flaw was found in the response headers Elasticsearch versions before 7.2.1 and 6.8.2 returns to a request.
network
high complexity
elastic CWE-362
5.9
2019-07-25 CVE-2019-11922 Race Condition vulnerability in Facebook Zstandard
A race condition in the one-pass compression functions of Zstandard prior to version 1.3.8 could allow an attacker to write bytes out of bounds if an output buffer smaller than the recommended size was used.
network
high complexity
facebook CWE-362
8.1
2019-07-25 CVE-2019-2345 Race Condition vulnerability in Qualcomm products
Race condition while accessing DMA buffer in jpeg driver in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in MSM8909W, MSM8996AU, QCS605, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 636, SD 712 / SD 710 / SD 670, SD 820, SD 820A, SD 835, SD 845 / SD 850, SDA660, SDM660, SDX20, SDX24
local
high complexity
qualcomm CWE-362
7.0
2019-07-10 CVE-2018-19572 Race Condition vulnerability in Gitlab
GitLab CE 8.17 and later and EE 8.3 and later have a symlink time-of-check-to-time-of-use race condition that would allow unauthorized access to files in the GitLab Pages chroot environment.
network
high complexity
gitlab CWE-362
5.9
2019-07-03 CVE-2019-6627 Race Condition vulnerability in F5 SSL Orchestrator 14.1.0/14.1.0.3
On F5 SSL Orchestrator 14.1.0-14.1.0.5, on rare occasions, specific to a certain race condition, TMM may restart when SSL Forward Proxy enforces the bypass action for an SSL Orchestrator transparent virtual server with SNAT enabled.
network
high complexity
f5 CWE-362
5.9