Vulnerabilities > Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

DATE CVE VULNERABILITY TITLE RISK
2020-03-14 CVE-2020-10577 Race Condition vulnerability in Meetecho Janus
An issue was discovered in Janus through 0.9.1.
network
meetecho CWE-362
5.8
2020-03-14 CVE-2020-10576 Race Condition vulnerability in Meetecho Janus
An issue was discovered in Janus through 0.9.1.
network
meetecho CWE-362
4.3
2020-03-14 CVE-2020-10575 Race Condition vulnerability in Meetecho Janus
An issue was discovered in Janus through 0.9.1.
network
high complexity
meetecho CWE-362
4.0
2020-03-11 CVE-2020-1733 Race Condition vulnerability in multiple products
A race condition flaw was found in Ansible Engine 2.7.17 and prior, 2.8.9 and prior, 2.9.6 and prior when running a playbook with an unprivileged become user.
local
high complexity
redhat fedoraproject debian CWE-362
5.0
2020-03-10 CVE-2020-0045 Race Condition vulnerability in Google Android 10.0
In StatsService::command of StatsService.cpp, there is possible memory corruption due to a race condition.
local
google CWE-362
6.9
2020-02-27 CVE-2020-3831 Race Condition vulnerability in Apple Ipados and Iphone OS
A race condition was addressed with improved locking.
network
high complexity
apple CWE-362
7.6
2020-02-21 CVE-2020-9329 Race Condition vulnerability in Gogs
Gogs through 0.11.91 allows attackers to violate the admin-specified repo-creation policy due to an internal/db/repo.go race condition.
network
gogs CWE-362
4.3
2020-02-20 CVE-2011-0699 Race Condition vulnerability in Linux Kernel 2.6.37
Integer signedness error in the btrfs_ioctl_space_info function in the Linux kernel 2.6.37 allows local users to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted slot value.
local
linux CWE-362
6.9
2020-02-19 CVE-2020-3163 Race Condition vulnerability in Cisco Unified Contact Center Enterprise
A vulnerability in the Live Data server of Cisco Unified Contact Center Enterprise could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
network
cisco CWE-362
7.1
2020-02-14 CVE-2019-11215 Race Condition vulnerability in Combodo Itop
In Combodo iTop 2.2.0 through 2.6.0, if the configuration file is writable, then execution of arbitrary code can be accomplished by calling ajax.dataloader with a maliciously crafted payload.
network
combodo CWE-362
6.8