Vulnerabilities > Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

DATE CVE VULNERABILITY TITLE RISK
2020-01-08 CVE-2019-17021 Race Condition vulnerability in multiple products
During the initialization of a new content process, a race condition occurs that can allow a content process to disclose heap addresses from the parent process.
network
high complexity
mozilla opensuse CWE-362
2.6
2020-01-08 CVE-2019-17011 Race Condition vulnerability in multiple products
Under certain conditions, when retrieving a document from a DocShell in the antitracking code, a race condition could cause a use-after-free condition and a potentially exploitable crash.
network
high complexity
mozilla opensuse canonical CWE-362
5.1
2020-01-08 CVE-2019-17010 Race Condition vulnerability in multiple products
Under certain conditions, when checking the Resist Fingerprinting preference during device orientation checks, a race condition could have caused a use-after-free and a potentially exploitable crash.
network
high complexity
mozilla opensuse canonical CWE-362
5.1
2020-01-02 CVE-2014-0245 Race Condition vulnerability in Redhat Jboss Portal 6.2.0
It was found that the implementation of the GTNSubjectCreatingInterceptor class in gatein-wsrp was not thread safe.
network
redhat CWE-362
4.3
2019-12-31 CVE-2011-3585 Race Condition vulnerability in multiple products
Multiple race conditions in the (1) mount.cifs and (2) umount.cifs programs in Samba 3.6 allow local users to cause a denial of service (mounting outage) via a SIGKILL signal during a time window when the /etc/mtab~ file exists.
local
high complexity
samba redhat CWE-362
4.7
2019-12-18 CVE-2019-11090 Race Condition vulnerability in Intel products
Cryptographic timing conditions in the subsystem for Intel(R) PTT before versions 11.8.70, 11.11.70, 11.22.70, 12.0.45, 13.0.0 and 14.0.10; Intel(R) TXE 3.1.70 and 4.0.20; Intel(R) SPS before versions SPS_E5_04.01.04.305.0, SPS_SoC-X_04.00.04.108.0, SPS_SoC-A_04.00.04.191.0, SPS_E3_04.01.04.086.0, SPS_E3_04.08.04.047.0 may allow an unauthenticated user to potentially enable information disclosure via network access.
network
intel CWE-362
4.3
2019-12-18 CVE-2019-8757 Race Condition vulnerability in Apple mac OS X
A race condition existed when reading and writing user preferences.
local
apple CWE-362
1.9
2019-12-18 CVE-2019-8606 Race Condition vulnerability in Apple mac OS X
A validation issue existed in the handling of symlinks.
local
apple CWE-362
6.9
2019-12-18 CVE-2019-8565 Race Condition vulnerability in Apple Iphone OS
A race condition was addressed with additional validation.
network
high complexity
apple CWE-362
7.6
2019-12-18 CVE-2019-6236 Race Condition vulnerability in Apple Icloud
A race condition existed during the installation of iCloud for Windows.
network
high complexity
apple CWE-362
7.6