Vulnerabilities > Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

DATE CVE VULNERABILITY TITLE RISK
2019-11-06 CVE-2019-8232 Race Condition vulnerability in Magento
In Magento prior to 1.9.4.3, Magento prior to 1.14.4.3, Magento 2.2 prior to 2.2.10, and Magento 2.3 prior to 2.3.3 or 2.3.2-p1, an authenticated user with administrative privileges for the import feature can execute arbitrary code through a race condition that allows webserver configuration file modification.
network
magento CWE-362
6.0
2019-11-04 CVE-2019-18684 Race Condition vulnerability in Sudo Project Sudo
Sudo through 1.8.29 allows local users to escalate to root if they have write access to file descriptor 3 of the sudo process.
local
high complexity
sudo-project CWE-362
7.0
2019-11-01 CVE-2005-2352 Race Condition vulnerability in Gs-Gpl Project Gs-Gpl
I race condition in Temp files was found in gs-gpl before 8.56 addons scripts.
6.8
2019-10-31 CVE-2019-18421 Race Condition vulnerability in multiple products
An issue was discovered in Xen through 4.12.x allowing x86 PV guest OS users to gain host OS privileges by leveraging race conditions in pagetable promotion and demotion operations.
network
high complexity
xen debian fedoraproject opensuse CWE-362
7.5
2019-10-17 CVE-2019-8162 Race Condition vulnerability in Adobe Acrobat DC
Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, 2015.006.30503 and earlier, and 2015.006.30503 and earlier have a race condition vulnerability.
network
adobe CWE-362
6.8
2019-10-10 CVE-2019-14810 Race Condition vulnerability in Arista Extensible Operating System
A vulnerability has been found in the implementation of the Label Distribution Protocol (LDP) protocol in EOS.
network
arista CWE-362
4.3
2019-10-08 CVE-2019-17342 Race Condition vulnerability in multiple products
An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service or gain privileges by leveraging a race condition that arose when XENMEM_exchange was introduced.
local
high complexity
xen debian CWE-362
7.0
2019-10-08 CVE-2019-17341 Race Condition vulnerability in multiple products
An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service or gain privileges by leveraging a page-writability race condition during addition of a passed-through PCI device.
local
high complexity
xen debian CWE-362
7.8
2019-09-27 CVE-2019-9375 Race Condition vulnerability in Google Android 10.0
In hostapd, there is a possible out of bounds write due to a race condition.
local
google CWE-362
6.9
2019-09-27 CVE-2019-2189 Race Condition vulnerability in Google Android 10.0
In the Easel driver, there is possible memory corruption due to race conditions.
local
google CWE-362
6.9