Vulnerabilities > Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

DATE CVE VULNERABILITY TITLE RISK
2019-10-10 CVE-2019-14810 Race Condition vulnerability in Arista Extensible Operating System
A vulnerability has been found in the implementation of the Label Distribution Protocol (LDP) protocol in EOS.
network
arista CWE-362
4.3
2019-10-08 CVE-2019-17342 Race Condition vulnerability in multiple products
An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service or gain privileges by leveraging a race condition that arose when XENMEM_exchange was introduced.
local
high complexity
xen debian CWE-362
7.0
2019-10-08 CVE-2019-17341 Race Condition vulnerability in multiple products
An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service or gain privileges by leveraging a page-writability race condition during addition of a passed-through PCI device.
local
high complexity
xen debian CWE-362
7.8
2019-09-27 CVE-2019-9375 Race Condition vulnerability in Google Android 10.0
In hostapd, there is a possible out of bounds write due to a race condition.
local
google CWE-362
6.9
2019-09-27 CVE-2019-2189 Race Condition vulnerability in Google Android 10.0
In the Easel driver, there is possible memory corruption due to race conditions.
local
google CWE-362
6.9
2019-09-27 CVE-2019-2188 Race Condition vulnerability in Google Android 10.0
In the Easel driver, there is possible memory corruption due to race conditions.
local
google CWE-362
6.9
2019-09-27 CVE-2019-11736 Race Condition vulnerability in Mozilla Firefox
The Mozilla Maintenance Service does not guard against files being hardlinked to another file in the updates directory, allowing for the replacement of local files, including the Maintenance Service executable, which is run with privileged access.
4.4
2019-09-25 CVE-2019-13627 Race Condition vulnerability in multiple products
It was discovered that there was a ECDSA timing attack in the libgcrypt20 cryptographic library.
2.6
2019-09-16 CVE-2019-11184 Race Condition vulnerability in multiple products
A race condition in specific microprocessors using Intel (R) DDIO cache allocation and RDMA may allow an authenticated user to potentially enable partial information disclosure via adjacent access.
high complexity
intel netapp CWE-362
4.8
2019-09-16 CVE-2019-16354 Race Condition vulnerability in Beego 1.10.0
The File Session Manager in Beego 1.10.0 allows local users to read session files because there is a race condition involving file creation within a directory with weak permissions.
local
beego CWE-362
1.9