Vulnerabilities > Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

DATE CVE VULNERABILITY TITLE RISK
2017-06-05 CVE-2017-1000367 Race Condition vulnerability in Sudo Project Sudo
Todd Miller's sudo version 1.8.20 and earlier is vulnerable to an input validation (embedded spaces) in the get_process_ttyname() function resulting in information disclosure and command execution.
local
high complexity
sudo-project CWE-362
6.4
2017-06-01 CVE-2017-6512 Race Condition vulnerability in multiple products
Race condition in the rmtree and remove_tree functions in the File-Path module before 2.13 for Perl allows attackers to set the mode on arbitrary files via vectors involving directory-permission loosening logic.
4.3
2017-05-22 CVE-2017-6979 Race Condition vulnerability in Apple products
An issue was discovered in certain Apple products.
network
high complexity
apple CWE-362
7.6
2017-05-22 CVE-2017-2533 Race Condition vulnerability in Apple mac OS X
An issue was discovered in certain Apple products.
network
high complexity
apple CWE-362
7.6
2017-05-22 CVE-2017-2501 Race Condition vulnerability in Apple products
An issue was discovered in certain Apple products.
network
high complexity
apple CWE-362
7.6
2017-05-16 CVE-2016-10242 Race Condition vulnerability in Google Android
A time-of-check time-of-use race condition could potentially exist in the secure file system in all Android releases from CAF using the Linux kernel.
network
high complexity
google CWE-362
7.6
2017-05-16 CVE-2015-8997 Race Condition vulnerability in Google Android
In TrustZone a time-of-check time-of-use race condition could potentially exist in a listener routine in all Android releases from CAF using the Linux kernel.
network
high complexity
google CWE-362
7.6
2017-05-16 CVE-2015-8996 Race Condition vulnerability in Google Android
In TrustZone a time-of-check time-of-use race condition could potentially exist in a QFPROM routine in all Android releases from CAF using the Linux kernel.
network
high complexity
google CWE-362
7.6
2017-05-16 CVE-2014-9936 Race Condition vulnerability in Google Android
In TrustZone a time-of-check time-of-use race condition could potentially exist in an authentication routine in all Android releases from CAF using the Linux kernel.
network
high complexity
google CWE-362
7.6
2017-05-12 CVE-2017-8244 Race Condition vulnerability in Google Android
In core_info_read and inst_info_read in all Android releases from CAF using the Linux kernel, variable "dbg_buf", "dbg_buf->curr" and "dbg_buf->filled_size" could be modified by different threads at the same time, but they are not protected with mutex or locks.
local
google CWE-362
6.9