Vulnerabilities > Improper Synchronization
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2020-03-21 | CVE-2019-17185 | Improper Synchronization vulnerability in multiple products In FreeRADIUS 3.0.x before 3.0.20, the EAP-pwd module used a global OpenSSL BN_CTX instance to handle all handshakes. | 7.5 |
2019-12-11 | CVE-2019-19577 | Improper Synchronization vulnerability in multiple products An issue was discovered in Xen through 4.12.x allowing x86 AMD HVM guest OS users to cause a denial of service or possibly gain privileges by triggering data-structure access during pagetable-height updates. | 7.2 |
2019-10-08 | CVE-2019-17344 | Improper Synchronization vulnerability in multiple products An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service by leveraging a long-running operation that exists to support restartability of PTE updates. | 6.5 |
2019-09-13 | CVE-2019-15031 | Improper Synchronization vulnerability in multiple products In the Linux kernel through 5.2.14 on the powerpc platform, a local user can read vector registers of other users' processes via an interrupt. | 4.4 |
2019-09-09 | CVE-2019-16137 | Improper Synchronization vulnerability in Spin-Rs Project Spin-Rs An issue was discovered in the spin crate before 0.5.2 for Rust, when RwLock is used. | 7.5 |
2019-06-28 | CVE-2018-15555 | Improper Synchronization vulnerability in Actiontec Web6000Q Firmware 1.1.02.22 On Telus Actiontec WEB6000Q v1.1.02.22 devices, an attacker can login with root level access with the user "root" and password "admin" by using the enabled onboard UART headers. | 9.8 |
2019-05-13 | CVE-2018-4027 | Improper Synchronization vulnerability in Anker-In Roav Dashcam A1 Firmware 1.9 An exploitable denial-of-service vulnerability exists in the XML_UploadFile Wi-Fi command of the NT9665X Chipset firmware, running on the Anker Roav A1 Dashcam, version RoavA1SWV1.9. | 7.5 |
2019-05-10 | CVE-2019-5675 | Improper Synchronization vulnerability in Nvidia GPU Driver NVIDIA Windows GPU Display driver software for Windows (all versions) contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape where the product does not properly synchronize shared data, such as static variables across threads, which can lead to undefined behavior and unpredictable data changes, which may lead to denial of service, escalation of privileges, or information disclosure. | 7.8 |
2017-02-13 | CVE-2016-8368 | Improper Synchronization vulnerability in Mitsubishielectric products An issue was discovered in Mitsubishi Electric Automation MELSEC-Q series Ethernet interface modules QJ71E71-100, all versions, QJ71E71-B5, all versions, and QJ71E71-B2, all versions. | 8.6 |