Vulnerabilities > Time-of-check Time-of-use (TOCTOU) Race Condition

DATE CVE VULNERABILITY TITLE RISK
2022-03-10 CVE-2022-0280 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Microsoft Windows
A race condition vulnerability exists in the QuickClean feature of McAfee Total Protection for Windows prior to 16.0.43 that allows a local user to gain privilege elevation and perform an arbitrary file delete.
local
high complexity
microsoft CWE-367
7.0
2022-02-25 CVE-2022-24335 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Jetbrains Teamcity
JetBrains TeamCity before 2021.2 was vulnerable to a Time-of-check/Time-of-use (TOCTOU) race-condition attack in agent registration via XML-RPC.
network
high complexity
jetbrains CWE-367
8.1
2022-02-23 CVE-2022-23651 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Backblaze B2 Python Software Development KIT
b2-sdk-python is a python library to access cloud storage provided by backblaze.
local
high complexity
backblaze CWE-367
4.7
2022-02-23 CVE-2022-23653 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Backblaze B2 Command Line Tool
B2 Command Line Tool is the official command line tool for the backblaze cloud storage service.
local
high complexity
backblaze CWE-367
4.7
2022-02-16 CVE-2021-22043 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in VMWare Esxi and Fusion
VMware ESXi contains a TOCTOU (Time-of-check Time-of-use) vulnerability that exists in the way temporary files are handled.
network
high complexity
vmware CWE-367
7.5
2022-02-11 CVE-2021-4098 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Google Chrome
Insufficient data validation in Mojo in Google Chrome prior to 96.0.4664.110 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google CWE-367
7.4
2022-02-04 CVE-2022-23563 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Google Tensorflow
Tensorflow is an Open Source Machine Learning Framework.
local
high complexity
google CWE-367
6.3
2022-02-01 CVE-2020-8562 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Kubernetes
As mitigations to a report from 2019 and CVE-2020-8555, Kubernetes attempts to prevent proxied connections from accessing link-local or localhost networks when making user-driven connections to Services, Pods, Nodes, or StorageClass service providers.
network
high complexity
kubernetes CWE-367
3.1
2022-01-27 CVE-2022-23181 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in multiple products
The fix for bug CVE-2020-9484 introduced a time of check, time of use vulnerability into Apache Tomcat 10.1.0-M1 to 10.1.0-M8, 10.0.0-M5 to 10.0.14, 9.0.35 to 9.0.56 and 8.5.55 to 8.5.73 that allowed a local attacker to perform actions with the privileges of the user that the Tomcat process is using.
local
high complexity
apache oracle debian CWE-367
7.0
2022-01-25 CVE-2022-23029 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in F5 products
On BIG-IP version 16.x before 16.1.0, 15.1.x before 15.1.4.1, 14.1.x before 14.1.4.4, and all versions of 13.1.x, 12.1.x, and 11.6.x, when a FastL4 profile is configured on a virtual server, undisclosed traffic can cause an increase in memory resource utilization.
network
low complexity
f5 CWE-367
5.3