Vulnerabilities > Time-of-check Time-of-use (TOCTOU) Race Condition

DATE CVE VULNERABILITY TITLE RISK
2020-03-25 CVE-2020-3808 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Adobe Creative Cloud
Creative Cloud Desktop Application versions 5.0 and earlier have a time-of-check to time-of-use (toctou) race condition vulnerability.
network
high complexity
adobe CWE-367
5.9
2020-03-24 CVE-2019-20610 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Google Android
An issue was discovered on Samsung mobile devices with N(7.X) and O(8.X) (Exynos 7570, 7870, 7880, 7885, 8890, 8895, and 9810 chipsets) software.
network
high complexity
google CWE-367
8.1
2020-03-15 CVE-2019-15608 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Yarnpkg Yarn
The package integrity validation in yarn < 1.19.0 contains a TOCTOU vulnerability where the hash is computed before writing a package to cache.
network
high complexity
yarnpkg CWE-367
5.9
2020-02-25 CVE-2020-8793 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in multiple products
OpenSMTPD before 6.6.4 allows local users to read arbitrary files (e.g., on some Linux distributions) because of a combination of an untrusted search path in makemap.c and race conditions in the offline functionality in smtpd.c.
local
high complexity
opensmtpd fedoraproject canonical CWE-367
4.7
2020-02-12 CVE-2020-8890 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Misp
An issue was discovered in MISP before 2.4.121.
network
high complexity
misp CWE-367
5.9
2020-02-08 CVE-2019-11482 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in multiple products
Sander Bos discovered a time of check to time of use (TOCTTOU) vulnerability in apport that allowed a user to cause core files to be written in arbitrary directories.
local
high complexity
canonical apport-project CWE-367
4.7
2020-02-05 CVE-2019-15126 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in multiple products
An issue was discovered on Broadcom Wi-Fi client devices.
high complexity
apple broadcom CWE-367
3.1
2020-01-27 CVE-2019-17102 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Bitdefender BOX 2 Firmware
An exploitable command execution vulnerability exists in the recovery partition of Bitdefender BOX 2, version 2.0.1.91.
network
high complexity
bitdefender CWE-367
8.1
2020-01-08 CVE-2020-0003 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Google Android 8.0
In onCreate of InstallStart.java, there is a possible package validation bypass due to a time-of-check time-of-use vulnerability.
local
high complexity
google CWE-367
6.7
2019-12-26 CVE-2019-20000 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Bullguard Premium Protection 20.0.371.8
The malware scan function in BullGuard Premium Protection 20.0.371.8 has a TOCTOU issue that enables a symbolic link attack, allowing privileged files to be deleted.
network
high complexity
bullguard CWE-367
5.9