In the Linux kernel, the following vulnerability has been resolved: erofs: fix race in z_erofs_get_gbuf() In z_erofs_g
In the Linux kernel, the following vulnerability has been resolved: ALSA: line6: Fix racy access to midibuf There can
In the Linux kernel, the following vulnerability has been resolved: btrfs: fix race between direct IO write and fsync w
In the Linux kernel, the following vulnerability has been resolved: lib/generic-radix-tree.c: Fix rare race in __genrad
Software installed and run as a non-privileged user may conduct GPU system calls to read and write freed physical memory
In the Linux kernel, the following vulnerability has been resolved: vfs: fix race between evice_inodes() and find_inode
In the Linux kernel, the following vulnerability has been resolved: btrfs: fix race setting file private on concurrent
In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to check atomic_file in f2fs ioctl interf
In the Linux kernel, the following vulnerability has been resolved: tracing/timerlat: Fix a race during cpuhp processin
In the Linux kernel, the following vulnerability has been resolved: media: venus: fix use after free bug in venus_remov
In the Linux kernel, the following vulnerability has been resolved: fscache: Fix oops due to race with cookie_lru and u
In the Linux kernel, the following vulnerability has been resolved: mm/mremap: fix move_normal_pmd/retract_page_tables
In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Fix race when converting group handle
Qualys discovered that needrestart, before version 3.8, allows local attackers to execute arbitrary code as root by winn
In the Linux kernel, the following vulnerability has been resolved: i40e: fix race condition by adding filter's interme
In the Linux kernel, the following vulnerability has been resolved: nvme: tcp: avoid race between queue_lock lock and d
In the Linux kernel, the following vulnerability has been resolved: net/mlx5: fs, lock FTE when checking if active The
Software installed and run as a non-privileged user may conduct GPU system calls to read and write freed physical memory
Software installed and run as a non-privileged user may conduct GPU system calls to read and write freed physical memory
In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Prevent recovery invocation during prob
In the Linux kernel, the following vulnerability has been resolved: drm/xe/guc_submit: fix race around suspend_pending
In the Linux kernel, the following vulnerability has been resolved: media: i2c: tc358743: Fix crash in the probe error
In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: Fix race between element replace and
In the Linux kernel, the following vulnerability has been resolved: s390/cpum_sf: Fix and protect memory allocation of
Deno is a JavaScript, TypeScript, and WebAssembly runtime with secure defaults. By using ANSI escape sequences and a rac
Windows Hyper-V Remote Code Execution Vulnerability
Remote Desktop Client Remote Code Execution Vulnerability
Using a javascript: URI with a setTimeout race condition, an attacker can execute unauthorized scripts on top origin sit
A race condition was found in the Linux Kernel. Under certain conditions, an unauthenticated attacker from an adjacent n
In mp3 decoder, there is a possible out of bounds write due to a race condition. This could lead to remote escalation of
Race in DevTools in Google Chrome prior to 126.0.6478.182 allowed an attacker who convinced a user to install a maliciou
A race condition was addressed with additional validation. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Sonoma
A vulnerability was found in Undertow where the ProxyProtocolReadListener reuses the same StringBuilder instance across
alf.io is an open source ticket reservation system for conferences, trade shows, workshops, and meetups. Prior to versio
Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
A race condition in UEFI firmware for some Intel(R) processors may allow a privileged user to potentially enable escalat
In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix a race between socket set up and I/O thr
In the Linux kernel, the following vulnerability has been resolved: net: xilinx: axienet: Enqueue Tx packets in dql bef
IBM Watson Speech Services Cartridge for IBM Cloud Pak for Data 4.0.0 through 5.0.2 does not properly check inputs to re
In the Linux kernel, the following vulnerability has been resolved: mptcp: cope racing subflow creation in mptcp_rcv_sp
In the Linux kernel, the following vulnerability has been resolved: net: fix data-races around sk->sk_forward_alloc Sy
In the Linux kernel, the following vulnerability has been resolved: mm: revert "mm: shmem: fix data-race in shmem_getat
Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerability
The server lacks thread safety and can be crashed by anomalous data sent by an anonymous user from a remote network. The
Race condition vulnerability in the Wi-Fi module. Impact: Successful exploitation of this vulnerability will affect avai
A defect was discovered in the Python “ssl” module where there is a memory race condition with the ssl.SSLContext method
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: flush pending destroy work be
In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: Hold module reference while reque
A race condition flaw was found in sssd where the GPO policy is not consistently applied for authenticated users. This m
A race condition was addressed with improved state handling. This issue is fixed in macOS Big Sur 11.7.9, macOS Monterey
Frequently Asked Questions
What is CWE-362?
CWE-362 (CWE-362) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-362?
There are 2,933 CVE records associated with CWE-362 in our database. Of these, 50 are critical severity, 1207 are high severity, and 833 are medium severity.
How can I protect against CWE-362 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-362 using AI-powered security agents.
Detect CWE-362 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-362 vulnerabilities across your infrastructure.
Get Started