A use-after-free flaw was found in the Linux kernel’s sound subsystem in the way a user triggers concurrent calls of PCM
In several functions of KeyguardServiceWrapper.java and related files,, there is a possible way to briefly view what's u
In startActivityForAttachedApplicationIfNeeded of RootWindowContainer.java, there is a possible way to overlay an app th
In ion_ioctl and related functions of ion.c, there is a possible use after free due to a race condition. This could lead
In ip_check_mc_rcu of igmp.c, there is a possible use after free due to improper locking. This could lead to local escal
In ipu_core_jqs_msg_transport_kernel_write_sync of ipu-core-jqs-msg-transport.c, there is a possible use-after-free due
Versions of the Amazon AWS Apache Log4j hotpatch package before log4j-cve-2021-44228-hotpatch-1.3.5 are affected by a ra
In GPU, there is a possible use after free due to a race condition. This could lead to local escalation of privilege wit
In stealReceiveChannel of EventThread.cpp, there is a possible way to interfere with process communication due to a race
A race condition exists in Eternal Terminal prior to version 6.2.0 which allows a local attacker to hijack Eternal Termi
A race condition was found in the Linux kernel's watch queue due to a missing lock in pipe_resize_ring(). The specific f
A use-after-free flaw was found in the Linux kernel’s PLP Rose functionality in the way a user triggers a race condition
An issue found in linux-kernel that leads to a race condition in rose_connect(). The rose driver uses rose_neigh->use to
A race condition was found in the way the Linux kernel's memory subsystem handled the copy-on-write (COW) breakage of pr
A race condition was found in the Linux kernel's IP framework for transforming packets (XFRM subsystem) when multiple ca
A race condition was found the Linux kernel in perf_event_open() which can be exploited by an unprivileged user to gain
Windows Photo Import API Elevation of Privilege Vulnerability
Windows ALPC Elevation of Privilege Vulnerability
In PVRSRVRGXSubmitTransferKM of rgxtransfer.c, there is a possible user after free due to a race condition. This could l
Connected User Experiences and Telemetry Elevation of Privilege Vulnerability
Windows Storage Elevation of Privilege Vulnerability
Windows ALPC Elevation of Privilege Vulnerability
In dllist_remove_node of TBD, there is a possible use after free bug due to a race condition. This could lead to local e
A race condition was addressed with improved state handling. This issue is fixed in macOS Ventura 13. An app may be able
A race condition was addressed with improved locking. This issue is fixed in tvOS 16.1, iOS 15.7.1 and iPadOS 15.7.1, ma
A race condition was addressed with improved locking. This issue is fixed in iOS 16.1 and iPadOS 16, macOS Ventura 13. A
Windows Subsystem for Linux (WSL2) Kernel Elevation of Privilege Vulnerability
Windows Bind Filter Driver Elevation of Privilege Vulnerability
An issue was discovered in the Linux kernel through 6.0.9. drivers/media/dvb-core/dvbdev.c has a use-after-free, related
An issue was discovered in the Linux kernel through 6.0.9. drivers/media/dvb-core/dvb_frontend.c has a race condition th
An issue was discovered in the Linux kernel through 6.0.9. drivers/media/dvb-core/dvb_net.c has a .disconnect versus dvb
In TBD of TBD, there is a possible way to archive arbitrary code execution in kernel due to a race condition. This could
Windows Error Reporting Elevation of Privilege Vulnerability
A race condition was addressed with improved state handling. This issue is fixed in tvOS 16.2, macOS Monterey 12.6.2, ma
A race condition was addressed with additional validation. This issue is fixed in tvOS 16.2, macOS Monterey 12.6.2, macO
A use-after-free read flaw was found in sock_getsockopt() in net/core/sock.c due to SO_PEERCRED and SO_PEERGROUPS race w
A flaw was found in the way Samba handled file/directory metadata. This flaw allows an authenticated attacker with permi
Use after free condition can occur in wired connectivity due to a race condition while creating and deleting folders in
In GED driver, there is a possible use after free due to a race condition. This could lead to local escalation of privil
In TEEI driver, there is a possible type confusion due to a race condition. This could lead to local escalation of privi
In TEEI driver, there is a possible use after free due to a race condition. This could lead to local escalation of privi
In TEEI driver, there is a possible use after free due to a race condition. This could lead to local escalation of privi
Windows DNS Server Remote Code Execution Vulnerability
Windows DNS Server Remote Code Execution Vulnerability
Windows DNS Server Remote Code Execution Vulnerability
Windows DNS Server Remote Code Execution Vulnerability
Windows DNS Server Remote Code Execution Vulnerability
Windows DNS Server Remote Code Execution Vulnerability
Windows DNS Server Remote Code Execution Vulnerability
Windows Group Policy Elevation of Privilege Vulnerability
Frequently Asked Questions
What is CWE-362?
CWE-362 (CWE-362) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-362?
There are 2,933 CVE records associated with CWE-362 in our database. Of these, 50 are critical severity, 1207 are high severity, and 833 are medium severity.
How can I protect against CWE-362 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-362 using AI-powered security agents.
Detect CWE-362 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-362 vulnerabilities across your infrastructure.
Get Started