In vpu, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege
In vpu, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege
In vow, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege
In FindQuotaDeviceForUuid of QuotaUtils.cpp, there is a possible use-after-free due to a race condition. This could lead
A race condition was found in the Linux kernels implementation of the floppy disk drive controller driver software. The
Race condition in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation
Race condition in a subsystem in the Intel(R) LMS versions before 2039.1.0.0 may allow a privileged user to potentially
A use after free vulnerability via race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows arbitrary
A race condition in MFC charger driver prior to SMR MAY-2021 Release 1 allows local attackers to bypass signature check
In decrypt of CryptoPlugin.cpp, there is a possible use-after-free due to a race condition. This could lead to local esc
A use-after-free in function hci_sock_bound_ioctl() of the Linux kernel HCI subsystem was found in the way user calls io
An issue was discovered in SaltStack Salt before 3003.3. The salt minion installer will accept and use a minion config f
In unix_scm_to_skb of af_unix.c, there is a possible use after free bug due to a race condition. This could lead to loca
In synchronous_process_io_entries of lwis_ioctl.c, there is a possible out of bounds write due to a race condition. This
NVIDIA vGPU manager contains a vulnerability in the vGPU plugin, in which a race condition may cause the vGPU plugin to
There is an open race window when writing output in the following utilities in GNU binutils version 2.35 and earlier:ar,
Exim 4 before 4.94.2 has Execution with Unnecessary Privileges. By leveraging a delete_pid_file race condition, a local
A concurrent execution using shared resource with improper synchronization ('race condition') in the command shell of Fo
A race condition was addressed with improved state handling. This issue is fixed in iOS 14.6 and iPadOS 14.6. An applica
A remote arbitrary file read vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s
In the standard library in Rust before 1.19.0, there is a synchronization problem in the MutexGuard object. MutexGuards
A vulnerability in the forwarding of transit TCPv6 packets received on the Ethernet management interface of Juniper Netw
An issue was discovered in Prosody before 0.11.9. It does not use a constant-time algorithm for comparing certain secret
Bouncy Castle BC Java before 1.66, BC C# .NET before 1.8.7, BC-FJA before 1.0.1.2, 1.0.2.1, and BC-FNA before 1.0.1.1 ha
PJSIP is a free and open source multimedia communication library written in C language implementing standard based proto
Go before 1.15.15 and 1.16.x before 1.16.7 has a race condition that can lead to a net/http/httputil ReverseProxy panic
An issue was discovered in the tokio crate before 1.8.1 for Rust. Upon a JoinHandle::abort, a Task may be dropped in the
A race condition was addressed with improved locking. This issue is fixed in macOS Monterey 12.1, Security Update 2021-0
A race condition was addressed with improved locking. This issue is fixed in Security Update 2021-004 Mojave, iOS 14.5 a
An Improper Check for Unusual or Exceptional Conditions vulnerability combined with a Race Condition in the flow daemon
There is a issue that nodes in the linked list being freed for multiple times in Huawei Smartphone due to race condition
A local attacker could bypass the app password using a race condition in Sophos Secure Workspace for Android before vers
There is a Race Condition vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to m
There is a Encoding timing vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to
An issue in Atomix v3.1.5 allows attackers to cause a denial of service (DoS) via false member down event messages.
The Rest API component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server, TIBCO JasperRepo
There is a race condition vulnerability in eCNS280_TD V100R005C00 and V100R005C10. There is a timing window exists in wh
Unencrypted Bluetooth Low Energy baseband links in Bluetooth Core Specifications 4.0 through 5.2 may permit an adjacent
A Race Condition (Concurrent Execution using Shared Resource with Improper Synchronization) vulnerability in the firewal
The user identification mechanism used by CyberArk Credential Provider prior to 12.1 is susceptible to a local host race
In is_device_locked and set_device_locked of keystore_keymaster_enforcement.h, there is a possible bypass of lockscreen
An issue was discovered in the reffers crate through 2020-12-01 for Rust. ARefss can contain a !Send,!Sync object, leadi
There is a race condition in OozieSharelibCLI in Apache Oozie before version 5.2.1 which allows a malicious attacker to
A race condition was discovered in get_old_root in fs/btrfs/ctree.c in the Linux kernel through 5.11.8. It allows attack
An issue was discovered in the Linux kernel before 5.11.7. usbip_sockfd_store in drivers/usb/usbip/stub_dev.c allows att
In several functions of ScreenshotHelper.java and related files, there is a possible incorrectly saved screenshot due to
A Race Condition in the 'show chassis pic' command in Juniper Networks Junos OS Evolved may allow an attacker to crash t
A flaw possibility of race condition and incorrect initialization of the process id was found in the Linux kernel child/
An issue was discovered in Couchbase Server 6.5.x and 6.6.x through 6.6.1. When using the View Engine and Auditing is en
ImageMagick is free software delivered as a ready-to-run binary distribution or as source code that you may use, copy, m
Frequently Asked Questions
What is CWE-362?
CWE-362 (CWE-362) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-362?
There are 2,933 CVE records associated with CWE-362 in our database. Of these, 50 are critical severity, 1207 are high severity, and 833 are medium severity.
How can I protect against CWE-362 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-362 using AI-powered security agents.
Detect CWE-362 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-362 vulnerabilities across your infrastructure.
Get Started