rust-vmm vm-memory before 0.1.1 and 0.2.x before 0.2.1 allows attackers to cause a denial of service (loss of IP network
VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG),
In FreeBSD 12.1-STABLE before r356908, 12.1-RELEASE before p5, 11.3-STABLE before r356908, and 11.3-RELEASE before p9, a
A race condition vulnerability was reported in Lenovo System Update prior to version 5.07.0106 that could allow escalati
The repair operation of VMware Tools for Windows 10.x.y has a race condition which may allow for privilege escalation in
log.c in Squid Analysis Report Generator (sarg) through 2.3.11 allows local privilege escalation. By default, it uses a
The psub function in fish (aka fish-shell) 1.16.0 before 2.1.1 does not properly create temporary files, which allows lo
The funced function in fish (aka fish-shell) 1.23.0 before 2.1.1 does not properly create temporary files, which allows
A Privilege Escalation Vulnerability exists in Sprite Software Spritebud 1.3.24 and 1.3.28 and Backup 2.5.4105 and 2.5.4
In binder_thread_release of binder.c, there is a possible use after free due to a race condition. This could lead to loc
Integer signedness error in the btrfs_ioctl_space_info function in the Linux kernel 2.6.37 allows local users to cause a
A race condition was addressed with improved locking. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1. An applicatio
Unhandled paging request is observed due to dereferencing an already freed object because of race condition between spar
init_tmp in TeeJee.FileSystem.vala in Timeshift before 20.03 unsafely reuses a preexisting temporary directory in the pr
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (S.LSI chipsets) software. There are
MITRE is populating this ID because it was assigned prior to Lenovo becoming a CNA. A race condition was reported (fixed
Possible use after free issue in pcm volume controls due to race condition exist in private data used in mixer controls
In the Linux kernel 4.19 through 5.6.7 on the s390 platform, code execution may occur because of a race condition, as de
SQLiteODBC 0.9996, as packaged for certain Linux distributions as 0.9996-4, has a race condition leading to root privile
The S. Siedle & Soehne SG 150-0 Smart Gateway before 1.2.4 allows local privilege escalation via a race condition in log
The fix for CVE-2019-11599, affecting the Linux kernel before 5.0.10 was not complete. A local user could use this flaw
Symantec Endpoint Protection Manager, prior to 14.3, has a race condition in client remote deployment which may result i
A race condition due to insecure creation of a file in a temporary directory vulnerability in PAN-OS allows for root pri
A race condition was addressed with improved state handling. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Cata
In loadSoundModel and related functions of SoundTriggerHwService.cpp, there is possible out of bounds write due to a rac
Adobe Acrobat and Reader versions 2020.006.20042 and earlier, 2017.011.30166 and earlier, 2017.011.30166 and earlier, an
Race condition in software installer for some Intel(R) Wireless Bluetooth(R) products on Windows* 7, 8.1 and 10 may allo
Race condition in some Intel(R) Graphics Drivers before version 15.40.45.5126 may allow an authenticated user to potenti
An issue was discovered in wolfSSL before 4.5.0, when single precision is not employed. Local attackers can conduct a ca
An issue was discovered in Xen through 4.14.x. There are evtchn_reset() race conditions. Uses of EVTCHNOP_reset (potenti
A race condition was addressed with improved state handling. This issue is fixed in macOS Catalina 10.15.5. An applicati
An issue was discovered in Xen through 4.14.x allowing x86 guest OS users to cause a host OS denial of service, achieve
Verifone MX900 series Pinpad Payment Terminals with OS 30251000 have a race condition for RBAC bypass.
u'Two threads running simultaneously from user space can lead to race condition in fastRPC driver' in Snapdragon Auto, S
An issue was discovered in __split_huge_pmd in mm/huge_memory.c in the Linux kernel before 5.7.5. The copy-on-write impl
An issue was discovered in mm/mmap.c in the Linux kernel before 5.7.11. There is a race condition between certain expand
An issue was discovered in kmem_cache_alloc_bulk in mm/slub.c in the Linux kernel before 5.5.11. The slowpath lacks the
In HalCamera::requestNewFrame of HalCamera.cpp, there is a possible use-after-free due to a race condition. This could l
A vulnerability has been identified in SINAMICS PERFECT HARMONY GH180 Drives MLFB 6SR32..-.....-.... MLFB 6SR4...-.....-
KVM in the Linux kernel on Power8 processors has a conflicting use of HSTATE_HOST_R1 to store r1 state in kvmppc_hv_entr
A Race Condition vulnerability in Juniper Networks Junos OS LLDP implementation allows an attacker to cause LLDP to cras
In StatsService::command of StatsService.cpp, there is possible memory corruption due to a race condition. This could le
In the netlink driver, there is a possible out of bounds write due to a race condition. This could lead to local escalat
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. There is a race condition l
In multiple functions in DrmPlugin.cpp, there is a possible use after free due to a race condition. This could lead to l
In cdev_get of char_dev.c, there is a possible use-after-free due to a race condition. This could lead to local escalati
GRUB2 contains a race condition in grub_script_function_create() leading to a use-after-free vulnerability which can be
A race condition between hugetlb sysctl handlers in mm/hugetlb.c in the Linux kernel before 5.8.8 could be used by local
In CamX code, there is a possible use after free due to a race condition. This could lead to local escalation of privile
In NFC, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege wit
Frequently Asked Questions
What is CWE-362?
CWE-362 (CWE-362) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-362?
There are 2,933 CVE records associated with CWE-362 in our database. Of these, 50 are critical severity, 1207 are high severity, and 833 are medium severity.
How can I protect against CWE-362 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-362 using AI-powered security agents.
Detect CWE-362 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-362 vulnerabilities across your infrastructure.
Get Started