Race condition in the LoadBalancer module in the Atlassian Floodlight Controller before 1.2 allows remote attackers to c
In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kern
An issue was discovered in Joomla! Core before 3.8.8. A long running background process, such as remote checks for core
In net/socket.c in the Linux kernel through 4.17.1, there is a race condition between fchownat and close in cases where
389-ds-base before versions 1.4.0.10, 1.3.8.3 is vulnerable to a race condition in the way 389-ds-base handles persisten
If an async request was completed by the application at the same time as the container triggered the async timeout, a ra
In some Lenovo IdeaPad consumer notebook models, a race condition in the BIOS flash device locking mechanism is not adeq
A remote unauthorized disclosure of information vulnerability was identified in HPE Service Governance Framework (SGF) v
A non-existent chrome.manifest file will attempt to be loaded during startup from the primary installation directory. If
A race condition was found in util-linux before 2.32.1 in the way su handled the management of child processes. A local
An issue was discovered in the proc_pid_stack function in fs/proc/base.c in the Linux kernel through 4.18.11. It does no
Symantec Endpoint Protection prior to 14 RU1 MP1 or 12.1 RU6 MP10 may be susceptible to a race condition (or race hazard
A race-condition flaw was discovered in openstack-neutron before 7.2.0-12.1, 8.x before 8.3.0-11.1, 9.x before 9.3.1-2.1
OpenSSH through 7.7 is prone to a user enumeration vulnerability due to not delaying bailout for an invalid authenticati
A flaw was found in the Linux Kernel where an attacker may be able to have an uncontrolled read to kernel-memory from wi
A use-after-free vulnerability was found in network namespaces code affecting the Linux kernel before 4.14.11. The funct
The dm_get_from_kobject function in drivers/md/dm.c in the Linux kernel before 4.14.3 allow local users to cause a denia
Race condition in the store_int_with_restart() function in arch/x86/kernel/cpu/mcheck/mce.c in the Linux kernel through
In the Linux kernel before 4.15, fs/ocfs2/aops.c omits use of a semaphore and consequently has a race condition for acce
There is a race condition in Android for MSM, Firefox OS for MSM, and QRD Android that allows to access to already free'
An issue was discovered in certain Apple products. iOS before 11.2.5 is affected. macOS before 10.13.3 is affected. tvOS
In HTSlib 1.8, a race condition in cram/cram_io.c might allow local users to overwrite arbitrary files via a symlink att
GEAR Software products that include GEARAspiWDM.sys, 2.2.5.0, allow local users to cause a denial of service (Race Condi
In Snapdragon (Automobile ,Mobile) in version MSM8996AU, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 650/52, SD 8
v9fs_wstat in hw/9pfs/9p.c in QEMU allows guest OS users to cause a denial of service (crash) because of a race conditio
Incorrect access control in RDP Level 1 on STMicroelectronics STM32F0 series devices allows physically present attackers
Absolute Computrace Agent, as distributed on certain Dell Inspiron systems through 2009, has a race condition with the D
procps-ng, procps is vulnerable to a process hiding through race condition. Since the kernel's proc_pid_readdir() return
private_address_check ruby gem before 0.5.0 is vulnerable to a time-of-check time-of-use (TOCTOU) race condition due to
The package `node-cli` before 1.0.0 insecurely uses the lock_file and log_file. Both of these are temporary, but it allo
Local privilege escalation vulnerability in the Gentoo QEMU package before 2.5.0-r1.
The shadow-paging feature in Xen through 4.8.x mismanages page references and consequently introduces a race condition,
It is possible to bypass the bitbucket auto-unapprove plugin via minimal brute-force because it is relying on asynchrono
The _checkPolkitPrivilege function in serviceHelper.py in Back In Time (aka backintime) 1.1.18 and earlier uses a deprec
Google Chrome prior to 57.0.2987.98 for Windows and Mac had a race condition, which could cause Chrome to display incorr
Radicale before 1.1.2 and 2.x before 2.0.0rc2 is prone to timing oracles and simple brute-force attacks when using the h
Race conditions in opa-fm before 10.4.0.0.196 and opa-ff before 10.4.0.0.197.
The grant-table feature in Xen through 4.8.x has a race condition leading to a double free, which allows guest OS users
In all Qualcomm products with Android releases from CAF using the Linux kernel, there is a TOCTOU race condition in Secu
In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition in a WLAN driver can le
SuiteCRM before 7.2.3 allows remote attackers to execute arbitrary code.
Race condition in SuiteCRM before 7.2.3 allows remote attackers to execute arbitrary code. NOTE: this vulnerability exi
The Windows NetBT Session Services component on Microsoft Windows Server 2008 R2 SP1, Windows 7 SP1, Windows 8.1, Window
In FreeBSD through 11.1, the smb_strdupin function in sys/netsmb/smb_subr.c has a race condition with a resultant out-of
An issue was discovered in certain Apple products. iOS before 11 is affected. tvOS before 11 is affected. The issue invo
Race condition in the ip4_datagram_release_cb function in net/ipv4/datagram.c in the Linux kernel before 3.15.2 allows l
An issue was discovered in certain Apple products. macOS before 10.12.4 is affected. The issue involves the "AppleGraphi
A elevation of privilege vulnerability in the Android media framework (libgui). Product: Android. Versions: 7.0, 7.1.1,
In all Qualcomm products with Android releases from CAF using the Linux kernel, when accessing the sde_rotator debug int
Race condition in the grant table code in Xen 4.6.x through 4.9.x allows local guest OS administrators to cause a denial
Frequently Asked Questions
What is CWE-362?
CWE-362 (CWE-362) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-362?
There are 2,933 CVE records associated with CWE-362 in our database. Of these, 50 are critical severity, 1207 are high severity, and 833 are medium severity.
How can I protect against CWE-362 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-362 using AI-powered security agents.
Detect CWE-362 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-362 vulnerabilities across your infrastructure.
Get Started