A elevation of privilege vulnerability in the Upstream kernel scsi driver. Product: Android. Versions: Android kernel. A
In all Qualcomm products with Android releases from CAF using the Linux kernel, in function msm_compr_ioctl_shared, vari
An issue was discovered in Xen through 4.9.x allowing x86 PV guest OS users to execute arbitrary code on the host OS bec
net/packet/af_packet.c in the Linux kernel before 4.13.6 allows local users to gain privileges via crafted system calls
In HashiCorp Vagrant VMware Fusion plugin (aka vagrant-vmware-fusion) 5.0.1, a local attacker or malware can silently su
Race condition in QEMU in Xen allows local x86 HVM guest OS administrators to gain privileges by changing certain data o
In F5 BIG-IP 12.1.0 through 12.1.2, permissions enforced by iControl can lag behind the actual permissions assigned to a
Incorrect handling of picture ID in WebRTC in Google Chrome prior to 58.0.3029.96 for Mac, Windows, and Linux allowed a
An exploitable vulnerability exists in the signature verification of the firmware update functionality of Circle with Di
In android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, missing
In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Link Controller, PEM and WebSafe software version 13.0.0 and 12.1.
The setpermissions function in the auto-updater in Arq before 5.9.7 for Mac allows local users to gain root privileges v
Race condition in kernel/events/core.c in the Linux kernel before 4.9.7 allows local users to gain privileges via a craf
Race condition in net/packet/af_packet.c in the Linux kernel before 4.9.13 allows local users to cause a denial of servi
An issue was discovered in Veritas NetBackup 8.0 and earlier and NetBackup Appliance 3.0 and earlier. A local-privilege-
Race condition in the L2TPv3 IP Encapsulation feature in the Linux kernel before 4.8.14 allows local users to gain privi
Race condition in drivers/tty/n_hdlc.c in the Linux kernel through 4.10.1 allows local users to gain privileges or cause
Race condition in kernel/ucount.c in the Linux kernel through 4.10.2 allows local users to cause a denial of service (us
Directory traversal vulnerability in the setuid root helper binary in S-nail (later S-mailx) before 14.8.16 allows local
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS b
An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS b
An elevation of privilege vulnerability in the Qualcomm Seemp driver could enable a local malicious application to execu
All versions of the NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) wh
In core_info_read and inst_info_read in all Android releases from CAF using the Linux kernel, variable "dbg_buf", "dbg_b
In TrustZone a time-of-check time-of-use race condition could potentially exist in an authentication routine in all Andr
In TrustZone a time-of-check time-of-use race condition could potentially exist in a QFPROM routine in all Android relea
In TrustZone a time-of-check time-of-use race condition could potentially exist in a listener routine in all Android rel
A time-of-check time-of-use race condition could potentially exist in the secure file system in all Android releases fro
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. tvOS
An issue was discovered in certain Apple products. macOS before 10.12.5 is affected. The issue involves the "DiskArbitra
An issue was discovered in certain Apple products. iOS before 10.3.2 is affected. macOS before 10.12.5 is affected. tvOS
In the Embedded File System in all Android releases from CAF using the Linux kernel, a Time-of-Check Time-of-Use Race Co
In TrustZone in all Android releases from CAF using the Linux kernel, a Time-of-Check Time-of-Use Race Condition vulnera
In all Android releases from CAF using the Linux kernel, a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerabili
In all Android releases from CAF using the Linux kernel, time-of-check Time-of-use (TOCTOU) Race Conditions exist in sev
In all Android releases from CAF using the Linux kernel, a race condition potentially exists in the ioctl handler of a s
In all Android releases from CAF using the Linux kernel, a race condition exists in a video driver potentially leading t
Race condition in the bindBackupAgent method in the ActivityManagerService in Android 4.4.4 allows local users with adb
aRts 1.5.10 and kdelibs3 3.5.10 and earlier do not properly create temporary directories, which allows local users to hi
Race condition in the ioctl implementation in the Samsung Graphics 2D driver (aka /dev/fimg2d) in Samsung devices with A
Race condition in the fsnotify implementation in the Linux kernel through 4.12.4 allows local users to gain privileges o
In all Qualcomm products with Android releases from CAF using the Linux kernel, in some memory allocation and free funct
In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition exists in a video drive
In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition exists in a video drive
In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition exists in an IOCTL hand
In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition exists in a driver pote
In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition in a USB driver can lea
Race condition in Apport before 2.17.2-0ubuntu1.1 as packaged in Ubuntu 15.04, before 2.14.70ubuntu8.5 as packaged in Ub
The driver_override implementation in drivers/base/platform.c in the Linux kernel before 4.12.1 allows local users to ga
In all Qualcomm products with Android releases from CAF using the Linux kernel, during the wlan calibration data store a
Frequently Asked Questions
What is CWE-362?
CWE-362 (CWE-362) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-362?
There are 2,933 CVE records associated with CWE-362 in our database. Of these, 50 are critical severity, 1207 are high severity, and 833 are medium severity.
How can I protect against CWE-362 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-362 using AI-powered security agents.
Detect CWE-362 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-362 vulnerabilities across your infrastructure.
Get Started