In the Linux kernel, the following vulnerability has been resolved: io_uring/rw: fix missing NOWAIT check for O_DIRECT
In the Linux kernel, the following vulnerability has been resolved: io_uring: add a schedule point in io_add_buffers()
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: RFCOMM: FIX possible deadlock in rfcomm_
A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within t
A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within t
In binder_vma_close of binder.c, there is a possible use after free due to improper locking. This could lead to local es
In multiple functions of looper_backed_event_loop.cpp, there is a possible way to corrupt memory due to improper locking
In MediaCodec.cpp, there is a possible use after free due to improper locking. This could lead to local escalation of pr
The specific flaw exists within the DPT I2O Controller driver. The issue results from the lack of proper locking when pe
In multiple functions of cdm_engine.cpp, there is a possible use-after-free due to improper locking. This could lead to
there is a possible use-after-free write due to improper locking. This could lead to local escalation of privilege with
A local non-privileged user can make improper GPU memory processing operations. If the operations are carefully prepared
Uniswap Universal Router before 1.1.0 mishandles reentrancy. This would have allowed theft of funds.
An Improper Locking vulnerability in the SIP ALG of Juniper Networks Junos OS on MX Series with MS-MPC or MS-MIC card an
Denial of service in Webconf in Tribe29 Checkmk Appliance before 1.6.5.
DietPi-Dashboard is a web dashboard for the operating system DietPi. The dashboard only allows for one TLS handshake to
Vulnerability of mutual exclusion management in the kernel module.Successful exploitation of this vulnerability will aff
In startLockTaskMode of LockTaskController.java, there is a possible bypass of lock task mode due to a logic error in th
Dell PowerEdge platforms 16G Intel E5 BIOS and Dell Precision BIOS, version 1.4.4, contain active debug code security v
In vcu, there is a possible memory corruption due to improper locking. This could lead to local escalation of privilege
In vcu, there is a possible memory corruption due to improper locking. This could lead to local escalation of privilege
In vcu, there is a possible use after free due to improper locking. This could lead to local escalation of privilege wit
In vcu, there is a possible use after free due to improper locking. This could lead to local escalation of privilege wit
In vcu, there is a possible out of bounds write due to improper locking. This could lead to local escalation of privileg
In vcu, there is a possible out of bounds write due to improper locking. This could lead to local escalation of privileg
In vcu, there is a possible out of bounds write due to improper locking. This could lead to local escalation of privileg
In multiple functions of io_uring.c, there is a possible kernel memory corruption due to improper locking. This could l
A race condition vulnerability was found in the vmwgfx driver in the Linux kernel. The flaw exists within the handling o
A flaw was found in libvirt. The virStoragePoolObjListSearch function does not return a locked pool as expected, resulti
A vulnerability was found due to missing lock for IOPOLL flaw in io_cqring_event_overflow() in io_uring.c in Linux Kerne
Cortex-A77 cores (r0p0 and r1p0) are affected by erratum 1508412 where software, under certain circumstances, could dead
Vyper is a Pythonic Smart Contract Language for the Ethereum Virtual Machine (EVM). Starting in version 0.2.9 and prior
A deadlock flaw was found in the Linux kernel’s BPF subsystem. This flaw allows a local user to potentially crash the sy
A denial of service problem was found, due to a possible recursive locking scenario, resulting in a deadlock in table_cl
Jean-Baptiste Cayrou discovered that the shiftfs file system in the Ubuntu Linux kernel contained a race condition when
Dell PowerEdge platforms 16G Intel E5 BIOS and Dell Precision BIOS, version 1.4.4, contain active debug code security v
Xpdf 4.04 will deadlock on a PDF object stream whose "Length" field is itself in another object stream.
In ion_ioctl of ion-ioctl.c, there is a possible use after free due to improper locking. This could lead to local escala
A memory corruption vulnerability was addressed with improved locking. This issue is fixed in macOS Monterey 12.5, macOS
In l2cap_chan_put of l2cap_core, there is a possible use after free due to improper locking. This could lead to local es
An Improper Locking vulnerability in the SIP ALG of Juniper Networks Junos OS on MX Series and SRX Series allows an unau
A Denial of Service vulnerability exists in CORTX-S3 Server as of 11/7/2021 via the mempool_destroy method due to a fail
Improper Resource Locking vulnerability in Mitsubishi Electric MELSEC iQ-R Series R12CCPU-V firmware versions "16" and p
If an X.509 certificate contains a malformed policy constraint and policy processing is enabled, then a write lock will
In ip_check_mc_rcu of igmp.c, there is a possible use after free due to improper locking. This could lead to local escal
A race condition was found in the Linux kernel's watch queue due to a missing lock in pipe_resize_ring(). The specific f
A race condition was found in the Linux kernel's IP framework for transforming packets (XFRM subsystem) when multiple ca
In emulation_proc_handler of armv8_deprecated.c, there is a possible way to corrupt memory due to a race condition. This
In vow driver, there is a possible memory corruption due to improper locking. This could lead to local escalation of pri
In rcu_cblist_dequeue of rcu_segcblist.c, there is a possible use-after-free due to improper locking. This could lead to
Frequently Asked Questions
What is CWE-667?
CWE-667 (CWE-667) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-667?
There are 851 CVE records associated with CWE-667 in our database. Of these, 7 are critical severity, 173 are high severity, and 509 are medium severity.
How can I protect against CWE-667 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-667 using AI-powered security agents.
Detect CWE-667 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-667 vulnerabilities across your infrastructure.
Get Started