In mon_smc_load_sp of gs101-sc/plat/samsung/exynos/soc/exynos9845/smc_booting.S, there is a possible reinitialization of
gssproxy (aka gss-proxy) before 0.8.3 does not unlock cond_mutex before pthread exit in gp_worker_main() in gp_workers.c
In the Media extractor, there is a possible use after free due to improper locking. This could lead to remote code execu
Mozilla developers reported memory safety bugs present in Firefox 80. Some of these bugs showed evidence of memory corru
Squid before 4.13 and 5.x before 5.0.4 allows a trusted peer to perform Denial of Service by consuming all available CPU
Double free issue in NPU due to lack of resource locking mechanism to avoid race condition in Snapdragon Auto, Snapdrago
An issue was discovered in GOG Galaxy Client 2.0.17. Local escalation of privileges is possible when a user installs a g
In reset of NuPlayerDriver.cpp, there is a possible use-after-free due to improper locking. This could lead to local esc
In clearPropValue of MediaAnalyticsItem.cpp, there is a possible use-after-free due to improper locking. This could lead
In blk_mq_queue_tag_busy_iter of blk-mq-tag.c, there is a possible use after free due to improper locking. This could le
In SurfaceFlinger, there is a possible use-after-free due to improper locking. This could lead to local escalation of pr
In setUpdatableDriverPath of GpuService.cpp, there is a possible memory corruption due to a missing permission check. Th
In binder_release_work of binder.c, there is a possible use-after-free due to improper locking. This could lead to local
A memory corruption vulnerability was addressed with improved locking. This issue is fixed in macOS Catalina 10.15.1, Se
A locking issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_jobctrl.c allows
An issue was discovered in Janus through 0.9.1. janus_audiobridge.c has a double mutex unlock when listing private rooms
An issue was discovered in Gitea through 1.11.5. An attacker can trigger a deadlock by initiating a transfer of a reposi
u'While processing invalid connection request PDU which is nonstandard (interval or timeout is 0) from central device ma
The fix for CVE-2019-11599, affecting the Linux kernel before 5.0.10 was not complete. A local user could use this flaw
This issue was addressed with improved checks. This issue is fixed in iOS 14.0 and iPadOS 14.0, watchOS 7.0. The screen
In xfrm6_tunnel_free_spi of net/ipv6/xfrm6_tunnel.c, there is a possible use after free due to improper locking. This co
An issue was discovered in the Linux kernel through 5.6.11. btree_gc_coalesce in drivers/md/bcache/btree.c has a deadloc
In priorLinearAllocation of C2AllocatorIon.cpp, there is a possible use-after-free due to improper locking. This could l
A locking inconsistency issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_io
A lock was missing when accessing a data structure and importing certificate information into the trust database. This v
A lock screen issue allowed access to messages on a locked device. This issue was addressed with improved state manageme
An issue was discovered in ShopXO 1.2.0. In the application\install\controller\Index.php file, there is no validation lo
Race condition between the camera functions due to lack of resource lock which will lead to memory corruption and UAF is
In tearDownClientInterface of WificondControl.java, there is a possible use after free due to improper locking. This cou
In binder_thread_read of binder.c, there is a possible use-after-free due to improper locking. This could lead to local
In SensorManager::assertStateLocked of SensorManager.cpp in Android 7.1.1, 7.1.2, 8.0, 8.1, and 9, there is a possible u
The fix for CVE-2019-0199 was incomplete and did not address HTTP/2 connection window exhaustion on write in Apache Tomc
An issue was discovered in OpenWrt libuci (aka Library for the Unified Configuration Interface) before 15.05.1 as used o
HP has identified a security vulnerability with some versions of Workstation BIOS (UEFI Firmware) where the runtime BIOS
The coredump implementation in the Linux kernel before 5.0.10 does not use locking or other mechanisms to prevent vma la
HP has identified a security vulnerability with some versions of Workstation BIOS (UEFI Firmware) where the runtime BIOS
An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service or gain privil
A vulnerability in the logic that handles access control to one of the hardware components in Cisco's proprietary Secure
In the Android kernel in the synaptics_dsx_htc touchscreen driver there is a possible use after free due to improper loc
In the Android kernel in the mnh driver there is a use after free due to improper locking. This could lead to escalation
In the Android kernel in the FingerTipS touchscreen driver there is a possible use-after-free due to improper locking. T
A vulnerability in the Remote Package Manager (RPM) subsystem of Cisco NX-OS Software could allow an authenticated, loca
In multiple functions of key_store_service.cpp, there is a possible Information Disclosure due to improper locking. This
In the Linux kernel before 4.16.4, a double-locking error in drivers/usb/dwc3/gadget.c may potentially cause a deadlock
In libstagefright, there is a possible use-after-free due to improper locking. This could lead to local escalation of pr
A race condition in perf_event_open() allows local attackers to leak sensitive data from setuid programs. As no relevant
In Lenovo systems, SMM BIOS Write Protection is used to prevent writes to SPI Flash. While this provides sufficient prot
Insufficient policy enforcement in downloads in Google Chrome on Windows prior to 79.0.3945.79 allowed a local attacker
A vulnerability in the ingress flow creation functionality of Cisco Adaptive Security Appliance (ASA) could allow an una
memcached version prior to 1.4.37 contains an Integer Overflow vulnerability in items.c:item_free() that can result in d
Frequently Asked Questions
What is CWE-667?
CWE-667 (CWE-667) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-667?
There are 851 CVE records associated with CWE-667 in our database. Of these, 7 are critical severity, 173 are high severity, and 509 are medium severity.
How can I protect against CWE-667 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-667 using AI-powered security agents.
Detect CWE-667 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-667 vulnerabilities across your infrastructure.
Get Started