CWE-362: CWE-362

466
Total CVEs
6
Critical
254
High
6.4
Avg CVSS
1
In CISA KEV

Yearly Trend

2026
56
2025
214
2024
96
2023
25
2022
23

Top Affected Vendors

1 Linux 173
2 Microsoft 80
3 Google 40
4 Debian 32
5 Huawei 28
6 Apple 28
7 Fedoraproject 13
8 Netapp 11
9 Mozilla 9
10 Xen 8

All CWE-362 CVEs (466)

CVE-2025-36916
7.0

This CVE describes a race condition vulnerability in Android's graphics subsystem that allows local privilege escalation without user interaction. Att...

Dec 11, 2025
CVE-2025-62573
7.0

A use-after-free vulnerability in Windows DirectX allows authenticated attackers to execute arbitrary code with elevated privileges on affected system...

Dec 9, 2025
CVE-2025-48625
7.0

This vulnerability allows local attackers to access USB data when the device screen is off due to a race condition in Android's USB protection mechani...

Dec 8, 2025
CVE-2025-48564
7.0

This CVE describes an Android intent filter bypass vulnerability caused by a race condition in multiple framework components. It allows local privileg...

Dec 8, 2025
CVE-2025-62217
7.0

A race condition vulnerability in Windows Ancillary Function Driver for WinSock allows authenticated attackers to execute code with elevated privilege...

Nov 11, 2025
CVE-2025-62218
7.0

A race condition vulnerability in Microsoft Wireless Provisioning System allows authenticated attackers to gain elevated privileges on affected system...

Nov 11, 2025
CVE-2025-62219
7.0

A double-free vulnerability in Microsoft Wireless Provisioning System allows authenticated attackers to execute arbitrary code with elevated privilege...

Nov 11, 2025
CVE-2025-62215
KEV 7.0

This Windows Kernel race condition vulnerability allows authenticated local attackers to escalate privileges by exploiting improper synchronization of...

Nov 11, 2025
CVE-2025-59506
7.0

A race condition vulnerability in Windows DirectX allows authenticated attackers to gain elevated privileges on local systems. This affects Windows sy...

Nov 11, 2025
CVE-2025-59507
7.0

A race condition vulnerability in Windows Speech allows authenticated attackers to escalate privileges on local systems. This affects Windows systems ...

Nov 11, 2025
CVE-2025-59508
7.0

A race condition vulnerability in Windows Speech allows authenticated attackers to escalate privileges on local systems. This affects Windows systems ...

Nov 11, 2025
CVE-2025-59193
7.0

A race condition vulnerability in Windows Management Services allows authenticated attackers to execute code with elevated privileges on affected Wind...

Oct 14, 2025
CVE-2023-53622
7.0

This CVE describes a race condition vulnerability in the Linux kernel's GFS2 filesystem implementation. The gfs2_show_options() function accesses conf...

Oct 7, 2025
CVE-2025-39905
7.0

A race condition vulnerability in the Linux kernel's phylink networking subsystem allows concurrent modification of the phylink structure (pl->phydev)...

Oct 1, 2025
CVE-2025-59216
7.0

A race condition vulnerability in Microsoft Graphics Component allows authenticated attackers to escalate privileges on local systems. This affects Wi...

Sep 18, 2025
CVE-2022-50339
7.0

This is a race condition vulnerability in the Linux kernel's Bluetooth subsystem that can cause a kernel panic or system crash. It occurs when multipl...

Sep 16, 2025
CVE-2025-43304
7.0

A race condition vulnerability in macOS allows malicious applications to potentially gain root privileges by exploiting improper state handling. This ...

Sep 15, 2025
CVE-2025-39759
7.0

A race condition in the Linux kernel's Btrfs filesystem allows use-after-free of qgroup records when quota disable and quota rescan operations occur s...

Sep 11, 2025
CVE-2025-55223
7.0

This CVE describes a race condition vulnerability in the Graphics Kernel that allows an authorized attacker to execute code concurrently with improper...

Sep 9, 2025
CVE-2025-54114
7.0

A race condition vulnerability in Windows Connected Devices Platform Service allows authenticated attackers to escalate privileges locally. This affec...

Sep 9, 2025
CVE-2025-54108
7.0

A race condition vulnerability in the Capability Access Management Service (camsvc) allows an authorized attacker to execute concurrent operations wit...

Sep 9, 2025
CVE-2025-54105
7.0

A race condition vulnerability in Microsoft Brokering File System allows authenticated attackers to escalate privileges locally. This affects systems ...

Sep 9, 2025
CVE-2025-53807
7.0

A race condition vulnerability in Microsoft Graphics Component allows an authenticated attacker to execute code with elevated privileges on a local sy...

Sep 9, 2025
CVE-2025-22442
7.0

This vulnerability allows attackers to install unauthorized applications into newly created Android work profiles due to a race condition in DevicePol...

Sep 2, 2025
CVE-2025-50167
7.0

A race condition vulnerability in Windows Hyper-V allows authenticated attackers to escalate privileges on the local system. This affects systems runn...

Aug 12, 2025
CVE-2025-49762
7.0

A race condition vulnerability in Windows Ancillary Function Driver for WinSock allows authenticated attackers to escalate privileges locally. This af...

Aug 12, 2025
CVE-2025-47907
7.0

This vulnerability in Go's database/sql package allows race conditions when cancelling queries during parallel database operations. It can cause Scan(...

Aug 7, 2025
CVE-2025-49678
7.0

This vulnerability is a null pointer dereference in Windows NTFS that allows an authenticated attacker to execute arbitrary code with elevated privile...

Jul 8, 2025
CVE-2025-38108
7.0

A race condition in the Linux kernel's RED (Random Early Detection) queue discipline allows an attacker to cause an underflow of a parent queue's pack...

Jul 3, 2025
CVE-2022-50082
7.0

A race condition vulnerability in the Linux kernel's ext4 filesystem allows concurrent bmap and write operations to trigger a kernel warning or potent...

Jun 18, 2025
CVE-2022-50014
7.0

This Linux kernel vulnerability allows unprivileged users to bypass write permissions on tmpfs/shmem files, enabling unauthorized modification of file...

Jun 18, 2025
CVE-2022-49939
7.0

This is a use-after-free vulnerability in the Linux kernel's binder IPC subsystem that allows local attackers to potentially crash the system or execu...

Jun 18, 2025
CVE-2022-49919
7.0

This CVE describes a use-after-free vulnerability in the Linux kernel's netfilter nf_tables subsystem. Attackers with local access can potentially exp...

May 1, 2025
CVE-2025-27492
7.0

A race condition vulnerability in Windows Secure Channel allows authenticated attackers to elevate privileges locally. This affects Windows systems wh...

Apr 8, 2025
CVE-2025-26649
7.0

A race condition vulnerability in Windows Secure Channel allows authenticated attackers to escalate privileges on local systems. This affects Windows ...

Apr 8, 2025
CVE-2025-21718
7.0

This CVE-2025-21718 is a race condition vulnerability in the Linux kernel's ROSE protocol implementation where timers can access freed socket memory. ...

Feb 27, 2025
CVE-2018-9461
7.0

This vulnerability allows a malicious app to read files from the Android Messages app due to a race condition in ShareIntentActivity.java. It enables ...

Jan 18, 2025
CVE-2024-57876
7.0

This is a race condition vulnerability in the Linux kernel's DisplayPort Multi-Stream Transport (DP-MST) subsystem. When the MST topology is removed d...

Jan 11, 2025
CVE-2024-56635
7.0

A race condition vulnerability in the Linux kernel's network subsystem allows use-after-free (UAF) in default_operstate() function during device and n...

Dec 27, 2024
CVE-2024-56556
7.0

A race condition in the Linux kernel's binder subsystem allows use-after-free of binder nodes, potentially leading to kernel memory corruption. This a...

Dec 27, 2024
CVE-2024-53186
7.0

A race condition in the Linux kernel's ksmbd SMB server module leads to use-after-free vulnerability during SMB request handling. This allows attacker...

Dec 27, 2024
CVE-2024-49084
7.0

This Windows kernel vulnerability allows attackers with local access to elevate privileges from user mode to kernel mode. It affects Windows systems w...

Dec 12, 2024
CVE-2022-49001
7.0

This CVE describes a race condition vulnerability in the RISC-V Linux kernel's virtual memory stack overflow handling. When multiple processor cores (...

Oct 21, 2024
CVE-2024-49981
7.0

This CVE describes a use-after-free vulnerability in the Linux kernel's Venus media driver, where a race condition during device removal can cause the...

Oct 21, 2024
CVE-2024-47741
7.0

A race condition in the Linux kernel's Btrfs filesystem allows concurrent lseek operations on the same file descriptor to cause a memory leak and pote...

Oct 21, 2024
CVE-2024-34731
7.0

This CVE describes a race condition vulnerability in Android's TranscodingResourcePolicy.cpp that allows memory corruption. It enables local privilege...

Aug 15, 2024
CVE-2022-48858
7.0

A race condition vulnerability in the Linux kernel's mlx5 network driver allows use-after-free scenarios during command flush operations. This can lea...

Jul 16, 2024
CVE-2024-34724
7.0

This CVE describes a race condition vulnerability in the Android kernel's pmr.c component that allows local privilege escalation without user interact...

Jul 9, 2024
CVE-2022-48759
7.0

This CVE describes a use-after-free vulnerability in the Linux kernel's rpmsg character device driver. The race condition occurs when the rpmsg_ctrlde...

Jun 20, 2024
CVE-2022-48689
7.0

This CVE describes a race condition vulnerability in the Linux kernel's TCP zerocopy implementation where the kernel incorrectly checks pfmemalloc pag...

May 3, 2024

About CWE-362 (CWE-362)

Our database tracks 466 CVEs classified as CWE-362, with 6 rated critical and 254 rated high severity. The average CVSS score for CWE-362 vulnerabilities is 6.4.

External reference: View CWE-362 on MITRE CWE →

Monitor CWE-362 Vulnerabilities

Get alerted when new CWE-362 CVEs affect your infrastructure.

Start Monitoring Free