CWE-667: CWE-667
Yearly Trend
Top Affected Vendors
All CWE-667 CVEs (194)
CVE-2020-12658 is a critical vulnerability in gssproxy (GSS-API proxy daemon) where improper mutex handling during shutdown can cause denial of servic...
Dec 31, 2020This vulnerability allows non-secure boot loaders to unlock and modify memory regions that should remain locked, making them untrusted sources for sec...
May 7, 2021CVE-2021-22530 is an authentication bypass vulnerability in NetIQ Advanced Authentication that allows unlimited login attempts without account lockout...
Aug 28, 2024A race condition vulnerability in the Linux kernel's ksmbd (SMB server) component allows attackers to potentially cause denial of service or gain unau...
Mar 12, 2025This CVE describes a race condition and potential buffer overflow vulnerability in the Linux kernel's parisc architecture firmware interface. It could...
Oct 7, 2025A race condition vulnerability in the Linux kernel's SC16IS7xx serial driver allows data corruption between serial channels. When packets are received...
Sep 4, 2024This CVE-2024-38664 is a race condition vulnerability in the Linux kernel's ZynqMP DisplayPort subsystem driver where a mutex lock is accessed before ...
Jun 24, 2024A race condition in the Linux kernel's USB subsystem can cause a deadlock when deauthorizing USB interfaces. This vulnerability allows local attackers...
May 1, 2024A race condition vulnerability in the Linux kernel's NFC LLCP subsystem allows local attackers to corrupt the device list by modifying it without prop...
Mar 2, 2024CVE-2023-3781 is a use-after-free vulnerability in Android's Pixel firmware that allows local privilege escalation without user interaction. Attackers...
Oct 11, 2023This CVE describes a use-after-free vulnerability in Android's MediaCodec component due to improper locking. It allows local attackers to escalate pri...
Mar 24, 2023This vulnerability allows local attackers to gain elevated privileges on Android devices through an out-of-bounds write in the USB gadget driver. It a...
Dec 15, 2021This vulnerability in Android's memory management driver allows local attackers to escalate privileges without user interaction by exploiting improper...
Jun 21, 2021An improper locking vulnerability in Juniper SRX Series GTP plugin allows unauthenticated attackers to cause denial-of-service by sending malformed GT...
Jan 15, 2026This CVE describes a mutual exclusion management vulnerability in a kernel module that could allow attackers to cause denial-of-service conditions. Th...
Oct 11, 2023This vulnerability allows remote unauthenticated attackers to cause denial of service (DoS) conditions in Mitsubishi Electric PLCs and industrial cont...
Jun 15, 2022An improper locking vulnerability in the SIP ALG of Juniper Networks Junos OS on MX and SRX Series devices allows unauthenticated attackers to crash t...
Jan 19, 2022This vulnerability allows an attacker to bypass Android's lock task mode (kiosk mode) due to a logic error in the LockTaskController. An attacker coul...
Jun 28, 2023CVE-2021-1782 is a race condition vulnerability in Apple operating systems that allows malicious applications to elevate privileges. This affects macO...
Apr 2, 2021This vulnerability allows an attacker with physical access to interact with the browser from the Android lockscreen due to improper locking in the tel...
Dec 8, 2025This CVE describes a deadlock vulnerability in the Xen hypervisor's VGA memory access acceleration code for HVM guests. When emulating certain instruc...
Dec 19, 2024This vulnerability causes hardware systems with a High-Speed Bridge (HSB) to lock up under specific undisclosed traffic conditions combined with exter...
Oct 15, 2025A vulnerability in Cisco's Snort 3 Detection Engine allows unauthenticated remote attackers to trigger a restart of the engine by sending specially cr...
Mar 4, 2026A race condition in the Linux kernel's sched_ext scheduler can cause a deadlock in PREEMPT_RT (real-time) kernels. This vulnerability affects systems ...
Dec 22, 2025This CVE addresses a potential deadlock vulnerability in the Linux kernel's Radeon graphics driver. When checking if a fence is signaled, the driver c...
Dec 16, 2025A race condition in the Linux kernel's md (multiple device) driver can cause a soft lockup when displaying RAID resync progress. The vulnerability all...
Oct 7, 2025This CVE describes an ABBA deadlock vulnerability in the Linux kernel's device-mapper thin provisioning subsystem. When specific concurrent operations...
Oct 7, 2025A denial-of-service vulnerability in the Linux kernel's SCTP implementation where freeing stream priorities could trigger a nested loop (up to 65535×...
Oct 4, 2025This CVE describes an ABBA deadlock vulnerability in the Linux kernel's mlx5e network driver. The deadlock occurs when creating peer flows while holdi...
Oct 4, 2025A denial-of-service vulnerability in the Linux kernel's netfilter ipset subsystem allows attackers to cause soft lockups when adding or deleting large...
Oct 4, 2025This CVE describes a race condition vulnerability in the Linux kernel's V4L2 memory-to-memory framework where concurrent access to the num_rdy paramet...
Oct 1, 2025A race condition in the Linux kernel's network PHY subsystem could cause a deadlock when certain network events occur concurrently. This affects syste...
Oct 1, 2025A Linux kernel memory allocation vulnerability where kasan_populate_vmalloc() ignores the caller's gfp_mask flags, potentially causing deadlocks when ...
Oct 1, 2025This CVE describes a recursive semaphore deadlock vulnerability in the OCFS2 filesystem implementation in the Linux kernel. When performing a FIEMAP i...
Sep 23, 2025A race condition in the Linux kernel's padata subsystem can cause a deadlock when processing parallel tasks with bottom halves (BHs) enabled. This vul...
Sep 18, 2025A race condition in the Linux kernel's Btrfs filesystem causes a deadlock when transaction abort occurs during block group relocation with scrub pause...
Sep 17, 2025This CVE involves a race condition in the Linux kernel's Qualcomm LPG LED driver where the brightness_set() callback function can sleep in atomic cont...
Sep 17, 2025This CVE describes a lockdep assertion warning in the Linux kernel's mlx5 network driver when handling sync reset unload events during devlink reload ...
Sep 16, 2025This CVE describes a kernel locking issue in the rtl8723bs Wi-Fi driver that can cause a kernel oops (crash) when handling join timeout events. The vu...
Sep 16, 2025A denial-of-service vulnerability in the Linux kernel's RAID10 implementation allows unprivileged local users to trigger a soft lockup by writing larg...
Sep 15, 2025A Linux kernel vulnerability in the jbd2 journaling subsystem can cause softlockups (system hangs) when processing filesystem operations. This affects...
Sep 11, 2025A Linux kernel vulnerability in the bridge networking module allows a local attacker to cause a denial of service (soft lockup) by setting multicast q...
Sep 11, 2025This CVE describes a lockdep warning in the Linux kernel's bnxt_en driver that occurs during module removal (rmmod). The vulnerability doesn't allow r...
Sep 11, 2025This CVE describes a deadlock vulnerability in the Linux kernel's kmemleak memory leak detector. When netpoll is enabled, a specific code path can cau...
Sep 11, 2025A deadlock vulnerability in the Linux kernel's mt9m114 camera sensor driver causes system hangs when frame interval operations are performed. This aff...
Sep 5, 2025A race condition in the Linux kernel's hibmcge network driver causes a deadlock when PCI bus reset operations occur, potentially leading to system ins...
Sep 4, 2025A deadlock vulnerability exists in the Linux kernel's SMB server implementation when handling file linking operations with ReplaceIfExists flag. This ...
Sep 4, 2025A race condition vulnerability in the Linux kernel's HFS+ filesystem implementation where concurrent file operations can trigger a false warning about...
Aug 22, 2025A race condition vulnerability in the Linux kernel's WiFi subsystem where cfg80211_propagate_cac_done_wk worker fails to acquire the required wiphy mu...
Aug 22, 2025A Linux kernel vulnerability in the netem network emulation qdisc allows a denial-of-service condition when duplicating netems exist in the same qdisc...
Aug 19, 2025About CWE-667 (CWE-667)
Our database tracks 194 CVEs classified as CWE-667, with 1 rated critical and 18 rated high severity. The average CVSS score for CWE-667 vulnerabilities is 5.7.
External reference: View CWE-667 on MITRE CWE →
Monitor CWE-667 Vulnerabilities
Get alerted when new CWE-667 CVEs affect your infrastructure.
Start Monitoring Free