VYPR

CWE-367

Time-of-check Time-of-use (TOCTOU) Race Condition

BaseIncompleteLikelihood: Medium

Description

The product checks the state of a resource before using that resource, but the resource's state can change between the check and the use in a way that invalidates the results of the check.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-27 · CAPEC-29

CVEs mapped to this weakness (741)

page 7 of 38
  • CVE-2024-43067HigApr 7, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption occurs during the copying of read data from the EEPROM because the IO configuration is exposed as shared memory.

  • CVE-2025-21958HigApr 1, 2025
    risk 0.51cvss 7.8epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: Revert "openvswitch: switch to per-action label counting in conntrack" Currently, ovs_ct_set_labels() is only called for confirmed conntrack entries (ct) within ovs_ct_commit(). However, if the conntrack entry…

  • CVE-2024-53032HigMar 3, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption may occur in keyboard virtual device due to guest VM interaction.

  • CVE-2024-53028HigMar 3, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption may occur while processing message from frontend during allocation.

  • CVE-2024-48394HigFeb 5, 2025
    risk 0.51cvss 7.8epss 0.00

    A Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in the driver of the NDD Print solution, which could allow an unprivileged user to exploit this flaw and gain SYSTEM-level access on the device. The vulnerability affects version 5.24.3 and before of the…

  • CVE-2024-45560HigFeb 3, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while taking a snapshot with hardware encoder due to unvalidated userspace buffer.

  • CVE-2024-38418HigFeb 3, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while parsing the memory map info in IOCTL calls.

  • CVE-2024-53289HigDec 11, 2024
    risk 0.51cvss 7.8epss 0.00

    Dell ThinOS version 2408 contains a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.

  • CVE-2024-49046HigNov 12, 2024
    risk 0.51cvss 7.8epss 0.00

    Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability

  • CVE-2024-43452HigNov 12, 2024
    risk 0.51cvss 7.5epss 0.24

    Windows Registry Elevation of Privilege Vulnerability

  • CVE-2024-38407HigNov 4, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing input parameters for any IOCTL call in the JPEG Encoder driver.

  • CVE-2024-38406HigNov 4, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while handling IOCTL calls in JPEG Encoder driver.

  • CVE-2024-43882HigAug 21, 2024
    risk 0.51cvss 7.8epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: exec: Fix ToCToU between perm check and set-uid/gid usage When opening a file for exec via do_filp_open(), permission checking is done against the file's metadata at that moment, and on success, a file pointer…

  • CVE-2024-38186HigAug 13, 2024
    risk 0.51cvss 7.8epss 0.01

    Windows Kernel-Mode Driver Elevation of Privilege Vulnerability

  • CVE-2024-38153HigAug 13, 2024
    risk 0.51cvss 7.8epss 0.01

    Windows Kernel Elevation of Privilege Vulnerability

  • CVE-2022-27540HigJun 28, 2024
    risk 0.51cvss 7.8epss 0.00

    A potential Time-of-Check to Time-of Use (TOCTOU) vulnerability has been identified in the HP BIOS for certain HP PC products, which might allow arbitrary code execution, denial of service, and information disclosure. HP is releasing BIOS updates to mitigate the potential…

  • CVE-2024-36304HigJun 10, 2024
    risk 0.51cvss 7.8epss 0.00

    A Time-of-Check Time-Of-Use vulnerability in the Trend Micro Apex One and Apex One as a Service agent could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the…

  • CVE-2021-3899HigJun 3, 2024
    risk 0.51cvss 7.8epss 0.00

    There is a race condition in the 'replaced executable' detection that, with the correct local configuration, allow an attacker to execute arbitrary code as root.

  • CVE-2024-28137HigMay 14, 2024
    risk 0.51cvss 7.8epss 0.00

    A local attacker with low privileges can perform a privilege escalation with an init script due to a TOCTOU vulnerability.

  • CVE-2023-27323HigMay 3, 2024
    risk 0.51cvss 7.8epss 0.00

    Parallels Desktop Updater Time-Of-Check Time-Of-Use Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop. An attacker must first obtain the ability to execute low-privileged code…