CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition
Description
The product checks the state of a resource before using that resource, but the resource's state can change between the check and the use in a way that invalidates the results of the check.
Hierarchy (View 1000)
Related attack patterns (CAPEC)
CAPEC-27 · CAPEC-29
CVEs mapped to this weakness (741)
page 7 of 38| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-43067 | Hig | 0.51 | 7.8 | 0.00 | Apr 7, 2025 | Memory corruption occurs during the copying of read data from the EEPROM because the IO configuration is exposed as shared memory. | ||
| CVE-2025-21958 | Hig | 0.51 | 7.8 | 0.00 | Apr 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: Revert "openvswitch: switch to per-action label counting in conntrack" Currently, ovs_ct_set_labels() is only called for confirmed conntrack entries (ct) within ovs_ct_commit(). However, if the conntrack entry… | ||
| CVE-2024-53032 | Hig | 0.51 | 7.8 | 0.00 | Mar 3, 2025 | Memory corruption may occur in keyboard virtual device due to guest VM interaction. | ||
| CVE-2024-53028 | Hig | 0.51 | 7.8 | 0.00 | Mar 3, 2025 | Memory corruption may occur while processing message from frontend during allocation. | ||
| CVE-2024-48394 | Hig | 0.51 | 7.8 | 0.00 | Feb 5, 2025 | A Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in the driver of the NDD Print solution, which could allow an unprivileged user to exploit this flaw and gain SYSTEM-level access on the device. The vulnerability affects version 5.24.3 and before of the… | ||
| CVE-2024-45560 | Hig | 0.51 | 7.8 | 0.00 | Feb 3, 2025 | Memory corruption while taking a snapshot with hardware encoder due to unvalidated userspace buffer. | ||
| CVE-2024-38418 | Hig | 0.51 | 7.8 | 0.00 | Feb 3, 2025 | Memory corruption while parsing the memory map info in IOCTL calls. | ||
| CVE-2024-53289 | Hig | 0.51 | 7.8 | 0.00 | Dec 11, 2024 | Dell ThinOS version 2408 contains a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges. | ||
| CVE-2024-49046 | Hig | 0.51 | 7.8 | 0.00 | Nov 12, 2024 | Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability | ||
| CVE-2024-43452 | Hig | 0.51 | 7.5 | 0.24 | Nov 12, 2024 | Windows Registry Elevation of Privilege Vulnerability | ||
| CVE-2024-38407 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2024 | Memory corruption while processing input parameters for any IOCTL call in the JPEG Encoder driver. | ||
| CVE-2024-38406 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2024 | Memory corruption while handling IOCTL calls in JPEG Encoder driver. | ||
| CVE-2024-43882 | Hig | 0.51 | 7.8 | 0.00 | Aug 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: exec: Fix ToCToU between perm check and set-uid/gid usage When opening a file for exec via do_filp_open(), permission checking is done against the file's metadata at that moment, and on success, a file pointer… | ||
| CVE-2024-38186 | Hig | 0.51 | 7.8 | 0.01 | Aug 13, 2024 | Windows Kernel-Mode Driver Elevation of Privilege Vulnerability | ||
| CVE-2024-38153 | Hig | 0.51 | 7.8 | 0.01 | Aug 13, 2024 | Windows Kernel Elevation of Privilege Vulnerability | ||
| CVE-2022-27540 | Hig | 0.51 | 7.8 | 0.00 | Jun 28, 2024 | A potential Time-of-Check to Time-of Use (TOCTOU) vulnerability has been identified in the HP BIOS for certain HP PC products, which might allow arbitrary code execution, denial of service, and information disclosure. HP is releasing BIOS updates to mitigate the potential… | ||
| CVE-2024-36304 | Hig | 0.51 | 7.8 | 0.00 | Jun 10, 2024 | A Time-of-Check Time-Of-Use vulnerability in the Trend Micro Apex One and Apex One as a Service agent could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the… | ||
| CVE-2021-3899 | Hig | 0.51 | 7.8 | 0.00 | Jun 3, 2024 | There is a race condition in the 'replaced executable' detection that, with the correct local configuration, allow an attacker to execute arbitrary code as root. | ||
| CVE-2024-28137 | Hig | 0.51 | 7.8 | 0.00 | May 14, 2024 | A local attacker with low privileges can perform a privilege escalation with an init script due to a TOCTOU vulnerability. | ||
| CVE-2023-27323 | Hig | 0.51 | 7.8 | 0.00 | May 3, 2024 | Parallels Desktop Updater Time-Of-Check Time-Of-Use Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop. An attacker must first obtain the ability to execute low-privileged code… |
- risk 0.51cvss 7.8epss 0.00
Memory corruption occurs during the copying of read data from the EEPROM because the IO configuration is exposed as shared memory.
- risk 0.51cvss 7.8epss 0.00
In the Linux kernel, the following vulnerability has been resolved: Revert "openvswitch: switch to per-action label counting in conntrack" Currently, ovs_ct_set_labels() is only called for confirmed conntrack entries (ct) within ovs_ct_commit(). However, if the conntrack entry…
- risk 0.51cvss 7.8epss 0.00
Memory corruption may occur in keyboard virtual device due to guest VM interaction.
- risk 0.51cvss 7.8epss 0.00
Memory corruption may occur while processing message from frontend during allocation.
- risk 0.51cvss 7.8epss 0.00
A Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in the driver of the NDD Print solution, which could allow an unprivileged user to exploit this flaw and gain SYSTEM-level access on the device. The vulnerability affects version 5.24.3 and before of the…
- risk 0.51cvss 7.8epss 0.00
Memory corruption while taking a snapshot with hardware encoder due to unvalidated userspace buffer.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while parsing the memory map info in IOCTL calls.
- risk 0.51cvss 7.8epss 0.00
Dell ThinOS version 2408 contains a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.
- risk 0.51cvss 7.8epss 0.00
Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability
- risk 0.51cvss 7.5epss 0.24
Windows Registry Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing input parameters for any IOCTL call in the JPEG Encoder driver.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while handling IOCTL calls in JPEG Encoder driver.
- risk 0.51cvss 7.8epss 0.00
In the Linux kernel, the following vulnerability has been resolved: exec: Fix ToCToU between perm check and set-uid/gid usage When opening a file for exec via do_filp_open(), permission checking is done against the file's metadata at that moment, and on success, a file pointer…
- risk 0.51cvss 7.8epss 0.01
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Kernel Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.00
A potential Time-of-Check to Time-of Use (TOCTOU) vulnerability has been identified in the HP BIOS for certain HP PC products, which might allow arbitrary code execution, denial of service, and information disclosure. HP is releasing BIOS updates to mitigate the potential…
- risk 0.51cvss 7.8epss 0.00
A Time-of-Check Time-Of-Use vulnerability in the Trend Micro Apex One and Apex One as a Service agent could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the…
- risk 0.51cvss 7.8epss 0.00
There is a race condition in the 'replaced executable' detection that, with the correct local configuration, allow an attacker to execute arbitrary code as root.
- risk 0.51cvss 7.8epss 0.00
A local attacker with low privileges can perform a privilege escalation with an init script due to a TOCTOU vulnerability.
- risk 0.51cvss 7.8epss 0.00
Parallels Desktop Updater Time-Of-Check Time-Of-Use Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop. An attacker must first obtain the ability to execute low-privileged code…