CWE-122

High likelihood

Heap-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

2,323 vulnerabilities with CWE-122
CVE-2025-20712 HIGH
MediaTek Software Development Kit < 8.3.1.1 - Heap-based Buffer Overflow in WLAN AP Driver
CVSS 8.8
CVE-2025-11495 LOW
GNU Binutils 2.45 - Heap-Based Buffer Overflow in elf_x86_64_relocate_section
CVSS 3.3
CVE-2025-43912 MEDIUM
Dell PowerProtect Data Domain Unauthenticated Heap-based Buffer Overflow
CVSS 5.3
CVE-2025-11277 MEDIUM
Open Asset Import Library Assimp 6.0.2 - Buffer Overflow
CVSS 5.3
CVE-2025-11275 MEDIUM
Open Asset Import Library Assimp 6.0.2 - Buffer Overflow
CVSS 5.3
CVE-2025-10504 MEDIUM
ABB Terra AC <1.8.33 - Buffer Overflow
CVSS 6.1
CVE-2025-11083 MEDIUM
GNU Binutils <2.45 - Buffer Overflow
CVSS 5.3
CVE-2025-11082 MEDIUM
GNU Binutils <2.45 - Buffer Overflow
CVSS 5.3
CVE-2025-59938 MEDIUM
Wazuh 3.8.0-4.10.9 - Heap-based Buffer Overflow in wazuh-analysisd XML Parser
CVSS 6.5
CVE-2025-11014 MEDIUM
OGRECave Ogre <14.4.1 - Buffer Overflow
CVSS 5.3
CVE-2025-11010 MEDIUM
vstakhov libucl <0.9.2 - Buffer Overflow
CVSS 5.3
CVE-2025-10997 MEDIUM
Open Babel <3.1.1 - Buffer Overflow
CVSS 5.3
CVE-2025-10996 MEDIUM
Open Babel <3.1.1 - Buffer Overflow
CVSS 5.3
CVE-2025-20363 CRITICAL
Cisco IOS XR - Remote Code Execution via HTTP Request Input Validation
CVSS 9.0
CVE-2025-10502 HIGH
Google Chrome < 140.0.7339.185 - Heap-based Buffer Overflow in ANGLE
CVSS 8.8
CVE-2025-23308 LOW
NVIDIA CUDA Toolkit < 13.0.0 - Heap-based Buffer Overflow via Malicious ELF File
CVSS 3.3
CVE-2025-57638 HIGH
Tenda AC9 1.0 - Heap-based Buffer Overflow via sys.vendor Configuration
CVSS 7.5
CVE-2025-57637 HIGH
D-Link DI-7100G 2020-02-21 - Heap-based Buffer Overflow via jhttpd viav4 Parameter
CVSS 7.5
CVE-2025-51005 HIGH
tcpreplay 4.5.1 - Heap-based Buffer Overflow in Checksum Calculation Logic
CVSS 7.5
CVE-2025-56394 HIGH
free5gc 4.0.1 - Heap-based Buffer Overflow in AMF 5GS Mobile Identity Validation
CVSS 7.5
CVE-2025-7983 HIGH
Ashlar-Vellum Graphite - Heap-based Buffer Overflow in VC6 File Parser
CVSS 7.8
CVE-2025-8894 HIGH
Autodesk AutoCAD Plant 3D < 2024.1.8 - Heap-Based Buffer Overflow via Malicious PDF Parsing
CVSS 7.8
CVE-2025-55118 HIGH
Control-M/Agent <9.0.20,9.0.21,9.0.22 - Memory Corruption
CVSS 8.9
CVE-2025-58447 CRITICAL
rAthena <commit 2f5248b - Buffer Overflow
CVSS 9.8
CVE-2025-54244 HIGH
Substance3D Viewer < 0.25.2 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
Details
Vulnerabilities 2,323
Exploit Likelihood High