CWE-122

High likelihood

Heap-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

2,135 vulnerabilities with CWE-122
CVE-2025-44905 HIGH
Hdfgroup Hdf5 - Heap Buffer Overflow
CVSS 8.8
CVE-2025-44904 HIGH
Hdfgroup Hdf5 - Heap Buffer Overflow
CVSS 8.8
CVE-2025-48797 HIGH
GIMP - Heap Buffer Overflow
CVSS 7.3
CVE-2025-23123 CRITICAL
UniFi Protect Cameras <4.75.43 - RCE
CVSS 10.0
CVE-2025-40906 CRITICAL
BSON::XS <0.8.4 - Multiple Vulns
CVSS 9.8
CVE-2025-40907 MEDIUM
Fastcgi Fcgi < 0.82 - Integer Overflow
CVSS 5.3
CVE-2025-2900 HIGH
IBM Semeru Runtime <21.0.6.0 - DoS
CVSS 7.5
CVE-2025-47436 CRITICAL
Apache Orc < 1.8.9 - Heap Buffer Overflow
CVSS 9.8
CVE-2025-30330 HIGH
Illustrator <29.3,28.7.5 - Heap-based Buffer Overflow
CVSS 7.8
CVE-2025-30388 HIGH
Microsoft Windows Win32K - GRFX Heap-based Buffer Overflow
CVSS 7.8
CVE-2025-30376 HIGH
Microsoft Office Excel - Buffer Overflow
CVSS 7.8
CVE-2025-29979 HIGH
Microsoft Office Excel - Buffer Overflow
CVSS 7.8
CVE-2025-29967 HIGH
Microsoft Windows Remote Desktop Gateway Service - Heap-based Buffer Overflow
CVSS 8.8
CVE-2025-29966 HIGH
Windows Remote Desktop - Buffer Overflow
CVSS 8.8
CVE-2025-29964 HIGH
Microsoft Windows Media - Heap-based Buffer Overflow
CVSS 8.8
CVE-2025-29963 HIGH
Microsoft Windows Media - Heap-based Buffer Overflow
CVSS 8.8
CVE-2025-29962 HIGH
Microsoft Windows Media - Heap-based Buffer Overflow
CVSS 8.8
CVE-2025-24063 HIGH
Microsoft Windows 10 1507 < 10.0.10240.21014 - Out-of-Bounds Write
CVSS 7.8
CVE-2025-47815 MEDIUM
GNU Pspp < 2.0.1 - Out-of-Bounds Write
CVSS 4.5
CVE-2025-47814 MEDIUM
GNU Pspp < 2.0.1 - Out-of-Bounds Write
CVSS 4.5
CVE-2025-3713 HIGH
LCD KVM over IP Switch <2.2.215 - Buffer Overflow
CVSS 7.5
CVE-2025-3712 HIGH
LCD KVM over IP Switch <2.2.215 - Buffer Overflow
CVSS 7.5
CVE-2025-1252 HIGH
RTI Connext Professional - Buffer Overflow
CVSS 7.1
CVE-2025-31177 MEDIUM
Gnuplot - Heap Buffer Overflow
CVSS 5.5
CVE-2025-32401 MEDIUM
Rt-labs P-net < 1.0.2 - Out-of-Bounds Write
CVSS 4.8
Details
Vulnerabilities 2,135
Exploit Likelihood High