CWE-122

High likelihood

Heap-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

2,311 vulnerabilities with CWE-122
CVE-2026-41981 MEDIUM
Huawei HarmonyOS - Heap-based Buffer Overflow
CVSS 5.3
CVE-2026-42536 HIGH
Apache HTTP Server: mod_xml2enc heap overflow
CVSS 7.5
CVE-2026-34356 HIGH
Apache HTTP Server: ProxyPassReverseCookieMap buffer overflow
CVSS 7.5
CVE-2026-34355 HIGH
Apache HTTP Server: mod_proxy_html buffer overflow
CVSS 7.5
CVE-2026-22164 HIGH
Imagination Technologies Graphics DDK - GPU DDK - Kernel Heap OOB Write in DevmemIntComputeVirtualIndicesFromLogical
CVSS 7.5
CVE-2026-11143 MEDIUM
Google Chrome - Heap-based Buffer Overflow
CVSS 6.5
CVE-2026-11124 HIGH
Google Chrome - Heap-based Buffer Overflow
CVSS 8.8
CVE-2026-10995 HIGH
Google Chrome - Heap-based Buffer Overflow
CVSS 8.8
CVE-2026-10993 MEDIUM
Google Chrome - Heap-based Buffer Overflow
CVSS 6.5
CVE-2026-10989 HIGH
Google Chrome < 149.0.7827.53 - Heap Corruption via Crafted HTML Page
CVSS 8.8
CVE-2026-10949 HIGH
Google Chrome - Heap-based Buffer Overflow
CVSS 8.3
CVE-2026-10946 HIGH
Google Chrome - Heap-based Buffer Overflow
CVSS 7.5
CVE-2026-10929 HIGH
Google Chrome - Heap-based Buffer Overflow
CVSS 8.3
CVE-2026-0100 HIGH
Google Android - Heap-based Buffer Overflow
CVSS 7.8
CVE-2026-0059 HIGH
Google Android - Heap-based Buffer Overflow
CVSS 8.0
CVE-2026-10231 MEDIUM
Assimp Half-Life 1 MDL Loader HL1MDLLoader.cpp extract_anim_value heap-based overflow
CVSS 5.3
CVE-2026-10230 MEDIUM
Assimp Half-Life 1 MDL Loader HL1MDLLoader.cpp read_animations heap-based overflow
CVSS 5.3
CVE-2026-10229 MEDIUM
Assimp Half-Life 1 MDL Loader HL1MDLLoader.cpp read_meshes heap-based overflow
CVSS 5.3
CVE-2026-20452 HIGH
MediaTek Chipset - Heap-based Buffer Overflow
CVSS 8.0
CVE-2026-10200 MEDIUM
Assimp 4x4 Matrix glTFCommon.h CopyValue heap-based overflow
CVSS 5.3
CVE-2026-10194 MEDIUM
OFFIS DCMTK dcmqrscp dcmqrdbi.cc deleteOldestImages heap-based overflow
CVSS 6.3
CVE-2026-44421 HIGH
FreeRDP RDPGFX CacheToSurface heap-buffer-overflow via clamped-rectangle validation bypass
CVSS 8.8
CVE-2026-44420 HIGH
FreeRDP cliprdr server heap-buffer-overflow via undersized capabilitySetLength in CB_CLIP_CAPS
CVSS 8.8
CVE-2026-40528 LOW
OpenSC < 0.27.0 Buffer Overrun in do_key_value() via profile.c
CVSS 3.8
CVE-2026-9940 HIGH
Google Chrome - Heap-based Buffer Overflow
CVSS 8.8
Details
Vulnerabilities 2,311
Exploit Likelihood High