CWE-122

High likelihood

Heap-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

2,559 vulnerabilities with CWE-122
CVE-2026-34150 HIGH
Wazuh: Heap buffer overflow in wazuh-analysisd via rootcheck event parsing
CVSS 7.5
CVE-2026-15449 MEDIUM
TOCTOU double copyin in illumos dld ioctl handling causes kernel heap corruption
CVE-2026-15422 CRITICAL
SCTP needs to better-check INIT ACK chunk parameters
CVE-2026-50012 MEDIUM
Squid: Memory corruption in cache_digest reply handling
CVSS 5.5
CVE-2026-38755 LOW
BusyBox 1.38.0 - Denial of Service via Heap Overflow in evalcommand Function
CVSS 2.9
CVE-2026-38754 MEDIUM
Busybox 1.38.0 - Denial of Service via Heap Overflow in ifsbreakup Function
CVSS 5.1
CVE-2026-42533 HIGH
F5 NGINX Plus - NGINX Map Directive and Regex Matching Vulnerability
CVSS 8.1
CVE-2026-61464 LOW
ImageMagick before 7.1.2-26 Heap Buffer Over-Write via X11
CVSS 1.8
CVE-2026-48339 HIGH
Adobe Bridge < 16.0.3 - Buffer Overflow
CVSS 7.8
CVE-2026-48269 HIGH
Premiere Pro | Heap-based Buffer Overflow (CWE-122)
CVSS 7.8
CVE-2026-47471 HIGH
Nvidia TensorRT-LLM < v1.3.0 rc16 - Heap-based Buffer Overflow
CVSS 7.5
CVE-2026-24272 HIGH
Nvidia TensorRT < v1.3.0 rc14 - Heap-based Buffer Overflow
CVSS 7.8
CVE-2026-24268 HIGH
Nvidia TensorRT < v1.3.0 rc14 - Heap-based Buffer Overflow
CVSS 7.8
CVE-2026-15767 HIGH
Google Chrome - Heap-based Buffer Overflow
CVSS 8.8
CVE-2026-58547 MEDIUM
Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege Vulnerability
CVSS 5.5
CVE-2026-58542 HIGH
Microsoft Windows 11 Version 24H2 - Windows Media Remote Code Execution Vulnerability
CVSS 7.8
CVE-2026-58538 HIGH
Microsoft Windows 10 Version 1809 - Windows Bluetooth Service Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-58534 HIGH
Windows Input Method Editor (IME) Elevation of Privilege Vulnerability
CVSS 8.8
CVE-2026-58530 HIGH
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
CVSS 7.8
CVE-2026-57096 HIGH
Windows Routing and Remote Access Service (RRAS) Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-57094 HIGH
Microsoft Windows Media Foundation Remote Code Execution Vulnerability
CVSS 8.8
CVE-2026-57090 HIGH
Microsoft Windows Media Foundation Remote Code Execution Vulnerability
CVSS 8.8
CVE-2026-57087 HIGH
Microsoft Windows Media Foundation Remote Code Execution Vulnerability
CVSS 8.8
CVE-2026-56650 HIGH
Microsoft Windows 10 Version 1607 - Windows Network File System Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-56194 HIGH
Microsoft Windows 10 Version 1607 - Windows NFS Server Elevation of Privilege Vulnerability
CVSS 8.8
Details
Vulnerabilities 2,559
Exploit Likelihood High