CWE-122

High likelihood

Heap-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

2,135 vulnerabilities with CWE-122
CVE-2025-21256 MEDIUM
Microsoft Windows 10 1507 < 10.0.10240.20890 - Heap Buffer Overflow
CVSS 6.6
CVE-2025-21252 HIGH
Microsoft Windows 10 1507 < 10.0.10240.20890 - Heap Buffer Overflow
CVSS 8.8
CVE-2025-21250 HIGH
Microsoft Windows 10 1507 < 10.0.10240.20890 - Heap Buffer Overflow
CVSS 8.8
CVE-2025-21248 HIGH
Microsoft Windows 10 1507 < 10.0.10240.20890 - Heap Buffer Overflow
CVSS 8.8
CVE-2025-21246 HIGH
Microsoft Windows 10 1507 < 10.0.10240.20890 - Heap Buffer Overflow
CVSS 8.8
CVE-2025-21245 HIGH
Microsoft Windows 10 1507 < 10.0.10240.20890 - Heap Buffer Overflow
CVSS 8.8
CVE-2025-21241 HIGH
Microsoft Windows 10 1507 < 10.0.10240.20890 - Heap Buffer Overflow
CVSS 8.8
CVE-2025-21240 HIGH
Microsoft Windows 10 1507 < 10.0.10240.20890 - Heap Buffer Overflow
CVSS 8.8
CVE-2025-21239 HIGH
Microsoft Windows 10 1507 < 10.0.10240.20890 - Heap Buffer Overflow
CVSS 8.8
CVE-2025-21238 HIGH
Microsoft Windows 10 1507 < 10.0.10240.20890 - Heap Buffer Overflow
CVSS 8.8
CVE-2025-21237 HIGH
Microsoft Windows 10 1507 < 10.0.10240.20890 - Heap Buffer Overflow
CVSS 8.8
CVE-2025-21236 HIGH
Microsoft Windows 10 1507 < 10.0.10240.20890 - Heap Buffer Overflow
CVSS 8.8
CVE-2025-21233 HIGH
Microsoft Windows 10 1507 < 10.0.10240.20890 - Heap Buffer Overflow
CVSS 8.8
CVE-2025-21223 HIGH
Microsoft Windows 10 1507 < 10.0.10240.20890 - Heap Buffer Overflow
CVSS 8.8
CVE-2025-21186 HIGH
Microsoft 365 Apps - Heap Buffer Overflow
CVSS 7.8
CVE-2025-21178 HIGH
Microsoft Visual Studio 2017 < 15.9.69 - Heap Buffer Overflow
CVSS 8.8
CVE-2025-21172 HIGH
Microsoft .net < 15.8 - Integer Overflow
CVSS 7.5
CVE-2025-21171 HIGH
Microsoft .net < 17.6.22 - Heap Buffer Overflow
CVSS 7.5
CVE-2025-22134 MEDIUM
Vim <9.1.1003 - Buffer Overflow
CVSS 4.2
CVE-2024-50571 HIGH
Fortinet Fortianalyzer < 7.0.14 - Heap Buffer Overflow
CVSS 7.2
CVE-2024-49714 HIGH
AVRC - Memory Corruption
CVSS 7.8
CVE-2024-42648 MEDIUM
NanoMQ <0.22.10 - DoS
CVSS 6.5
CVE-2024-46993 MEDIUM
NPM Electron < 28.3.2 - Heap Buffer Overflow
CVE-2024-56805 MEDIUM
QNAP OS - Buffer Overflow
CVSS 5.4
CVE-2024-6031 HIGH
Tesla Model S Firmware < 2024.2 - Heap Buffer Overflow
CVSS 7.8
Details
Vulnerabilities 2,135
Exploit Likelihood High