CWE-122

High likelihood

Heap-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

2,135 vulnerabilities with CWE-122
CVE-2024-56406 HIGH
Perl <5.42 - Buffer Overflow
CVSS 8.4
CVE-2024-41147 HIGH
Mackron Miniaudio - Heap Buffer Overflow
CVSS 7.7
CVE-2024-27245 MEDIUM
Zoom Workplace Apps/SDKs - DoS
CVSS 4.3
CVE-2024-45421 HIGH
Zoom Apps - Privilege Escalation
CVSS 8.5
CVE-2024-53310 MEDIUM
Effectmatrix TVCC <2.50 - Buffer Overflow
CVSS 5.5
CVE-2024-37601 MEDIUM
Headunit Ntg6 Mercedes-benz User Experience - Heap Buffer Overflow
CVSS 4.6
CVE-2024-0145 MEDIUM
NVIDIA nvJPEG2000 - Buffer Overflow
CVSS 6.8
CVE-2024-50698 CRITICAL
Sungrowpower Winet-s Firmware < 200.001.00.p027 - Heap Buffer Overflow
CVSS 9.8
CVE-2024-55192 CRITICAL
Openimageio - Out-of-Bounds Write
CVSS 9.8
CVE-2024-12084 CRITICAL
Samba Rsync < 24.11 - Out-of-Bounds Write
CVSS 9.8
CVE-2024-10254 MEDIUM
PC Manager - Buffer Overflow
CVSS 4.7
CVE-2024-10253 MEDIUM
PC Manager - Use After Free
CVSS 4.7
CVE-2024-56827 MEDIUM
OpenJPEG - Buffer Overflow
CVSS 5.6
CVE-2024-56826 MEDIUM
OpenJPEG - Buffer Overflow
CVSS 5.6
CVE-2024-51737 HIGH
Redis <2.6.24, <2.8.21, <2.10.10 - RCE
CVSS 7.0
CVE-2024-51480 HIGH
RedisTimeSeries - RCE
CVSS 7.0
CVE-2024-55627 MEDIUM
Oisf Suricata < 7.0.8 - Out-of-Bounds Write
CVSS 5.9
CVE-2024-13051 HIGH
Ashlar-Vellum Graphite - Heap-based Buffer Overflow in VC6 File Parsing
CVSS 7.8
CVE-2024-13050 HIGH
Ashlar-Vellum Graphite - Heap-based Buffer Overflow in VC6 File Parsing
CVSS 7.8
CVE-2024-56737 HIGH
GNU GRUB <2.12 - Buffer Overflow
CVSS 8.8
CVE-2024-56732 HIGH
HarfBuzz <10.0.1 - Buffer Overflow
CVSS 8.8
CVE-2024-12670 HIGH
Autodesk Navisworks < 2025.4 - Out-of-Bounds Write
CVSS 7.8
CVE-2024-12669 HIGH
Autodesk Navisworks < 2025.4 - Out-of-Bounds Write
CVSS 7.8
CVE-2024-12179 HIGH
Autodesk Navisworks < 2025.4 - Out-of-Bounds Write
CVSS 7.8
CVE-2024-49775 CRITICAL
Opcenter Execution Foundation, Opcenter Intelligence, Opcenter Qual...
CVSS 9.8
Details
Vulnerabilities 2,135
Exploit Likelihood High