CWE-122

High likelihood

Heap-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

2,135 vulnerabilities with CWE-122
CVE-2024-20516 MEDIUM
Cisco Small Business RV042-325 - DoS
CVSS 6.8
CVE-2024-46264 HIGH
Randygaul Cute Png - Out-of-Bounds Write
CVSS 7.8
CVE-2024-7674 HIGH
Autodesk Navisworks - Out-of-Bounds Write
CVSS 7.8
CVE-2024-7673 HIGH
Autodesk Navisworks - Out-of-Bounds Write
CVSS 7.8
CVE-2024-45993 MEDIUM
Giflib - Out-of-Bounds Write
CVSS 6.5
CVE-2024-38796 MEDIUM
EDK2 - Memory Corruption
CVSS 5.9
CVE-2024-46632 MEDIUM
Assimp - Heap Buffer Overflow
CVSS 4.3
CVE-2024-46488 MEDIUM
Asg017 Sqlite-vec < 0.1.3 - Out-of-Bounds Write
CVSS 5.5
CVE-2024-20508 MEDIUM
Cisco Unified Threat Defense - DoS
CVSS 5.8
CVE-2024-46461 HIGH
VLC media player <3.0.20 - DoS
CVSS 8.0
CVE-2024-7018 HIGH
Google Chrome < 124.0.6367.78 - Out-of-Bounds Write
CVSS 7.8
CVE-2024-45679 HIGH
Assimp < 5.4.3 - Heap Buffer Overflow
CVSS 8.4
CVE-2024-8905 HIGH
Google Chrome < 129.0.6668.58 - Out-of-Bounds Write
CVSS 8.8
CVE-2024-8948 HIGH
Micropython - Out-of-Bounds Write
CVSS 7.3
CVE-2024-8946 HIGH
Micropython - Out-of-Bounds Write
CVSS 7.3
CVE-2024-38812 CRITICAL KEV
Vmware Cloud Foundation < 5.2 - Out-of-Bounds Write
CVSS 9.8
CVE-2024-6259 HIGH
BT HCI adv_ext_report - Info Disclosure
CVSS 7.6
CVE-2024-6135 HIGH
BT Classic - Buffer Overflow
CVSS 7.6
CVE-2024-6258 MEDIUM
BT - Buffer Overflow
CVSS 6.8
CVE-2024-43756 HIGH
Adobe Photoshop < 24.7.5 - Memory Corruption
CVSS 7.8
CVE-2024-39380 HIGH
Adobe After Effects < 23.6.9 - Memory Corruption
CVSS 7.8
CVE-2024-8636 HIGH
Google Chrome <128.0.6613.137 - Buffer Overflow
CVSS 8.8
CVE-2024-38242 HIGH
Kernel Streaming Service Driver - Privilege Escalation
CVSS 7.8
CVE-2024-38238 HIGH
Kernel Streaming Service Driver - Privilege Escalation
CVSS 7.8
CVE-2024-38237 HIGH
Kernel Streaming WOW Thunk Service - Privilege Escalation
CVSS 7.8
Details
Vulnerabilities 2,135
Exploit Likelihood High