CWE-122

High likelihood

Heap-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

2,135 vulnerabilities with CWE-122
CVE-2024-32671 CRITICAL
Samsung Escargot - Out-of-Bounds Write
CVSS 9.8
CVE-2024-40764 HIGH
SonicOS - DoS
CVSS 7.5
CVE-2024-40129 CRITICAL
Open5GS v2.6.4 - Buffer Overflow
CVSS 9.8
CVE-2024-39518 HIGH
Juniper Junos - Out-of-Bounds Write
CVSS 7.5
CVE-2024-37310 CRITICAL
EVerest - Memory Corruption
CVSS 9.0
CVE-2024-39883 HIGH
Deltaww Cncsoft-g2 - Out-of-Bounds Write
CVSS 8.8
CVE-2024-20785 HIGH
InDesign Desktop <ID19.3,ID18.5.2 - Buffer Overflow
CVSS 7.8
CVE-2024-20783 HIGH
InDesign Desktop <ID19.3,ID18.5.2 - RCE
CVSS 7.8
CVE-2024-20781 HIGH
InDesign Desktop <ID19.3,ID18.5.2 - Buffer Overflow
CVSS 7.8
CVE-2024-38088 HIGH
SQL Server Native Client OLE DB Provider - RCE
CVSS 8.8
CVE-2024-38079 HIGH
Windows Graphics Component - Privilege Escalation
CVSS 7.8
CVE-2024-38077 CRITICAL
Windows Remote Desktop < - RCE
CVSS 9.8
CVE-2024-38076 CRITICAL
Windows Remote Desktop < - RCE
CVSS 9.8
CVE-2024-38065 MEDIUM
Secure Boot - Privilege Escalation
CVSS 6.8
CVE-2024-38060 HIGH
Windows Imaging Component - RCE
CVSS 8.8
CVE-2024-38054 HIGH
Kernel Streaming WOW Thunk Service Driver - Privilege Escalation
CVSS 7.8
CVE-2024-38051 HIGH
Windows Graphics Component - RCE
CVSS 7.8
CVE-2024-38032 HIGH
Microsoft Xbox - RCE
CVSS 7.1
CVE-2024-38025 HIGH
Microsoft Windows Performance Data Helper Library - RCE
CVSS 7.2
CVE-2024-37987 HIGH
Microsoft Windows 10 1507 < 10.0.10240.20710 - Type Confusion
CVSS 8.0
CVE-2024-37977 HIGH
Microsoft Windows 11 21h2 < 10.0.22000.3079 - Heap Buffer Overflow
CVSS 8.0
CVE-2024-37334 HIGH
Microsoft Ole DB Driver For Sql Server - Heap Buffer Overflow
CVSS 8.8
CVE-2024-37333 HIGH
Microsoft Sql Server 2016 < 13.0.6441.1 - Heap Buffer Overflow
CVSS 8.8
CVE-2024-37332 HIGH
Microsoft Sql Server 2016 < 13.0.6441.1 - Heap Buffer Overflow
CVSS 8.8
CVE-2024-37331 HIGH
Microsoft Sql Server 2017 < 14.0.2056.2 - Heap Buffer Overflow
CVSS 8.8
Details
Vulnerabilities 2,135
Exploit Likelihood High