CWE-122

High likelihood

Heap-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

2,136 vulnerabilities with CWE-122
CVE-2023-29372 HIGH
Microsoft WDAC OLE DB provider for SQL Server - RCE
CVSS 8.8
CVE-2023-29370 HIGH
Microsoft Windows Media - Remote Code Execution
CVSS 7.8
CVE-2023-29363 CRITICAL
Windows PGM - RCE
CVSS 9.8
CVE-2023-29362 HIGH
Remote Desktop Client - RCE
CVSS 8.8
CVE-2023-27997 CRITICAL KEV
Fortinet Fortiproxy < 1.1.6 - Out-of-Bounds Write
CVSS 9.8
CVE-2023-34488 HIGH
Emqx Nanomq - Out-of-Bounds Write
CVSS 7.8
CVE-2023-24014 HIGH
Delta Electronics' CNCSoft-B DOPSoft <1.0.0.4 - Buffer Overflow
CVSS 7.8
CVE-2023-0667 MEDIUM
Wireshark < 4.0.6 - Out-of-Bounds Write
CVSS 6.5
CVE-2023-0666 MEDIUM
Wireshark < 4.0.6 - Out-of-Bounds Write
CVSS 6.5
CVE-2023-2157 MEDIUM
ImageMagick - Buffer Overflow
CVSS 5.5
CVE-2023-29344 HIGH
Microsoft Office - RCE
CVSS 7.8
CVE-2023-32324 HIGH
Openprinting Cups < 2.4.2 - Out-of-Bounds Write
CVSS 7.5
CVE-2023-32307 HIGH
Signalwire Sofia-sip < 1.13.15 - Integer Overflow
CVSS 7.5
CVE-2023-2804 MEDIUM
libjpeg-turbo - Buffer Overflow
CVSS 6.5
CVE-2023-30763 HIGH
Intel Battery Life Diagnostic Tool < 1.2 - Out-of-Bounds Write
CVSS 7.2
CVE-2023-29283 HIGH
Adobe Substance 3D Painter <8.3.0 - RCE
CVSS 7.8
CVE-2023-0854 CRITICAL
Canon Mf642cdw Firmware < 11.04 - Out-of-Bounds Write
CVSS 9.8
CVE-2023-0851 CRITICAL
Canon Mf642cdw Firmware < 11.04 - Out-of-Bounds Write
CVSS 9.8
CVE-2023-29341 HIGH
AV1 Video Extension - RCE
CVSS 7.8
CVE-2023-24948 HIGH
Windows Bluetooth Driver - Privilege Escalation
CVSS 7.4
CVE-2023-24943 CRITICAL
Windows PGM - RCE
CVSS 9.8
CVE-2023-27410 LOW
Siemens Scalance Lpe9403 Firmware < 2.1 - Heap Buffer Overflow
CVSS 2.7
CVE-2023-2241 MEDIUM
Podofo - Out-of-Bounds Write
CVSS 5.3
CVE-2023-27911 HIGH
Autodesk Fbx Software Development Kit < 2020.3.4 - Out-of-Bounds Write
CVSS 7.8
CVE-2023-26416 HIGH
Adobe Substance 3D Designer <12.4.0 - RCE
CVSS 7.8
Details
Vulnerabilities 2,136
Exploit Likelihood High