CWE-122

High likelihood

Heap-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

2,136 vulnerabilities with CWE-122
CVE-2023-26413 HIGH
Adobe Substance 3D Designer <12.4.0 - RCE
CVSS 7.8
CVE-2023-26394 HIGH
Adobe Substance 3D Stager <2.0.1 - Code Injection
CVSS 7.8
CVE-2023-1906 MEDIUM
ImageMagick - Buffer Overflow
CVSS 5.5
CVE-2023-28311 HIGH
Microsoft 365 Apps - Heap Buffer Overflow
CVSS 7.8
CVE-2023-28292 HIGH
Microsoft Raw Image Extension < 2.1.60611.0 - Heap Buffer Overflow
CVSS 7.8
CVE-2023-28275 HIGH
Microsoft Windows 10 1507 < 10.0.10240.19869 - Heap Buffer Overflow
CVSS 8.8
CVE-2023-28269 MEDIUM
Microsoft Windows 10 1507 < 10.0.10240.19869 - Heap Buffer Overflow
CVSS 6.2
CVE-2023-28262 HIGH
Microsoft Visual Studio 2019 < 16.11.26 - Heap Buffer Overflow
CVSS 7.8
CVE-2023-28254 HIGH
Microsoft Windows Server 2008 - Heap Buffer Overflow
CVSS 7.2
CVE-2023-28252 HIGH KEV
Microsoft Windows 10 1507 < 10.0.10240.19869 - Out-of-Bounds Write
CVSS 7.8
CVE-2023-28240 HIGH
Microsoft Windows Server 2008 - Heap Buffer Overflow
CVSS 8.8
CVE-2023-28231 HIGH
Microsoft Windows Server 2008 - Heap Buffer Overflow
CVSS 8.8
CVE-2023-28227 HIGH
Microsoft Windows 10 1507 < 10.0.10240.19869 - Heap Buffer Overflow
CVSS 7.5
CVE-2023-28225 HIGH
Microsoft Windows 10 1507 < 10.0.10240.19869 - Heap Buffer Overflow
CVSS 7.8
CVE-2023-28218 HIGH
Microsoft Windows 10 1507 < 10.0.10240.19869 - Heap Buffer Overflow
CVSS 7.0
CVE-2023-24928 HIGH
Microsoft PostScript and PCL6 Class Printer Driver - RCE
CVSS 8.8
CVE-2023-24926 HIGH
Microsoft PostScript and PCL6 Class Printer Driver - RCE
CVSS 8.8
CVE-2023-24912 HIGH
Windows Graphics Component - Privilege Escalation
CVSS 7.8
CVE-2023-23384 HIGH
Microsoft Sql Server - Heap Buffer Overflow
CVSS 7.3
CVE-2023-21727 HIGH
Microsoft Windows RPC Runtime - Remote Code Execution
CVSS 8.8
CVE-2023-22660 HIGH
Justsystems Ichitaro 2022 - Heap Buffer Overflow
CVSS 7.0
CVE-2023-0208 HIGH
NVIDIA DCGM - Buffer Overflow
CVSS 8.4
CVE-2023-25898 HIGH
Adobe Dimension < 3.4.7 - Out-of-Bounds Write
CVSS 7.8
CVE-2023-25897 HIGH
Adobe Dimension < 3.4.7 - Out-of-Bounds Write
CVSS 7.8
CVE-2023-25895 HIGH
Adobe Dimension < 3.4.7 - Out-of-Bounds Write
CVSS 7.8
Details
Vulnerabilities 2,136
Exploit Likelihood High