CWE-122

High likelihood

Heap-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

2,327 vulnerabilities with CWE-122
CVE-2023-28231 HIGH
Windows Server 2008, 2012, 2016, 2019, 2022 - Remote Code Execution via DHCP Server Service
CVSS 8.8
CVE-2023-28227 HIGH
Windows Bluetooth Driver - Remote Code Execution via Heap-based Buffer Overflow
CVSS 7.5
CVE-2023-28225 HIGH
Windows 10 1507-22H2, Windows 11 21H2-22H2, Windows Server 2016-2022 - Elevation of Privilege via NTLM
CVSS 7.8
CVE-2023-28218 HIGH
Windows Ancillary Function Driver for WinSock - Elevation of Privilege
CVSS 7.0
CVE-2023-24928 HIGH
Microsoft PostScript and PCL6 Class Printer Driver - RCE
CVSS 8.8
CVE-2023-24926 HIGH
Microsoft PostScript and PCL6 Class Printer Driver - RCE
CVSS 8.8
CVE-2023-24912 HIGH
Windows Graphics Component - Privilege Escalation
CVSS 7.8
CVE-2023-23384 HIGH
Microsoft SQL Server - Remote Code Execution via Heap-based Buffer Overflow
CVSS 7.3
CVE-2023-21727 HIGH
Microsoft Windows RPC Runtime - Remote Code Execution
CVSS 8.8
CVE-2023-22660 HIGH
Ichitaro 2022 1.0.1.57600 - Heap-based Buffer Overflow via Crafted LayoutBox Stream Record
CVSS 7.0
CVE-2023-0208 HIGH
NVIDIA Data Center GPU Manager < 3.1.7 - Heap-based Buffer Overflow via HostEngine Bound Socket
CVSS 8.4
CVE-2023-25898 HIGH
Adobe Dimension < 3.4.7 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2023-25897 HIGH
Adobe Dimension < 3.4.7 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2023-25895 HIGH
Adobe Dimension < 3.4.7 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2023-25890 HIGH
Adobe Dimension < 3.4.7 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2023-25885 HIGH
Adobe Dimension < 3.4.7 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2023-25883 HIGH
Adobe Dimension < 3.4.7 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2023-25882 HIGH
Adobe Dimension < 3.4.7 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2023-0210 HIGH
Linux Kernel 5.15-5.15.87 - Heap-based Buffer Overflow in ksmbd NTLMv2 Authentication
CVSS 7.5
CVE-2023-25874 HIGH
Adobe Substance 3D Stager < 2.0.0 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2023-25872 HIGH
Adobe Substance 3D Stager < 2.0.0 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2023-25868 HIGH
Adobe Substance 3D Stager < 2.0.0 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2023-25864 HIGH
Adobe Substance 3D Stager < 2.0.0 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2023-1655 HIGH
gpac < 2.4.0 - Heap-based Buffer Overflow
CVSS 7.8
CVE-2023-25668 CRITICAL
TensorFlow < 2.12.0 - Out-of-bounds Read
CVSS 9.8
Details
Vulnerabilities 2,327
Exploit Likelihood High