CWE-122

High likelihood

Heap-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

2,334 vulnerabilities with CWE-122
CVE-2022-1923 HIGH
GStreamer < 1.20.3 - Denial of Service and Heap Overflow in Matroska Demuxer Bzip Decompression
CVSS 7.8
CVE-2022-1922 HIGH
GStreamer < 1.20.3 - Denial of Service and Heap Overflow in Matroska Demuxer
CVSS 7.8
CVE-2022-1920 HIGH
GStreamer < 1.20.3 - Heap Overflow via Matroska Demuxer WVPK Header Parsing
CVSS 7.8
CVE-2022-34250 HIGH
Adobe InCopy < 16.4.1 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2022-34249 HIGH
Adobe InCopy < 16.4.1 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2022-34246 HIGH
Adobe InDesign <17.2.1-16.4.1 - RCE
CVSS 7.8
CVE-2022-34245 HIGH
Adobe InDesign <17.2.1,16.4.1 - RCE
CVSS 7.8
CVE-2022-34241 HIGH
Adobe Character Animator <4.4.7, 22.4 - RCE
CVSS 7.8
CVE-2022-34819 CRITICAL
SIMATIC and SIPLUS CP Firmware - Heap-based Buffer Overflow via Message Parsing
CVSS 10.0
CVE-2022-2344 HIGH
vim/vim <9.0.0045 - Buffer Overflow
CVSS 7.8
CVE-2022-2343 HIGH
vim/vim <9.0.0044 - Buffer Overflow
CVSS 7.8
CVE-2022-2284 HIGH
vim < 9.0.0017 - Heap-based Buffer Overflow
CVSS 7.8
CVE-2022-2264 HIGH
vim < 9.0.0011 - Heap-based Buffer Overflow
CVSS 7.8
CVE-2022-2207 HIGH
vim < 8.2.5162 - Heap-based Buffer Overflow
CVSS 7.8
CVE-2022-32137 HIGH
CODESYS PLCWinNT and Runtime Toolkit 2.0-2.4.7.57 - Heap-based Buffer Overflow
CVSS 8.8
CVE-2022-2182 HIGH
vim < 8.2.5150 - Heap-based Buffer Overflow
CVSS 7.8
CVE-2022-2125 HIGH
vim < 8.2.5122 - Heap-based Buffer Overflow
CVSS 7.8
CVE-2022-30654 HIGH
Adobe InCopy < 16.4.1 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2022-30650 HIGH
Adobe InCopy < 16.4.1 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2022-30661 HIGH
Adobe InDesign < 16.4.1 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2022-30658 HIGH
Adobe InDesign < 16.4.1 - Heap-based Buffer Overflow via Malicious File
CVSS 7.8
CVE-2022-2061 LOW
chafa < 1.12.0 - Heap-based Buffer Overflow
CVSS 3.3
CVE-2022-30540 HIGH
Horner Automation Cscape - Heap-based Buffer Overflow via Uninitialized Pointer
CVSS 7.8
CVE-2022-31003 CRITICAL
Sofia-SIP <1.13.8 - Memory Corruption
CVSS 9.1
CVE-2022-1942 HIGH
vim < 8.2.5043 - Heap-based Buffer Overflow
CVSS 7.8
Details
Vulnerabilities 2,334
Exploit Likelihood High