CWE-122

High likelihood

Heap-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

2,137 vulnerabilities with CWE-122
CVE-2020-1916 CRITICAL
Facebook Hhvm < 4.56.2 - Out-of-Bounds Write
CVSS 9.8
CVE-2020-28587 HIGH
Softmaker Planmaker 2021 - Out-of-Bounds Write
CVSS 7.8
CVE-2020-28595 HIGH
Prusa3d Prusaslicer - Out-of-Bounds Write
CVSS 7.8
CVE-2020-27250 HIGH
SoftMaker Office PlanMaker 2021 <Revision 1014 - Buffer Overflow
CVSS 7.8
CVE-2020-13581 HIGH
Softmaker Planmaker 2021 - Out-of-Bounds Write
CVSS 7.8
CVE-2020-13572 HIGH
Accusoft Imagegear - Out-of-Bounds Write
CVSS 8.8
CVE-2020-17423 HIGH
Foxit Studio Photo 3.6.6.922 - RCE
CVSS 7.8
CVE-2020-27249 HIGH
SoftMaker Office PlanMaker 2021 < Revision 1014 - Buffer Overflow
CVSS 7.8
CVE-2020-27248 HIGH
SoftMaker Office PlanMaker 2021 - Buffer Overflow
CVSS 7.8
CVE-2020-27247 HIGH
SoftMaker Office PlanMaker 2021 < Revision 1014 - Buffer Overflow
CVSS 7.8
CVE-2020-13586 HIGH
Softmaker Planmaker 2021 - Out-of-Bounds Write
CVSS 7.8
CVE-2020-27297 CRITICAL
OPC UA Tunneller <6.3.0.8233 - Buffer Overflow
CVSS 9.8
CVE-2020-27814 HIGH
Uclouvain Openjpeg < 1.5.1 - Heap Buffer Overflow
CVSS 7.8
CVE-2020-25687 MEDIUM
Thekelleys Dnsmasq < 2.83 - Heap Buffer Overflow
CVSS 5.9
CVE-2020-25682 HIGH
Thekelleys Dnsmasq < 2.83 - Out-of-Bounds Write
CVSS 8.1
CVE-2020-25681 HIGH
Thekelleys Dnsmasq < 2.83 - Heap Buffer Overflow
CVSS 8.1
CVE-2020-25683 MEDIUM
Thekelleys Dnsmasq < 2.83 - Heap Buffer Overflow
CVSS 5.9
CVE-2020-27263 CRITICAL
KEPServerEX <6.10 - Buffer Overflow
CVSS 9.1
CVE-2020-26994 HIGH
JT2Go, Teamcenter Visualization <13.1.0 - Buffer Overflow
CVSS 8.8
CVE-2020-26987 HIGH
JT2Go < V13.1.0 - Code Injection
CVSS 8.8
CVE-2020-26986 HIGH
JT2Go <V13.1.0 - Buffer Overflow
CVSS 8.8
CVE-2020-26985 HIGH
JT2Go <V13.1.0 - Buffer Overflow
CVSS 8.8
CVE-2020-25226 CRITICAL
Siemens Scalance X200-4pirt Firmware < 5.5.0 - Out-of-Bounds Write
CVSS 9.8
CVE-2020-15800 CRITICAL
Siemens Scalance X200-4pirt Firmware < 5.5.0 - Out-of-Bounds Write
CVSS 9.8
CVE-2020-27841 MEDIUM
Uclouvain Openjpeg < 2.4.0 - Out-of-Bounds Write
CVSS 5.5
Details
Vulnerabilities 2,137
Exploit Likelihood High