CWE-122

High likelihood

Heap-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

2,334 vulnerabilities with CWE-122
CVE-2022-1886 HIGH
vim < 8.2.5016 - Heap-based Buffer Overflow
CVSS 7.8
CVE-2022-29210 MEDIUM
TensorFlow 2.8.0 - Heap-based Buffer Overflow in TensorKey Hash Function
CVSS 5.5
CVE-2022-1733 HIGH
vim < 8.2.4968 - Heap-based Buffer Overflow
CVSS 7.8
CVE-2022-28234 HIGH
Adobe Acrobat and Reader DC < 22.001.20085 - Heap-based Buffer Overflow via Crafted PDF File
CVSS 7.8
CVE-2022-1621 HIGH
vim < 8.2.4919 - Heap-based Buffer Overflow in vim_strncpy find_word
CVSS 7.8
CVE-2022-1619 HIGH
vim < 8.2.4899 - Heap-based Buffer Overflow in cmdline_erase_chars
CVSS 7.8
CVE-2022-20737 HIGH
Cisco ASA < 9.12.4.38 DoS & Memory Leak via Clientless SSL VPN Auth
CVSS 8.5
CVE-2022-1437 HIGH
radare2 < 5.7.0 - Heap-based Buffer Overflow
CVSS 7.1
CVE-2022-1383 MEDIUM
radare2 < 5.6.8 - Heap-based Buffer Overflow
CVSS 6.1
CVE-2022-1381 HIGH
vim < 8.2.4763 - Heap-based Buffer Overflow in skip_range
CVSS 7.8
CVE-2022-22188 HIGH
Juniper Networks Junos OS - Buffer Overflow
CVSS 7.5
CVE-2022-21214 HIGH
Fujielectric Alpha5 Smart Loader Firmware < 4.3 - Heap-based Buffer Overflow
CVSS 7.8
CVE-2022-27572 HIGH
Android libsimba - Heap-based Buffer Overflow in parser_ipma
CVSS 8.1
CVE-2022-27571 HIGH
Android libsimba - Heap-based Buffer Overflow in sheifd_get_info_image
CVSS 8.1
CVE-2022-27570 HIGH
Android libsimba - Heap-based Buffer Overflow in parser_single_iref
CVSS 8.1
CVE-2022-27569 HIGH
Android libsimba - Heap-based Buffer Overflow in parser_infe Function
CVSS 8.1
CVE-2022-27568 HIGH
Android libsimba - Heap-based Buffer Overflow in parser_iloc
CVSS 8.1
CVE-2022-26098 HIGH
libsimba <SMR Apr-2022 Release 1 - Buffer Overflow
CVSS 8.1
CVE-2022-26092 HIGH
Qurum Agif <SMR Apr-2022 Release 1 - RCE
CVSS 7.4
CVE-2022-1286 CRITICAL
mruby < 3.2 - Heap-based Buffer Overflow in mrb_vm_exec
CVSS 9.8
CVE-2022-1253 CRITICAL
libde265 <= 1.0.8 - Heap-based Buffer Overflow
CVSS 9.8
CVE-2022-1240 HIGH
radare2 < 5.6.6 - Heap-based Buffer Overflow in mach0.c
CVSS 7.8
CVE-2022-1244 MEDIUM
radare2 < 5.6.8 - Heap-based Buffer Overflow
CVSS 5.5
CVE-2022-24795 MEDIUM
yajl-ruby < 1.4.2 - Integer Overflow to Heap Memory Corruption in yajl_buf.c
CVSS 5.9
CVE-2022-1160 HIGH
vim < 8.2.4647 - Heap-based Buffer Overflow in get_one_sourceline
CVSS 7.8
Details
Vulnerabilities 2,334
Exploit Likelihood High