CWE-122

High likelihood

Heap-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

2,137 vulnerabilities with CWE-122
CVE-2020-15201 MEDIUM
Tensorflow <2.3.1 - Buffer Overflow
CVSS 4.8
CVE-2020-15200 MEDIUM
Tensorflow <2.3.1 - Buffer Overflow
CVSS 5.9
CVE-2020-15198 MEDIUM
Tensorflow <2.3.1 - Buffer Overflow
CVSS 5.4
CVE-2020-15196 HIGH
Tensorflow <2.3.0 - Memory Corruption
CVSS 8.5
CVE-2020-15195 HIGH
Tensorflow <2.3.1 - Buffer Overflow
CVSS 8.5
CVE-2020-6146 HIGH
Nitro Pro 13.13.2.242-13.16.2.300 - Buffer Overflow
CVSS 8.8
CVE-2020-15158 HIGH
libIEC61850 <1.4.3 - Buffer Overflow
CVSS 7.7
CVE-2020-14524 CRITICAL
Softing Opc < 4.47.0 - Out-of-Bounds Write
CVSS 9.8
CVE-2020-16223 HIGH
Deltaww Tpeditor < 1.97 - Out-of-Bounds Write
CVSS 7.8
CVE-2020-16207 HIGH
Advantech Webaccess/hmi Designer < 2.1.9.31 - Out-of-Bounds Write
CVSS 7.8
CVE-2020-14311 MEDIUM
GNU Grub2 < 2.06 - Integer Overflow
CVSS 5.7
CVE-2020-14310 MEDIUM
GNU Grub2 < 2.06 - Integer Overflow
CVSS 5.7
CVE-2020-7829 HIGH
DaviewIndy <8.98.4 - Buffer Overflow
CVSS 7.8
CVE-2020-7828 HIGH
DaviewIndy <8.98.4 - Buffer Overflow
CVSS 7.8
CVE-2020-10928 HIGH
NETGEAR R6700 V1.0.4.84_10.0.58 - RCE
CVSS 8.4
CVE-2020-11061 MEDIUM
Bareos Director <= 16.2.10, 17.2.9, 18.2.8, 19.2.7 - Buffer Overflow
CVSS 6.0
CVE-2020-14482 HIGH
Deltaww Dopsoft < 4.00.08.15 - Out-of-Bounds Write
CVSS 7.8
CVE-2020-4068 MEDIUM
Apnswift - Heap Buffer Overflow
CVSS 6.3
CVE-2020-7586 HIGH
Siemens Simatic Step 7 < 5.6 - Out-of-Bounds Write
CVSS 7.8
CVE-2020-10638 CRITICAL
Advantech WebAccess Node <9.0.0 - RCE
CVSS 9.8
CVE-2020-8899 CRITICAL
Samsung Android OS O(8.x)-Q(10.0 - Buffer Overflow
CVSS 9.8
CVE-2020-10896 HIGH
Foxit PhantomPDF 9.7.1.29511 - RCE
CVSS 7.8
CVE-2020-10646 HIGH
Fuji Electric V-Server Lite <4.0.9.0 - Buffer Overflow
CVSS 7.8
CVE-2020-6970 CRITICAL
Emerson Openenterprise Scada Server < 3.3.3 - Out-of-Bounds Write
CVSS 9.8
CVE-2020-1711 HIGH
QEMU <4.2.1 - Memory Corruption
CVSS 7.7
Details
Vulnerabilities 2,137
Exploit Likelihood High