CWE-122

High likelihood

Heap-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

2,334 vulnerabilities with CWE-122
CVE-2021-21962 HIGH
Sealevel SeaConnect 370W Firmware 1.3.34 - Heap-based Buffer Overflow via OTA Update u-download MQTT Payloads
CVSS 8.1
CVE-2021-44709 HIGH
Adobe Acrobat and Reader DC < 21.007.20099 - Heap-based Buffer Overflow via Crafted File
CVSS 7.8
CVE-2021-44708 HIGH
Adobe Acrobat/Reader DC < 21.007.20099 & < 17.011.30204 Heap Overflow via Crafted File
CVSS 7.8
CVE-2021-23157 HIGH
WECON LeviStudioU <2019-09-21 - Buffer Overflow
CVSS 7.8
CVE-2021-34945 HIGH
Bentley View < 10.16.02 - Remote Code Execution via JT File Parsing
CVSS 7.8
CVE-2021-34938 HIGH
Bentley View < 10.16.02 - Remote Code Execution via JT File Parsing
CVSS 7.8
CVE-2021-34907 HIGH
Bentley View < 10.16.02 - Remote Code Execution via BMP File Parsing
CVSS 7.8
CVE-2021-34905 HIGH
Bentley View < 10.16.02 - Remote Code Execution via DGN File Parsing
CVSS 7.8
CVE-2021-34904 HIGH
Bentley View < 10.16.02 - Remote Code Execution via DGN File Parsing
CVSS 7.8
CVE-2021-34900 HIGH
Bentley View < 10.16.02 - Remote Code Execution via J2K File Parsing
CVSS 7.8
CVE-2021-34896 HIGH
Bentley View < 10.16.02 - Remote Code Execution via BMP File Parsing
CVSS 7.8
CVE-2021-34893 HIGH
Bentley View < 10.16.02 - Remote Code Execution via BMP File Parsing
CVSS 7.8
CVE-2021-34871 HIGH
Bentley View < 10.16.02 - Remote Code Execution via BMP File Parsing
CVSS 7.8
CVE-2021-24042 CRITICAL
WhatsApp < 2.21.23, < 2.21.230, < 2.2143, < 2.2146 - Heap-based Buffer Overflow via Malicious 1:1 Call
CVSS 9.8
CVE-2021-38415 HIGH
Fuji Electric V-Server and V-Simulator < 4.0.12.0 - Heap-based Buffer Overflow via Project File Parsing
CVSS 7.8
CVE-2021-4136 HIGH
vim < 8.2.3847 - Heap-based Buffer Overflow
CVSS 7.8
CVE-2021-44445 HIGH
Siemens JT Open Toolkit < 11.1.1.0 and JT Utilities < 13.1.1.0 - Heap-based Buffer Overflow in JT File Parser
CVSS 7.8
CVE-2021-44442 HIGH
Siemens JT Open Toolkit < 11.1.1.0 and JT Utilities < 13.1.1.0 - Heap-based Buffer Overflow via JT File Parsing
CVSS 7.8
CVE-2021-20043 HIGH
SonicWall SMA 200 210 400 410 500v Firmware - Authenticated Heap-based Buffer Overflow in getBookmarks Method
CVSS 8.8
CVE-2021-24041 CRITICAL
WhatsApp and WhatsApp Business < 2.21.22.7 - Heap-based Buffer Overflow in Image Blurring Code
CVSS 9.8
CVE-2021-3984 HIGH
vim < 8.2.3625 - Heap-based Buffer Overflow
CVSS 7.8
CVE-2021-4019 HIGH
vim < 8.2.3669 - Heap-based Buffer Overflow
CVSS 7.8
CVE-2021-3973 HIGH
vim < 8.2.3611 - Heap-based Buffer Overflow
CVSS 7.8
CVE-2021-3968 HIGH
vim 8.2.3430-8.2.3610 - Heap-based Buffer Overflow
CVSS 8.0
CVE-2021-26330 MEDIUM
AMD EPYC 7001/7002/7003/72F3/7313/7313P/7343/73F3/7413/7443/7443P/7453/74F3 Firmware Heap Overflow
CVSS 5.5
Details
Vulnerabilities 2,334
Exploit Likelihood High