CWE-122

High likelihood

Heap-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

2,335 vulnerabilities with CWE-122
CVE-2021-31429 HIGH
Parallels Desktop 15.1.5-47309 - Heap-based Buffer Overflow in IDE Virtual Device
CVSS 8.2
CVE-2021-31428 HIGH
Parallels Desktop 15.1.5-47309 - Heap-based Buffer Overflow in IDE Virtual Device
CVSS 8.2
CVE-2021-31424 HIGH
Parallels Desktop 15.1.5-47309 - Local Privilege Escalation via Open Tools Gate Heap Overflow
CVSS 8.8
CVE-2021-25668 CRITICAL
SCALANCE X200-4P IRT Firmware < 5.5.1 - Heap-based Buffer Overflow via Webserver POST Request Processing
CVSS 9.8
CVE-2021-29457 HIGH
Exiv2 < 0.27.4 - Heap-based Buffer Overflow via Crafted Image File Metadata Write
CVSS 7.8
CVE-2021-27253 HIGH
NETGEAR Nighthawk R7800 - Code Injection
CVSS 8.8
CVE-2021-25360 CRITICAL
libswmfextractor <SMR APR-2021 Release 1 - RCE
CVSS 9.0
CVE-2021-29097 HIGH
Esri ArcGIS Engine/Pro/Map/Reader < 10.8.1/2.7 - Unauthenticated Buffer Overflow via Crafted File
CVSS 7.8
CVE-2021-21077 HIGH
Adobe Animate <21.0.3 - Heap-based Buffer Overflow
CVSS 7.8
CVE-2021-24025 CRITICAL
HHVM < 4.56.3, 4.57.0-4.80.1, 4.81.0-4.93.1, 4.94.0-4.98.0 Heap Overflow via preg_quote
CVSS 9.8
CVE-2021-20587 HIGH
Mitsubishi Electric FA Engineering Software - Buffer Overflow
CVSS 7.5
CVE-2021-21017 HIGH KEV
Adobe Acrobat and Acrobat Reader DC < 20.013.20074 and < 17.011.30188 - Unauthenticated Heap-based Buffer Overflow
CVSS 8.8
CVE-2021-22641 HIGH
Tellus Lite <4.0.10.0 - Buffer Overflow
CVSS 7.8
CVE-2021-21006 HIGH
Adobe Photoshop <22.1 - Buffer Overflow
CVSS 8.6
CVE-2020-37162 CRITICAL
Wedding Slideshow Studio <1.36 - Buffer Overflow
CVSS 9.8
CVE-2020-12819 MEDIUM
FortiOS < 5.6.13 - Authenticated Heap-based Buffer Overflow via LCP Packet
CVSS 5.4
CVE-2020-28598 HIGH
PrusaSlicer 2.2.0 and Master - Heap-based Buffer Overflow in Admesh stl_fix_normal_directions
CVSS 7.8
CVE-2020-13600 HIGH
Zephyr < 1.14.2 - Heap-based Buffer Overflow via Malformed SPI Response
CVSS 7.0
CVE-2020-10064 HIGH
Zephyr < 1.14.2 - Stack-based Buffer Overflow in IEEE802154 Frame Processing
CVSS 8.3
CVE-2020-27829 MEDIUM
ImageMagick < 7.0.10-45 - Heap-based Buffer Overflow in TIFF Coder
CVSS 5.5
CVE-2020-7852 HIGH
DaviewIndy < 9.0 - Heap-based Buffer Overflow via Malformed J2C File
CVSS 7.8
CVE-2020-1917 CRITICAL
HHVM < 4.56.3, 4.57.0-4.80.1, 4.81.0-4.93.1, 4.94.0-4.98.0 - Heap-based Buffer Overflow
CVSS 9.8
CVE-2020-1916 CRITICAL
HHVM < 4.56.2, 4.57.0-4.78.0, 4.79.0-4.83.0 - Heap-based Buffer Overflow in ldap_escape
CVSS 9.8
CVE-2020-28587 HIGH
SoftMaker Office PlanMaker 2021 Revision 1014 - Heap-based Buffer Overflow in Document Parser
CVSS 7.8
CVE-2020-28595 HIGH
PrusaSlicer 2.2.0 and Master - Heap-based Buffer Overflow in Obj.cpp load_obj()
CVSS 7.8
Details
Vulnerabilities 2,335
Exploit Likelihood High