CWE-122

High likelihood

Heap-based Buffer Overflow

Parent: CWE-788 - Access of Memory Location After End of Buffer

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

2,335 vulnerabilities with CWE-122
CVE-2020-25199 HIGH
WECON LeviStudioU < 2019-09-21 - Heap-based Buffer Overflow via Project File Processing
CVSS 7.8
CVE-2020-27752 HIGH
ImageMagick < 6.9.11-47 - Heap-based Buffer Overflow
CVSS 7.1
CVE-2020-25674 MEDIUM
ImageMagick < 6.9.10-68 - Heap-based Buffer Overflow in PNG Coder
CVSS 5.5
CVE-2020-25667 MEDIUM
ImageMagick < 6.9.10-69 - Heap-based Buffer Overflow in TIFFGetProfiles
CVSS 5.5
CVE-2020-25665 MEDIUM
ImageMagick < 6.9.10-68 - Out-of-bounds Read in PALM Image Coder
CVSS 5.5
CVE-2020-25664 MEDIUM
ImageMagick < 6.9.10-68 - Heap-based Buffer Overflow in WriteOnePNGImage
CVSS 6.1
CVE-2020-13494 MEDIUM
Pixar OpenUSD 20.05 - Buffer Overflow
CVSS 5.5
CVE-2020-13493 HIGH
Pixar OpenUSD 20.05 - Buffer Overflow
CVSS 7.8
CVE-2020-25181 HIGH
WECON PLC Editor <= 1.3.8 - Heap-Based Buffer Overflow
CVSS 8.8
CVE-2020-27255 HIGH
FactoryTalk Linx <6.11 - Info Disclosure
CVSS 7.5
CVE-2020-27251 CRITICAL
FactoryTalk Linx <6.11 - Buffer Overflow
CVSS 9.8
CVE-2020-6156 HIGH
Pixar OpenUSD <20.05 - Buffer Overflow
CVSS 7.8
CVE-2020-6155 HIGH
Pixar OpenUSD 20.05 - Buffer Overflow
CVSS 7.8
CVE-2020-6150 HIGH
Pixar OpenUSD <20.05 - Buffer Overflow
CVSS 7.8
CVE-2020-6149 HIGH
Pixar OpenUSD <20.05 - Buffer Overflow
CVSS 7.8
CVE-2020-6148 HIGH
Pixar OpenUSD <20.05 - Buffer Overflow
CVSS 7.8
CVE-2020-6147 HIGH
Pixar OpenUSD <20.05 - Buffer Overflow
CVSS 7.8
CVE-2020-24435 HIGH
Acrobat Reader DC <2020.012.20048 - RCE
CVSS 7.8
CVE-2020-16010 CRITICAL KEV
Google Chrome < 86.0.4240.185 - Heap-based Buffer Overflow in UI
CVSS 9.6
CVE-2020-5138 HIGH
SonicOS < 5.9.1.13 and < 6.5.4.4 - Unauthenticated Denial of Service via SSLVPN Heap Overflow
CVSS 7.5
CVE-2020-1906 HIGH
WhatsApp and WhatsApp Business < 2.20.130 - Heap-based Buffer Overflow via Malformed Local Video Processing
CVSS 7.8
CVE-2020-15205 CRITICAL
Tensorflow <2.3.1 - Memory Corruption
CVSS 9.0
CVE-2020-15201 MEDIUM
Tensorflow <2.3.1 - Buffer Overflow
CVSS 4.8
CVE-2020-15200 MEDIUM
Tensorflow <2.3.1 - Buffer Overflow
CVSS 5.9
CVE-2020-15198 MEDIUM
Tensorflow <2.3.1 - Buffer Overflow
CVSS 5.4
Details
Vulnerabilities 2,335
Exploit Likelihood High