VYPR

CWE-122

Heap-based Buffer Overflow

VariantDraftLikelihood: High

Description

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

Hierarchy (View 1000)

Children

none

Related attack patterns (CAPEC)

CAPEC-92

CVEs mapped to this weakness (2,687)

page 1 of 135
  • CVE-2023-27997CriKEVJun 13, 2023
    risk 0.89cvss 9.8epss 0.86

    A heap-based buffer overflow vulnerability [CWE-122] in FortiOS version 7.2.4 and below, version 7.0.11 and below, version 6.4.12 and below, version 6.0.16 and below and FortiProxy version 7.2.3 and below, version 7.0.9 and below, version 2.0.12 and below, version 1.2 all…

  • CVE-2015-3113CriKEVJun 23, 2015
    risk 0.87cvss 9.8epss 1.00

    Heap-based buffer overflow in Adobe Flash Player before 13.0.0.296 and 14.x through 18.x before 18.0.0.194 on Windows and OS X and before 11.2.202.468 on Linux allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in the wild in June 2015.

  • CVE-2024-38812CriKEVSep 17, 2024
    risk 0.80cvss 9.8epss 0.55

    The vCenter Server contains a heap-overflow vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter Server may trigger this vulnerability by sending a specially crafted network packet potentially leading to remote code…

  • CVE-2019-3568CriKEVMay 14, 2019
    risk 0.79cvss 9.8epss 0.39

    A buffer overflow vulnerability in WhatsApp VOIP stack allowed remote code execution via specially crafted series of RTCP packets sent to a target phone number. The issue affects WhatsApp for Android prior to v2.19.134, WhatsApp Business for Android prior to v2.19.44, WhatsApp…

  • CVE-2009-3459HigKEVOct 13, 2009
    risk 0.79cvss 8.8epss 0.87

    Heap-based buffer overflow in Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 allows remote attackers to execute arbitrary code via a crafted PDF file that triggers memory corruption, as exploited in the wild in October 2009. NOTE: some of these…

  • CVE-2023-28252HigKEVApr 11, 2023
    risk 0.76cvss 7.8epss 0.49

    Windows Common Log File System Driver Elevation of Privilege Vulnerability

  • CVE-2021-21017HigKEVFeb 11, 2021
    risk 0.76cvss 8.8epss 0.86

    Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by a heap-based buffer overflow vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code…

  • CVE-2020-16010CriKEVNov 3, 2020
    risk 0.75cvss 9.6epss 0.06

    Heap buffer overflow in UI in Google Chrome on Android prior to 86.0.4240.185 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.

  • CVE-2024-38077CriJul 9, 2024
    risk 0.70cvss 9.8epss 0.75

    Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability

  • CVE-2023-23376HigKEVFeb 14, 2023
    risk 0.70cvss 7.8epss 0.11

    Windows Common Log File System Driver Elevation of Privilege Vulnerability

  • CVE-2022-35711CriOct 14, 2022
    risk 0.70cvss 9.8epss 0.73

    Adobe ColdFusion versions Update 14 (and earlier) and Update 4 (and earlier) are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction,…

  • CVE-2024-12084CriJan 15, 2025
    risk 0.69cvss 9.8epss 0.72

    A heap-based buffer overflow flaw was found in the rsync daemon. This issue is due to improper handling of attacker-controlled checksum lengths (s2length) in the code. When MAX_DIGEST_LEN exceeds the fixed SUM_LENGTH (16 bytes), an attacker can write out of bounds in the sum2…

  • CVE-2024-30051HigKEVMay 14, 2024
    risk 0.69cvss 7.8epss 0.06

    Windows DWM Core Library Elevation of Privilege Vulnerability

  • CVE-2021-26691CriJun 10, 2021
    risk 0.69cvss 9.8epss 0.68

    In Apache HTTP Server versions 2.4.0 to 2.4.46 a specially crafted SessionHeader sent by an origin server could cause a heap overflow

  • CVE-2024-49138HigKEVDec 12, 2024
    risk 0.68cvss 7.8epss 0.25

    Windows Common Log File System Driver Elevation of Privilege Vulnerability

  • CVE-2022-35712CriOct 14, 2022
    risk 0.67cvss 9.8epss 0.37

    Adobe ColdFusion versions Update 14 (and earlier) and Update 4 (and earlier) are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction,…

  • CVE-2025-21333HigKEVJan 14, 2025
    risk 0.66cvss 7.8epss 0.10

    Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability

  • CVE-2024-24996CriApr 19, 2024
    risk 0.66cvss 9.8epss 0.32

    A Heap overflow vulnerability in WLInfoRailService component of Ivanti Avalanche before 6.4.3 allows an unauthenticated remote attacker to execute arbitrary commands.

  • CVE-2023-21690CriFeb 14, 2023
    risk 0.66cvss 9.8epss 0.28

    Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability

  • CVE-2023-21689CriFeb 14, 2023
    risk 0.66cvss 9.8epss 0.27

    Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability