CWE-122
3,113 CVEs • Abstraction: Variant • Likelihood of Exploit: High
Heap-based Buffer Overflow
A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().
CVEs (3,113)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. |
Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. |
Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. |
Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. |
Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. |
Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. |
Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. |
Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. |
Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. |
Integer overflow or wraparound in SQL Server allows an authorized attacker to execute code over a network. |
Heap-based buffer overflow in SQL Server allows an authorized attacker to elevate privileges over a network. |
Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. |
Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. |
Heap-based buffer overflow in Active Directory Certificate Services (AD CS) allows an authorized attacker to elevate privileges locally. |
Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a network. |
Heap-based buffer overflow in Microsoft Windows Codecs Library allows an unauthorized attacker to elevate privileges locally. |
Heap-based buffer overflow in Microsoft Windows Codecs Library allows an unauthorized attacker to execute code locally. |
A heap overflow in the a2dp_decoder_sbc.cpp component of Bestechnic Co., Ltd BES2300 Bluetooth Audio SoC firmware v3.x and earlier allows attackers to cause a Denial of Service (DoS) via sending a crafted L2CAP packet. |
CommServe contained a heap-based buffer overflow issue affecting service availability. Software customers upgrade to resolved maintenance release. Update CommServe. |
1Mediatek 53Mt2718 Firmware Mt6580 FirmwareMt6739 Firmware+50 moreSep 9, 2026 Sep 7, 2026 N/A· v4 8.4 HIGH· v3 N/A· v2 In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploita...Show more |