CWE-122— Heap-based Buffer Overflow
A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().— MITRE CWE catalog
3,270 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-122page 14 of 66
- CVE-2025-8302HIGHCVSS 8.8EG 8.82025-09-02
Realtek rtl81xx SDK Wi-Fi Driver rtwlanu Heap-based Buffer Overflow Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Realtek rtl81xx SDK Wi-Fi driver. A…
- CVE-2025-8300HIGHCVSS 8.8EG 8.82025-09-02
Realtek rtl81xx SDK Wi-Fi Driver rtwlanu Heap-based Buffer Overflow Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Realtek rtl81xx SDK Wi-Fi driver. A…
- CVE-2025-8299HIGHCVSS 8.8EG 8.82025-09-02
Realtek rtl81xx SDK Wi-Fi Driver MgntActSet_TEREDO_SET_RS_PACKET Heap-based Buffer Overflow Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Realtek rtl…
- CVE-2025-53085HIGHCVSS 8.8EG 8.82025-08-25
A memory corruption vulnerability exists in the PSD RLE Decoding functionality of the SAIL Image Decoding Library v0.9.8. When decompressing the image data from a specially crafted .psd file, a heap-based buffer overflow can occur which al…
- CVE-2025-50129HIGHCVSS 8.8EG 8.82025-08-25
A memory corruption vulnerability exists in the PCX Image Decoding functionality of the SAIL Image Decoding Library v0.9.8. When decoding the image data from a specially crafted .tga file, a heap-based buffer overflow can occur which allow…
- CVE-2025-35984HIGHCVSS 8.8EG 8.82025-08-25
A memory corruption vulnerability exists in the PCX Image Decoding functionality of the SAIL Image Decoding Library v0.9.8. When decoding the image data from a specially crafted .pcx file, a heap-based buffer overflow can occur which allow…
- CVE-2025-8879HIGHCVSS 8.8EG 8.82025-08-13
Heap buffer overflow in libaom in Google Chrome prior to 139.0.7258.127 allowed a remote attacker to potentially exploit heap corruption via a curated set of gestures. (Chromium security severity: High)
- CVE-2025-53131HIGHCVSS 8.8EG 8.82025-08-12
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network.
- CVE-2025-50163HIGHCVSS 8.8EG 8.82025-08-12
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
- CVE-2025-49757HIGHCVSS 8.8EG 8.82025-08-12
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
- CVE-2025-8178HIGHCVSS 8.8EG 8.82025-07-26
A vulnerability classified as critical has been found in Tenda AC10 16.03.10.13. Affected is an unknown function of the file /goform/RequestsProcessLaid. The manipulation of the argument device1D leads to heap-based buffer overflow. It is …
- CVE-2025-49753HIGHCVSS 8.8EG 8.82025-07-08
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
- CVE-2025-49729HIGHCVSS 8.8EG 8.82025-07-08
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
- CVE-2025-49676HIGHCVSS 8.8EG 8.82025-07-08
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
- CVE-2025-49674HIGHCVSS 8.8EG 8.82025-07-08
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
- CVE-2025-49673HIGHCVSS 8.8EG 8.82025-07-08
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
- CVE-2025-49672HIGHCVSS 8.8EG 8.82025-07-08
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
- CVE-2025-49669HIGHCVSS 8.8EG 8.82025-07-08
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
- CVE-2025-49668HIGHCVSS 8.8EG 8.82025-07-08
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
- CVE-2025-49663HIGHCVSS 8.8EG 8.82025-07-08
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
- CVE-2025-49657HIGHCVSS 8.8EG 8.82025-07-08
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
- CVE-2025-48824HIGHCVSS 8.8EG 8.82025-07-08
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
- CVE-2025-47998HIGHCVSS 8.8EG 8.82025-07-08
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
- CVE-2025-5830HIGHCVSS 8.8EG 8.82025-06-25
Autel MaxiCharger AC Wallbox Commercial DLB_SlaveRegister Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Autel Max…
- CVE-2025-33066HIGHCVSS 8.8EG 8.82025-06-10
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
- CVE-2025-33064HIGHCVSS 8.8EG 8.82025-06-10
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network.
- CVE-2025-5750HIGHCVSS 8.8EG 8.82025-06-06
WOLFBOX Level 2 EV Charger tuya_svc_devos_activate_result_parse Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of WOL…
- CVE-2025-1051HIGHCVSS 8.8EG 8.82025-06-02
Sonos Era 300 Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected Sonos Era 300 speakers. Authentication is not required to exploit this…
- CVE-2025-44905HIGHCVSS 8.8EG 8.82025-05-30
hdf5 v1.14.6 was discovered to contain a heap buffer overflow via the H5Z__filter_scaleoffset function.
- CVE-2025-44904HIGHCVSS 8.8EG 8.82025-05-30
hdf5 v1.14.6 was discovered to contain a heap buffer overflow via the H5VM_memcpyvv function.
- CVE-2025-29967HIGHCVSS 8.8EG 8.82025-05-13
Heap-based buffer overflow in Remote Desktop Gateway Service allows an unauthorized attacker to execute code over a network.
- CVE-2025-29966HIGHCVSS 8.8EG 8.82025-05-13
Heap-based buffer overflow in Windows Remote Desktop allows an unauthorized attacker to execute code over a network.
- CVE-2025-29964HIGHCVSS 8.8EG 8.82025-05-13
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network.
- CVE-2025-29963HIGHCVSS 8.8EG 8.82025-05-13
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network.
- CVE-2025-29962HIGHCVSS 8.8EG 8.82025-05-13
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network.
- CVE-2025-4355HIGHCVSS 8.8EG 8.82025-05-06
A vulnerability was found in Tenda DAP-1520 1.10B04_BETA02. It has been classified as critical. This affects the function set_ws_action of the file /dws/api/. The manipulation leads to heap-based buffer overflow. It is possible to initiate…
- CVE-2025-4096HIGHCVSS 8.8EG 8.82025-05-05
Heap buffer overflow in HTML in Google Chrome prior to 136.0.7103.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- CVE-2025-1049HIGHCVSS 8.8EG 8.82025-04-23
Sonos Era 300 Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected Sonos Era 300 speakers. Authentication is not required to exploit this…
- CVE-2025-3619HIGHCVSS 8.8EG 8.82025-04-16
Heap buffer overflow in Codecs in Google Chrome on Windows prior to 135.0.7049.95 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)
- CVE-2025-27477HIGHCVSS 8.8EG 8.82025-04-08
Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.
- CVE-2025-21222HIGHCVSS 8.8EG 8.82025-04-08
Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.
- CVE-2025-21221HIGHCVSS 8.8EG 8.82025-04-08
Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.
- CVE-2025-21205HIGHCVSS 8.8EG 8.82025-04-08
Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.
- CVE-2025-24056HIGHCVSS 8.8EG 8.82025-03-11
Heap-based buffer overflow in Windows Telephony Server allows an unauthorized attacker to execute code over a network.
- CVE-2025-24051HIGHCVSS 8.8EG 8.82025-03-11
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
- CVE-2025-1538HIGHCVSS 8.8EG 8.82025-02-21
A vulnerability classified as critical was found in D-Link DAP-1320 1.00. Affected by this vulnerability is the function set_ws_action of the file /dws/api/. The manipulation leads to heap-based buffer overflow. The attack can be launched …
- CVE-2025-1426HIGHCVSS 8.8EG 8.82025-02-19
Heap buffer overflow in GPU in Google Chrome on Android prior to 133.0.6943.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- CVE-2025-0999HIGHCVSS 8.8EG 8.82025-02-19
Heap buffer overflow in V8 in Google Chrome prior to 133.0.6943.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- CVE-2025-1052HIGHCVSS 8.8EG 8.82025-02-11
Mintty Sixel Image Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Mintty. User interaction is required to exploit th…
- CVE-2025-0903HIGHCVSS 8.8EG 8.82025-02-11
PDF-XChange Editor RTF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is r…
Map vulnerabilities like CWE-122 to your infrastructure
EchelonGraph correlates every CVE — across CWE-122 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →