CWE-122— Heap-based Buffer Overflow
A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().— MITRE CWE catalog
3,271 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-122page 29 of 66
- CVE-2026-68844HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Windows Storage Spaces Controller allows an authorized attacker to execute code locally.
- CVE-2026-72946HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Storage Port Driver allows an authorized attacker to elevate privileges locally.
- CVE-2026-72944HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Windows Fax Service allows an authorized attacker to elevate privileges locally.
- CVE-2026-71343HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Windows Remote Access Connection Manager allows an authorized attacker to execute code locally.
- CVE-2026-71334HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Windows NFS Portmapper allows an authorized attacker to elevate privileges locally.
- CVE-2026-70564HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elevate privileges locally.
- CVE-2026-58600HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Microsoft Windows Codecs Library allows an unauthorized attacker to elevate privileges locally.
- CVE-2026-70289HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Windows Win32 Kernel Subsystem allows an authorized attacker to elevate privileges locally.
- CVE-2026-69822HIGHCVSS 7.8EG 7.82026-09-08
Numeric truncation error in Windows Kerberos allows an authorized attacker to elevate privileges locally.
- CVE-2026-69758HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Windows Universal Disk Format File System Driver (UDFS) allows an authorized attacker to elevate privileges locally.
- CVE-2026-69691HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Windows Spaceport.sys allows an authorized attacker to elevate privileges locally.
- CVE-2026-69790HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Windows Credential Providers allows an authorized attacker to elevate privileges locally.
- CVE-2026-69594HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Microsoft Local Security Authority Server (lsasrv) allows an authorized attacker to elevate privileges locally.
- CVE-2026-69541HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges locally.
- CVE-2026-69455HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally.
- CVE-2026-69513HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Windows Error Reporting allows an authorized attacker to elevate privileges locally.
- CVE-2026-69432HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Volume Manager Driver allows an authorized attacker to elevate privileges locally.
- CVE-2026-69436HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Windows State Repository Service allows an authorized attacker to elevate privileges locally.
- CVE-2026-69420HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Windows VOLSNAP.SYS allows an authorized attacker to elevate privileges locally.
- CVE-2026-69368HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Windows Overlay Filter allows an authorized attacker to elevate privileges locally.
- CVE-2026-69389HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Windows Storage Management Provider allows an authorized attacker to elevate privileges locally.
- CVE-2026-69359HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Active Directory Domain Services allows an authorized attacker to elevate privileges locally.
- CVE-2026-69307HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Windows USB Audio Class driver (usbaudio.sys) allows an authorized attacker to elevate privileges locally.
- CVE-2026-68892HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges locally.
- CVE-2026-68890HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges locally.
- CVE-2026-68845HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Windows Program Compatibility Assistant Service allows an authorized attacker to elevate privileges locally.
- CVE-2026-68841HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.
- CVE-2026-68787HIGHCVSS 7.8EG 7.82026-09-08
Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code locally.
- CVE-2026-86142HIGHCVSS 7.8EG 7.82026-09-05
In libxml2 before 2.15.4, there is a heap-based buffer overflow in xmlXPtrEvalXPtrPart because of xmlXPtrEval xpointer length saturation.
- CVE-2026-83959HIGHCVSS 7.8EG 7.82026-09-03
Substance3D - Sampler is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must op…
- CVE-2026-34674HIGHCVSS 7.8EG 7.82026-08-27
Substance3D - Sampler versions 5.1.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interact…
- CVE-2026-77652HIGHCVSS 7.8EG 7.82026-08-26
A heap-based buffer overflow vulnerability exists in the Dia diagram editor WPG file format importer. In plug-ins/wpg/wpg-import.c, the WPG import renderer allocates a fixed palette with: ren->pPal = g_new0(WPGColorRGB, 256); When h…
- CVE-2026-58097HIGHCVSS 7.8EG 7.82026-08-26
mp_SetEnddisc() copied a user-supplied PSN endpoint value without length validation, allowing a buffer overflow via the ppp(8) command interface. A local user with access to the ppp(8) command interface can crash ppp(8) or potentially exe…
- CVE-2026-75750HIGHCVSS 7.8EG 7.82026-08-25
Substance3D - Painter is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must op…
- CVE-2026-75767HIGHCVSS 7.8EG 7.82026-08-25
Substance3D - Painter is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must op…
- CVE-2026-75766HIGHCVSS 7.8EG 7.82026-08-25
Substance3D - Painter is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must op…
- CVE-2026-75769HIGHCVSS 7.8EG 7.82026-08-25
Substance3D - Painter is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must op…
- CVE-2026-48425HIGHCVSS 7.8EG 7.82026-08-25
Substance3D - Sampler is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must op…
- CVE-2026-48423HIGHCVSS 7.8EG 7.82026-08-25
Substance3D - Sampler is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must op…
- CVE-2026-48422HIGHCVSS 7.8EG 7.82026-08-25
Substance3D - Sampler is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must op…
- CVE-2026-48424HIGHCVSS 7.8EG 7.82026-08-25
Substance3D - Sampler is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must op…
- CVE-2026-48432HIGHCVSS 7.8EG 7.82026-08-25
Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must o…
- CVE-2026-48430HIGHCVSS 7.8EG 7.82026-08-25
Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must o…
- CVE-2026-48428HIGHCVSS 7.8EG 7.82026-08-25
Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must o…
- CVE-2026-48431HIGHCVSS 7.8EG 7.82026-08-25
Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must o…
- CVE-2026-48433HIGHCVSS 7.8EG 7.82026-08-25
Substance3D - Designer is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must o…
- CVE-2026-18307HIGHCVSS 7.8EG 7.82026-08-20
GIMP TIF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vuln…
- CVE-2026-18302HIGHCVSS 7.8EG 7.82026-08-20
GIMP TIF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vuln…
- CVE-2026-18298HIGHCVSS 7.8EG 7.82026-08-20
GStreamer PNG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit…
- CVE-2026-18296HIGHCVSS 7.8EG 7.82026-08-20
GStreamer MRF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit…
Map vulnerabilities like CWE-122 to your infrastructure
EchelonGraph correlates every CVE — across CWE-122 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →