CWE-122: Heap-based Buffer Overflow

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory.

855
Total CVEs
108
Critical
668
High
8.0
Avg CVSS
5
In CISA KEV

Yearly Trend

2026
84
2025
311
2024
248
2023
84
2022
58

Top Affected Vendors

1 Microsoft 262
2 Adobe 86
3 Google 32
4 Fedoraproject 32
5 Debian 27
6 Vim 23
7 Siemens 17
8 Mediatek 14
9 Autodesk 14
10 Hdfgroup 13

All Heap-based Buffer Overflow CVEs (855)

CVE-2021-44445
7.8

This vulnerability allows remote code execution through specially crafted JT files in Siemens JT Utilities and JTTK libraries. Attackers can exploit a...

Dec 14, 2021
CVE-2021-4019
7.8

CVE-2021-4019 is a heap-based buffer overflow vulnerability in Vim text editor that allows attackers to execute arbitrary code by tricking users into ...

Dec 1, 2021
CVE-2021-39863
7.8

A buffer overflow vulnerability in Adobe Acrobat Reader DC allows arbitrary code execution when a user opens a malicious PDF file. Attackers can explo...

Sep 29, 2021
CVE-2021-39823
7.8

This vulnerability in Adobe SVG Native Viewer allows attackers to execute arbitrary code by tricking users into opening a malicious SVG file. It affec...

Sep 27, 2021
CVE-2021-3778
7.8

CVE-2021-3778 is a heap-based buffer overflow vulnerability in Vim text editor that could allow attackers to execute arbitrary code or cause denial of...

Sep 15, 2021
CVE-2021-3770
7.8

CVE-2021-3770 is a heap-based buffer overflow vulnerability in Vim text editor that allows attackers to execute arbitrary code by tricking users into ...

Sep 6, 2021
CVE-2021-36050
7.8

CVE-2021-36050 is a heap-based buffer overflow vulnerability in Adobe XMP Toolkit SDK that could allow arbitrary code execution when processing malici...

Sep 1, 2021
CVE-2021-33007
7.8

This vulnerability allows attackers to execute arbitrary code on systems running vulnerable versions of Delta Electronics TPEditor by tricking users i...

Aug 30, 2021
CVE-2021-28620
7.8

Adobe Animate versions 21.0.6 and earlier contain a heap-based buffer overflow vulnerability that allows arbitrary code execution when a user opens a ...

Aug 24, 2021
CVE-2021-28610
7.8

CVE-2021-28610 is a heap-based buffer overflow vulnerability in Adobe After Effects that allows arbitrary code execution when a user opens a malicious...

Aug 24, 2021
CVE-2021-28604
7.8

Adobe After Effects versions 18.2 and earlier contain a heap-based buffer overflow vulnerability when parsing malicious files. An attacker can exploit...

Aug 24, 2021
CVE-2021-28608
7.8

CVE-2021-28608 is a heap-based buffer overflow vulnerability in Adobe After Effects that allows arbitrary code execution when a malicious file is open...

Aug 24, 2021
CVE-2021-28638
7.8

This heap-based buffer overflow vulnerability in Adobe Acrobat Reader DC allows attackers to execute arbitrary code on affected systems. An unauthenti...

Aug 20, 2021
CVE-2021-34328
7.8

This vulnerability allows attackers to execute arbitrary code by exploiting a heap buffer overflow in Siemens JT2Go, Solid Edge SE2021, and Teamcenter...

Jul 13, 2021
CVE-2021-34317
7.8

This vulnerability allows remote code execution through specially crafted PCX files in Siemens JT2Go and Teamcenter Visualization software. Attackers ...

Jul 13, 2021
CVE-2021-34326
7.8

This vulnerability allows attackers to execute arbitrary code by exploiting a heap buffer overflow in Siemens JT2Go, Solid Edge SE2021, and Teamcenter...

Jul 13, 2021
CVE-2021-34313
7.8

This vulnerability allows remote code execution through specially crafted TIFF files in Siemens JT2Go and Teamcenter Visualization software. Attackers...

Jul 13, 2021
CVE-2020-28598
7.8

This vulnerability allows remote code execution through a specially crafted AMF file in PrusaSlicer. Attackers can exploit an out-of-bounds write in t...

Jul 8, 2021
CVE-2020-28587
7.8

This heap-based buffer overflow vulnerability in SoftMaker Office PlanMaker 2021 allows attackers to execute arbitrary code by tricking victims into o...

Feb 23, 2021
CVE-2020-27250
7.8

This is a heap-based buffer overflow vulnerability in SoftMaker Office PlanMaker 2021 that allows remote code execution when a user opens a specially ...

Feb 10, 2021
CVE-2020-27247
7.8

A heap-based buffer overflow vulnerability in SoftMaker Office PlanMaker 2021 allows attackers to execute arbitrary code by tricking victims into open...

Feb 4, 2021
CVE-2020-27249
7.8

This heap-based buffer overflow vulnerability in SoftMaker Office PlanMaker 2021 allows attackers to execute arbitrary code by tricking victims into o...

Feb 4, 2021
CVE-2020-27814
7.8

This vulnerability is a heap-buffer overflow in openjpeg2's PNG file handling that allows attackers to crash applications or potentially execute arbit...

Jan 26, 2021
CVE-2020-25712
7.8

This vulnerability is a heap buffer overflow in the Xorg X11 server's XkbSetDeviceInfo function. It allows local attackers to potentially escalate pri...

Dec 15, 2020
CVE-2020-25199
7.8

A heap-based buffer overflow vulnerability in WECON LeviStudioU allows attackers to execute arbitrary code by tricking users into opening malicious pr...

Dec 9, 2020
CVE-2020-6155
7.8

A heap overflow vulnerability in Pixar OpenUSD 20.05 allows remote code execution when parsing specially crafted binary USD files. Attackers can explo...

Nov 13, 2020
CVE-2020-6147
7.8

A heap overflow vulnerability in Pixar OpenUSD 20.05 allows attackers to execute arbitrary code or cause denial of service by parsing specially crafte...

Nov 13, 2020
CVE-2020-6149
7.8

A heap overflow vulnerability in Pixar OpenUSD 20.05 allows attackers to execute arbitrary code or cause denial of service by tricking users into open...

Nov 13, 2020
CVE-2020-24435
7.8

A heap-based buffer overflow vulnerability in Adobe Acrobat Reader DC's submitForm function allows arbitrary code execution when a user opens a malici...

Nov 5, 2020
CVE-2025-55004
7.6

ImageMagick versions before 7.1.2-1 contain a heap-buffer overflow vulnerability in the MNG image format parser that can leak memory contents into out...

Aug 13, 2025
CVE-2024-43578
7.6

This vulnerability in Microsoft Edge (Chromium-based) allows remote attackers to execute arbitrary code on affected systems by exploiting a heap-based...

Oct 17, 2024
CVE-2024-6259
7.6

This vulnerability in Zephyr RTOS's Bluetooth Host Controller Interface (HCI) allows improper discarding of advertising extension reports, potentially...

Sep 13, 2024
CVE-2024-6135
7.6

This CVE describes a heap-based buffer overflow vulnerability in Zephyr RTOS Bluetooth Classic stack due to missing buffer length checks. Attackers ca...

Sep 13, 2024
CVE-2025-69247
7.5

A heap-based buffer overflow vulnerability in free5GC go-upf versions before 1.2.8 allows remote attackers to cause denial of service by sending speci...

Feb 23, 2026
CVE-2025-70122
7.5

A heap buffer overflow vulnerability in free5GC's UPF component allows remote attackers to crash the UPF service via specially crafted PFCP Session Mo...

Feb 13, 2026
CVE-2025-67433
7.5

A heap buffer overflow vulnerability in Open TFTP Server MultiThreaded v1.7 allows attackers to cause a Denial of Service (DoS) by sending a specially...

Feb 12, 2026
CVE-2025-62601
7.5

A heap buffer overflow vulnerability in Fast DDS allows remote attackers to terminate the Fast-DDS process by sending specially crafted SPDP packets w...

Feb 3, 2026
CVE-2025-62602
7.5

This vulnerability in Fast DDS allows remote attackers to cause denial-of-service by sending specially crafted SPDP packets with manipulated DATA Subm...

Feb 3, 2026
CVE-2026-23732
7.5

FreeRDP clients prior to version 3.21.0 contain a buffer overflow vulnerability in FastGlyph parsing. A malicious RDP server can exploit this to cause...

Jan 19, 2026
CVE-2025-66862
7.5

A buffer overflow vulnerability in the gnu_special function of BinUtils' cplus-dem.c file allows attackers to crash applications by processing special...

Dec 29, 2025
CVE-2025-66869
7.5

A buffer overflow vulnerability in the strcat function within libming 0.4.8 allows attackers to execute arbitrary code or cause denial of service. Thi...

Dec 29, 2025
CVE-2025-66217
7.5

An integer underflow vulnerability in AIS-catcher's MQTT parsing allows attackers to trigger heap buffer overflow via malformed packets. This can caus...

Nov 29, 2025
CVE-2025-64330
7.5

A heap overflow vulnerability in Suricata's logging functionality can cause crashes when specific alert queue conditions are met. This affects Suricat...

Nov 26, 2025
CVE-2025-20726
7.5

This vulnerability allows remote attackers to execute arbitrary code on affected devices by exploiting an out-of-bounds write in the modem firmware wh...

Nov 4, 2025
CVE-2025-57740
7.5

A heap-based buffer overflow vulnerability in Fortinet's FortiOS, FortiPAM, and FortiProxy allows authenticated users to execute arbitrary code via cr...

Oct 14, 2025
CVE-2025-57637
7.5

A buffer overflow vulnerability in D-Link DI-7100G routers allows attackers to execute arbitrary code or cause denial of service by exploiting the via...

Sep 23, 2025
CVE-2025-51005
7.5

A heap buffer overflow vulnerability in tcpliveplay utility of tcpreplay 4.5.1 allows attackers to cause denial of service by processing a malicious p...

Sep 23, 2025
CVE-2025-40930
7.5

CVE-2025-40930 is an integer buffer overflow vulnerability in JSON::SIMD Perl module versions before 1.07. When parsing malicious JSON input, it cause...

Sep 8, 2025
CVE-2025-5462
7.5

A heap-based buffer overflow vulnerability in Ivanti secure access products allows remote unauthenticated attackers to trigger denial of service. This...

Aug 12, 2025
CVE-2025-2900
7.5

A buffer overflow vulnerability in IBM Semeru Runtime's native AES/CBC encryption implementation allows attackers to cause denial of service through a...

May 14, 2025

About Heap-based Buffer Overflow (CWE-122)

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory.

Our database tracks 855 CVEs classified as CWE-122, with 108 rated critical and 668 rated high severity. The average CVSS score for Heap-based Buffer Overflow vulnerabilities is 8.0.

External reference: View CWE-122 on MITRE CWE →

Monitor Heap-based Buffer Overflow Vulnerabilities

Get alerted when new Heap-based Buffer Overflow CVEs affect your infrastructure.

Start Monitoring Free