CWE-122: Heap-based Buffer Overflow

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory.

846
Total CVEs
107
Critical
660
High
8.0
Avg CVSS
5
In CISA KEV

Yearly Trend

2026
84
2025
311
2024
248
2023
84
2022
58

Top Affected Vendors

1 Microsoft 262
2 Adobe 85
3 Fedoraproject 32
4 Google 31
5 Debian 27
6 Vim 23
7 Siemens 17
8 Mediatek 14
9 Autodesk 14
10 Hdfgroup 13

All Heap-based Buffer Overflow CVEs (846)

CVE-2024-28906
8.8

This vulnerability in Microsoft OLE DB Driver for SQL Server allows remote attackers to execute arbitrary code on affected systems by sending speciall...

Apr 9, 2024
CVE-2024-28908
8.8

This vulnerability in Microsoft OLE DB Driver for SQL Server allows remote attackers to execute arbitrary code on affected systems by sending speciall...

Apr 9, 2024
CVE-2024-26214
8.8

This vulnerability in Microsoft WDAC SQL Server ODBC Driver allows remote attackers to execute arbitrary code on affected systems by sending specially...

Apr 9, 2024
CVE-2024-26210
8.8

This vulnerability allows remote attackers to execute arbitrary code on systems running Microsoft WDAC OLE DB provider for SQL Server. Attackers can e...

Apr 9, 2024
CVE-2024-26205
8.8

This vulnerability allows remote attackers to execute arbitrary code on Windows systems running the Routing and Remote Access Service (RRAS) without a...

Apr 9, 2024
CVE-2024-26200
8.8

This vulnerability allows remote attackers to execute arbitrary code on Windows systems running Routing and Remote Access Service (RRAS) without authe...

Apr 9, 2024
CVE-2024-26161
8.8

This vulnerability in Microsoft WDAC OLE DB provider for SQL Server allows remote attackers to execute arbitrary code on affected systems by sending s...

Mar 12, 2024
CVE-2024-26166
8.8

This vulnerability in Microsoft's WDAC OLE DB provider for SQL Server allows remote attackers to execute arbitrary code on affected systems by sending...

Mar 12, 2024
CVE-2024-26159
8.8

This vulnerability in Microsoft ODBC Driver allows remote attackers to execute arbitrary code by sending specially crafted requests to affected system...

Mar 12, 2024
CVE-2024-21802
8.8

A heap-based buffer overflow vulnerability in the GGUF library's info->ne functionality of llama.cpp allows remote code execution when processing mali...

Feb 26, 2024
CVE-2024-21368
8.8

This vulnerability in Microsoft's WDAC OLE DB provider for SQL Server allows remote attackers to execute arbitrary code on affected systems by sending...

Feb 13, 2024
CVE-2024-21370
8.8

This vulnerability in Microsoft's WDAC OLE DB provider for SQL Server allows remote attackers to execute arbitrary code on affected systems by sending...

Feb 13, 2024
CVE-2024-21361
8.8

This vulnerability allows remote code execution through the Microsoft WDAC OLE DB provider for SQL Server. An attacker could exploit this by sending s...

Feb 13, 2024
CVE-2024-21366
8.8

This vulnerability in Microsoft's WDAC OLE DB provider for SQL Server allows remote attackers to execute arbitrary code on affected systems by sending...

Feb 13, 2024
CVE-2024-21359
8.8

This vulnerability in Microsoft's WDAC OLE DB provider for SQL Server allows remote attackers to execute arbitrary code on affected systems by sending...

Feb 13, 2024
CVE-2024-21353
8.8

This vulnerability allows remote attackers to execute arbitrary code on systems running Microsoft's WDAC ODBC Driver. Attackers can exploit this heap-...

Feb 13, 2024
CVE-2024-21345
8.8

This Windows kernel vulnerability allows attackers to escalate privileges from a lower-privileged account to SYSTEM-level access. It affects Windows s...

Feb 13, 2024
CVE-2024-21349
8.8

This vulnerability allows remote code execution through Microsoft ActiveX Data Objects (ADO) when an attacker sends specially crafted requests to an a...

Feb 13, 2024
CVE-2023-35630
8.8

This vulnerability allows remote attackers to execute arbitrary code on systems with Internet Connection Sharing (ICS) enabled by sending specially cr...

Dec 12, 2023
CVE-2023-35302
8.8

This vulnerability allows remote attackers to execute arbitrary code on systems using Microsoft PostScript and PCL6 Class Printer Drivers. Attackers c...

Jul 11, 2023
CVE-2023-29372
8.8

This vulnerability in Microsoft's WDAC OLE DB provider for SQL Server allows remote attackers to execute arbitrary code on affected systems by sending...

Jun 14, 2023
CVE-2023-24907
8.8

This vulnerability allows remote attackers to execute arbitrary code on systems using vulnerable Microsoft PostScript and PCL6 printer drivers. Attack...

Mar 14, 2023
CVE-2023-24913
8.8

This vulnerability allows remote attackers to execute arbitrary code on systems using Microsoft PostScript and PCL6 Class Printer Drivers. Attackers c...

Mar 14, 2023
CVE-2023-24876
8.8

This vulnerability allows remote attackers to execute arbitrary code on affected systems by exploiting a heap-based buffer overflow in Microsoft PostS...

Mar 14, 2023
CVE-2023-24867
8.8

This vulnerability allows remote code execution through Microsoft PostScript and PCL6 printer drivers. An attacker could exploit this by sending speci...

Mar 14, 2023
CVE-2023-23403
8.8

This vulnerability allows remote attackers to execute arbitrary code on systems using Microsoft PostScript and PCL6 Class Printer Drivers. An attacker...

Mar 14, 2023
CVE-2022-32137
8.8

CVE-2022-32137 is a heap-based buffer overflow vulnerability in multiple CODESYS products that allows low-privileged remote attackers to cause denial-...

Jun 24, 2022
CVE-2021-40426
8.8

A heap-based buffer overflow vulnerability in libsox's sphere.c start_read() function allows attackers to execute arbitrary code or cause denial of se...

Apr 14, 2022
CVE-2021-43304
8.8

CVE-2021-43304 is a heap buffer overflow vulnerability in ClickHouse's LZ4 compression codec that allows attackers to execute arbitrary code or cause ...

Mar 14, 2022
CVE-2021-28558
8.8

This CVE describes a heap-based buffer overflow vulnerability in Adobe Acrobat Reader DC's PDFLibTool component. An unauthenticated attacker can execu...

Sep 2, 2021
CVE-2021-28560
8.8

This heap-based buffer overflow vulnerability in Adobe Acrobat Reader DC allows an unauthenticated attacker to execute arbitrary code on a victim's sy...

Sep 2, 2021
CVE-2021-31439
8.8

This is a heap-based buffer overflow vulnerability in Netatalk's DSI structure processing that allows unauthenticated attackers on the same network to...

May 21, 2021
CVE-2021-31424
8.8

This is a heap-based buffer overflow vulnerability in Parallels Desktop's Open Tools Gate component that allows local attackers to escalate privileges...

Apr 29, 2021
CVE-2021-27253
8.8

This vulnerability allows network-adjacent attackers to bypass authentication and execute arbitrary code with root privileges on NETGEAR Nighthawk R78...

Apr 14, 2021
CVE-2020-13572
8.8

A heap overflow vulnerability in Accusoft ImageGear's GIF parser allows arbitrary code execution when processing specially crafted GIF files. This aff...

Feb 10, 2021
CVE-2020-26994
8.8

This vulnerability allows remote code execution through specially crafted PCX files in Siemens JT2Go and Teamcenter Visualization software. Attackers ...

Jan 12, 2021
CVE-2020-26986
8.8

This vulnerability allows remote code execution via specially crafted JT files in Siemens JT2Go and Teamcenter Visualization software. Attackers can e...

Jan 12, 2021
CVE-2025-54878
8.6

A heap buffer overflow vulnerability in NASA CryptoLib versions 1.4.0 and prior allows attackers to corrupt heap memory by sending specially crafted t...

Aug 11, 2025
CVE-2024-20259
8.6

An unauthenticated remote attacker can send a crafted DHCP request packet to cause Cisco IOS XE devices with DHCP snooping and endpoint analytics enab...

Mar 27, 2024
CVE-2021-38439
8.6

CVE-2021-38439 is a heap-based buffer overflow vulnerability in GurumDDS that could allow attackers to cause denial-of-service or execute arbitrary co...

May 5, 2022
CVE-2021-26603
8.6

A heap buffer overflow vulnerability exists in the ARK library from Bandisoft when the Ark_DigPathA function processes file paths without proper lengt...

Sep 9, 2021
CVE-2021-21006
8.6

Adobe Photoshop versions 22.1 and earlier contain a heap buffer overflow vulnerability when processing malicious font files. Successful exploitation a...

Jan 13, 2021
CVE-2024-45421
8.5

A buffer overflow vulnerability in some Zoom Apps allows authenticated users to escalate privileges through network access. This affects Zoom Apps use...

Feb 25, 2025
CVE-2024-39825
8.5

A buffer overflow vulnerability in Zoom Workplace Apps and Rooms Clients allows authenticated users to escalate privileges through network access. Thi...

Aug 14, 2024
CVE-2022-20737
8.5

A heap-based buffer overflow vulnerability in Cisco ASA's Clientless SSL VPN portal allows authenticated remote attackers to cause denial of service o...

May 3, 2022
CVE-2025-50360
8.4

A heap buffer overflow vulnerability in Pepper language compiler allows arbitrary code execution or denial of service when processing malicious .pr so...

Dec 3, 2025
CVE-2025-49696
8.4

This vulnerability allows an attacker to read memory outside the intended buffer in Microsoft Office applications, potentially leading to local code e...

Jul 8, 2025
CVE-2025-32717
8.4

A heap-based buffer overflow vulnerability in Microsoft Office Word allows attackers to execute arbitrary code on vulnerable systems by tricking users...

Jun 11, 2025
CVE-2025-47162
8.4

A heap-based buffer overflow vulnerability in Microsoft Office allows attackers to execute arbitrary code on affected systems by tricking users into o...

Jun 10, 2025
CVE-2024-56406
8.4

A heap buffer overflow vulnerability in Perl's tr operator when processing non-ASCII characters allows attackers to crash applications or potentially ...

Apr 13, 2025

About Heap-based Buffer Overflow (CWE-122)

A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory.

Our database tracks 846 CVEs classified as CWE-122, with 107 rated critical and 660 rated high severity. The average CVSS score for Heap-based Buffer Overflow vulnerabilities is 8.0.

External reference: View CWE-122 on MITRE CWE →

Monitor Heap-based Buffer Overflow Vulnerabilities

Get alerted when new Heap-based Buffer Overflow CVEs affect your infrastructure.

Start Monitoring Free