Vulnerabilities > Heap-based Buffer Overflow

DATE CVE VULNERABILITY TITLE RISK
2023-08-25 CVE-2023-40166 Heap-based Buffer Overflow vulnerability in Notepad-Plus-Plus Notepad++
Notepad++ is a free and open-source source code editor.
local
low complexity
notepad-plus-plus CWE-122
5.5
2023-08-25 CVE-2023-40031 Heap-based Buffer Overflow vulnerability in Notepad-Plus-Plus Notepad++
Notepad++ is a free and open-source source code editor.
local
low complexity
notepad-plus-plus CWE-122
7.8
2023-08-09 CVE-2023-38212 Heap-based Buffer Overflow vulnerability in Adobe Dimension
Adobe Dimension version 3.4.9 is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
adobe CWE-122
7.8
2023-07-05 CVE-2023-27390 Heap-based Buffer Overflow vulnerability in Diagon Project Diagon 1.0.139
A heap-based buffer overflow vulnerability exists in the Sequence::DrawText functionality of Diagon v1.0.139.
local
low complexity
diagon-project CWE-122
7.8
2023-06-16 CVE-2023-3291 Heap-based Buffer Overflow vulnerability in Gpac
Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.2.2.
local
low complexity
gpac CWE-122
3.3
2023-05-26 CVE-2023-32307 Heap-based Buffer Overflow vulnerability in multiple products
Sofia-SIP is an open-source SIP User-Agent library, compliant with the IETF RFC3261 specification. Referring to [GHSA-8599-x7rq-fr54](https://github.com/freeswitch/sofia-sip/security/advisories/GHSA-8599-x7rq-fr54), several other potential heap-over-flow and integer-overflow in stun_parse_attr_error_code and stun_parse_attr_uint32 were found because the lack of attributes length check when Sofia-SIP handles STUN packets.
network
low complexity
signalwire debian CWE-122
7.5
2023-05-09 CVE-2023-27410 Heap-based Buffer Overflow vulnerability in Siemens Scalance Lpe9403 Firmware 2.0
A vulnerability has been identified in SCALANCE LPE9403 (All versions < V2.1).
network
low complexity
siemens CWE-122
2.7
2023-03-29 CVE-2022-43634 Heap-based Buffer Overflow vulnerability in Netatalk 3.1.13
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Netatalk.
network
low complexity
netatalk CWE-122
critical
9.8
2023-03-29 CVE-2022-2848 Heap-based Buffer Overflow vulnerability in multiple products
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kepware KEPServerEX 6.11.718.0.
network
low complexity
ptc softwaretoolbox rockwellautomation ge CWE-122
critical
9.1
2023-03-27 CVE-2023-25864 Adobe Substance 3D Stager versions 2.0.0 (and earlier) are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user.
local
low complexity
CWE-122
7.8